report-writing

Generate bug bounty reports for HackerOne, Bugcrowd, Intigriti, and Immunefi.

Updated Jun 18, 2026
One-click install
npx skills add https://github.com/Kisilev13/Hermes-Agent-Workspace --skill report-writing-kisilev13
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: report-writing
Source: https://github.com/Kisilev13/Hermes-Agent-Workspace/tree/main/skills/report-writing
Command: npx skills add https://github.com/Kisilev13/Hermes-Agent-Workspace --skill report-writing-kisilev13

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill includes scripts (resource) and references (resource) components.

What problem does it solve?

This Skill provides comprehensive guidance and templates for crafting high-quality bug bounty reports, ensuring accurate impact assessment and clear communication for various platforms.

Core Features & Use Cases

  • Report Templates: Offers templates for HackerOne, Bugcrowd, Intigriti, and Immunefi platforms, tailored to their specific report requirements.
  • Impact Analysis: Includes guidelines for calculating CVSS scores and assessing severity based on the impact.
  • Use Case: Use this Skill to create a detailed report on an IDOR vulnerability, including steps to reproduce, impact analysis, and a recommended fix, formatted to meet the requirements of a HackerOne platform.

Quick Start

Use the report-writing skill to create a detailed report for a found IDOR vulnerability, ensuring the report adheres to the required format and tone for HackerOne.

Frequently Asked Questions about report-writing

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I format a bug bounty report for HackerOne, Bugcrowd, Intigriti, and Immunefi?

Bug bounty report formatting for HackerOne, Bugcrowd, Intigriti, and Immunefi requires specific structural templates. This Skill generates reports tailored to each platform's distinct content requirements, ensuring clear impact communication and adherence to submission standards.

How do I calculate CVSS scores and assess severity for a vulnerability assessment report?

Calculating CVSS scores and assessing severity for a vulnerability assessment involves structured guidelines. This Skill provides built-in impact analysis rules to help you determine accurate severity ratings based on the specific vulnerability details and technical impact.

What is the best way to structure an IDOR vulnerability report for bug bounty platforms?

Structuring an IDOR vulnerability report requires clear steps to reproduce, impact analysis, and recommended fixes. This Skill formats these components comprehensively, ensuring the final report meets the specific requirements of platforms like HackerOne.

Do I need structured vulnerability data to generate a bug bounty report?

Generating a bug bounty report requires structured data input on vulnerability details and impact analysis. You must provide the specific technical findings and impact context so the Skill can accurately calculate CVSS scores and format the final submission.

Can I use this for vulnerability assessment reports outside of bug bounty programs?

Vulnerability assessment reports outside of bug bounty programs are not the primary focus. This Skill is specifically designed to generate submissions tailored to HackerOne, Bugcrowd, Intigriti, and Immunefi, focusing on their unique formatting and impact communication requirements.