redteam-report-template

Convert Markdown red-team findings into formatted DOCX reports.

3|1|Updated Jul 2, 2026
One-click install
npx skills add https://github.com/EntroVyx/hermes-agent-offsec --skill redteam-report-template-entrovyx
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: redteam-report-template
Source: https://github.com/EntroVyx/hermes-agent-offsec/tree/main/skills/offsec/redteam/redteam-report-template
Command: npx skills add https://github.com/EntroVyx/hermes-agent-offsec --skill redteam-report-template-entrovyx

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill requires pandoc, python-docx, and includes assets (resource) components.

What problem does it solve?

This skill solves the inconsistency and lack of professional rigor in red-team reporting by providing a standardized, client-ready framework that bridges the gap between technical findings and business-impact communication.

Core Features & Use Cases

  • Canonical Finding Structure: Enforces a 6-section format (Subject, Observations, Description, Impact, Recommendation, PoC) to ensure clarity and reproducibility.
  • Automated Documentation: Provides a pipeline to convert Markdown findings into professional DOCX deliverables with embedded screenshots and table of contents.
  • Use Case: Use this when finalizing an external red-team engagement for an enterprise client to ensure all findings are severity-ordered, business-aligned, and ready for CISO-level review.

Quick Start

Use the redteam-report-template skill to convert the final markdown report into a formatted docx file using the pandoc pipeline.

Frequently Asked Questions about redteam-report-template

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I convert markdown pentest findings into a professional DOCX report?

A standardized red-team report enforces a 6-section finding format: Subject, Observations, Description, Impact, Recommendation, and Proof-of-Concept, ensuring clarity, severity-based risk assessment, and reproducible documentation.

Do I need pandoc and python-docx to generate red-team deliverables?

This approach standardizes client-facing red-team reporting by enforcing a structured finding format and automating document generation, which bridges the gap between technical findings and business-impact communication for CISO-level review.

What is the standard structure for a client-facing red-team report?

A standardized red-team report enforces a 6-section finding format: Subject, Observations, Description, Impact, Recommendation, and Proof-of-Concept, ensuring clarity, severity-based risk assessment, and reproducible documentation.

How do I automate security reporting for enterprise red-team engagements?

Yes, you need pandoc and python-docx installed to automate the document generation pipeline, which transforms markdown findings into formatted, client-ready DOCX files for enterprise security engagements.

What is the best way to format proof-of-concept documentation for a pentest report?

This approach standardizes client-facing red-team reporting by enforcing a structured finding format and automating document generation, which bridges the gap between technical findings and business-impact communication for CISO-level review.

Does this reporting template align technical findings with business impact for CISO review?

The best way to format proof-of-concept documentation is using a canonical 6-section structure that includes PoC fields, ensuring reproducibility while converting markdown into a polished DOCX deliverable.