report-writing

Generates standardized vulnerability reports with CVSS guidance for bug bounty platforms.

Updated Apr 8, 2026
One-click install
npx skills add https://github.com/ajtazer/briyani-hunter --skill report-writing-ajtazer
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: report-writing
Source: https://github.com/ajtazer/briyani-hunter/tree/main/.gemini/skills/report-writing
Command: npx skills add https://github.com/ajtazer/briyani-hunter --skill report-writing-ajtazer

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

Bug bounty reports often lack a consistent structure and clear impact articulation; this Skill provides templates and guidelines to produce polished, risk-focused vulnerability reports.

Core Features & Use Cases

  • Standardized report templates for HackerOne, Bugcrowd, Intigriti, and Immunefi.
  • CVSS scoring guidance, title formulation, and downgrade considerations to improve triage outcomes.
  • Pre-submit checklist to ensure completeness before submission.

Quick Start

Provide a complete vulnerability report using the templates after validating findings and filling in the required fields.

Frequently Asked Questions about report-writing

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I write a bug bounty vulnerability report that passes triage on HackerOne or Bugcrowd?

To write a bug bounty vulnerability report that passes triage, use standardized templates that ensure required sections like title, vulnerability details, remediation, and CVSS risk scoring are present and correctly formatted for consistency.

What is the best way to calculate CVSS scores for vulnerability report submissions?

The best way to calculate CVSS scores for vulnerability report submissions is to use built-in CVSS scoring guidance that helps formulate accurate risk ratings and apply downgrade considerations, ensuring your vulnerability impact is clearly articulated for triage teams.

Does this report-writing approach work across multiple bug bounty platforms like Intigriti and Immunefi?

Yes, this report-writing approach works across multiple bug bounty platforms. It provides standardized templates specifically designed for HackerOne, Bugcrowd, Intigriti, and Immunefi to ensure your vulnerability reports maintain structural consistency regardless of the submission target.

How do I format vulnerability findings into a ready-to-submit report?

To format vulnerability findings into a ready-to-submit report, input your validated findings into standardized templates that automatically structure your data into required sections like vulnerability details, remediation steps, and risk scoring, followed by a pre-submit checklist review.

Why do my bug bounty reports get downgraded or rejected during triage?

Bug bounty reports often get downgraded during triage due to a lack of consistent structure and clear impact articulation. Using templates with CVSS guidance, proper title formulation, and downgrade considerations ensures your vulnerability impact is clearly communicated.

What should be included in a vulnerability report pre-submit checklist?

A vulnerability report pre-submit checklist should verify that all required sections, including title, vulnerability details, remediation, and CVSS risk scoring, are present, correctly formatted, and complete before you submit your findings to any bug bounty platform.