report-writing

Generate a detailed bug bounty report for an IDOR issue.

4|Updated Mar 12, 2026
One-click install
npx skills add https://github.com/Bsh13lder/Lazy-Claw --skill report-writing-bsh13lder
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: report-writing
Source: https://github.com/Bsh13lder/Lazy-Claw/tree/main/claude-bug-bounty/skills/report-writing
Command: npx skills add https://github.com/Bsh13lder/Lazy-Claw --skill report-writing-bsh13lder

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

This Skill provides a structured approach to writing comprehensive and effective bug bounty reports, allowing security researchers to clearly communicate vulnerabilities to stakeholders.

Core Features & Use Cases

  • Template Generation: Offers standardized templates for HackerOne, Bugcrowd, Intigriti, and Immunefi submissions.
  • Structured Guidance: Guides users through writing impact summaries, reproduction steps, severity assessments, and remediation suggestions.
  • Use Case: When discovering a security flaw, quickly generate a professional report that enhances communication and streamlines triage.

Quick Start

Use the report-writing skill to create a detailed vulnerability report based on a recent security finding.

Frequently Asked Questions about report-writing

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I write a bug bounty report for an IDOR vulnerability?

To write a bug bounty report for an IDOR vulnerability, document the steps to reproduce, provide proof of concept, assess the impact, and suggest remediations. This ensures stakeholders clearly understand the security vulnerability.

Does this report-writing skill support submissions for HackerOne and Bugcrowd?

Yes, this report-writing skill supports submissions for HackerOne and Bugcrowd. It generates standardized templates tailored for these platforms to streamline your vulnerability triage process.

What is the best way to structure a vulnerability report for security stakeholders?

The best way to structure a vulnerability report is to include an impact summary, reproduction steps, severity assessments, and remediation suggestions. This structured guidance streamlines triage and enhances security communication.

How do I include reproduction steps and severity assessments in a security report?

You include reproduction steps and severity assessments in a security report by following structured guidance that walks you through documenting each phase of the vulnerability. This ensures comprehensive coverage of the security issue.

Can I generate a standardized vulnerability report for an IDOR issue involving user order retrieval?

Yes, you can generate a standardized vulnerability report for an IDOR issue involving user order retrieval. The skill specifically creates detailed reports including reproduction steps, proof, impact, and recommendations for this exact vulnerability scenario.

Why should I use a template for bug bounty submissions?

You should use a template for bug bounty submissions to provide a structured approach that allows security researchers to clearly communicate vulnerabilities. This enhances communication and streamlines the triage process for security stakeholders.