report-writing

Map vulnerability findings to official HackerOne, Bugcrowd, Intigriti, and Immunefi report templates.

3.3k|507|Updated May 5, 2026
One-click install
npx skills add https://github.com/elementalsouls/Claude-BugHunter --skill report-writing-elementalsouls
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: report-writing
Source: https://github.com/elementalsouls/Claude-BugHunter/tree/main/skills/report-writing
Command: npx skills add https://github.com/elementalsouls/Claude-BugHunter --skill report-writing-elementalsouls

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

Widespread vulnerability reporting often suffers from inconsistent structure and wording, delaying triage and payouts. This skill provides ready-to-use templates and guidelines to produce clear, platform-compliant disclosures.

Core Features & Use Cases

  • HackerOne, Bugcrowd, Intigriti, and Immunefi-ready templates that cover Summary, Vulnerability Details, Steps to Reproduce, Impact, and Remediation.
  • Impact-first language guidance and CVSS scoring support to standardize severity.
  • Evidence and attachment hygiene guidance to ensure redact and attach relevant files.

Quick Start

Choose a platform template and fill in the required fields from the finding to generate a compliant report.

Frequently Asked Questions about report-writing

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I write a vulnerability report for Bugcrowd or HackerOne?

Standardize your vulnerability report by mapping findings to official platform templates, ensuring required sections like summary, steps to reproduce, impact, and remediation are consistently structured for faster triage.

What sections are required in a bug bounty disclosure report?

Required sections in a bug bounty report include summary, vulnerability details, steps to reproduce, impact, and remediation, alongside CVSS scoring and proper evidence hygiene for complete disclosure.

How do I add CVSS scoring to a vulnerability report?

You add CVSS scoring by applying impact-first language guidance and standardized severity assessment within the report template, ensuring reviewers can quickly validate the vulnerability's severity across platforms.

Does this report-writing approach work for Immunefi and Intigriti?

Yes, the approach provides ready-to-use templates specifically designed for Immunefi and Intigriti, mapping findings to official structures to ensure platform-compliant disclosures and consistent language.

What is the best way to format evidence attachments for triage?

The best way to format evidence attachments is to follow attachment hygiene guidance, ensuring you redact sensitive data and attach only relevant files to support your vulnerability findings during triage.