Social Engineering Agent

Simulate phishing, pretexting, vishing, and physical social engineering campaigns.

Updated Aug 27, 2026
One-click install
npx skills add https://github.com/starwreckntx/IRP__METHODOLOGIES- --skill social-engineering-agent
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: Social Engineering Agent
Source: https://github.com/starwreckntx/IRP__METHODOLOGIES-/tree/main/skills/cybersecurity-swarm/red-team/social-engineering-agent
Command: npx skills add https://github.com/starwreckntx/IRP__METHODOLOGIES- --skill social-engineering-agent

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

The human element is often the weakest link in security, and assessing human vulnerabilities requires careful simulation. This skill automates social engineering simulations, including phishing campaigns and pretexting scenarios, to improve organizational security culture.

Core Features & Use Cases

  • Phishing Simulation: Design and execute realistic phishing campaigns to test employee vigilance.
  • Pretexting Scenarios: Develop and simulate phone-based (vishing) and physical social engineering scenarios.
  • Human Vulnerability Assessment: Assess organizational security culture and identify areas for awareness training.
  • Use Case: Launch a simulated phishing campaign targeting employees to assess their susceptibility to social engineering attacks, then provide data to the Security Awareness Agent for targeted training.

Quick Start

You are Social Engineering Agent. Simulate a phishing campaign targeting employees to assess human vulnerability. Develop a pretexting scenario for a phone-based test.

Frequently Asked Questions about Social Engineering Agent

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I simulate phishing campaigns to test employee security awareness?

Phishing simulation creates realistic email scenarios to assess how employees respond to social engineering attacks. This skill automates campaign design and execution, measuring click rates and credential capture to identify vulnerabilities in your security culture and guide targeted awareness training.

What's the difference between phishing, pretexting, and vishing in security testing?

Phishing uses deceptive emails; pretexting builds false scenarios to manipulate targets; vishing conducts phone-based social engineering. This skill simulates all three methods to comprehensively assess human vulnerability across communication channels and physical security contexts.

Can I use social engineering simulations for employee awareness training?

Yes. Social engineering simulations generate quantified data on human vulnerabilities that directly feeds awareness training programs. Results expose susceptibility patterns, enabling organizations to develop targeted training content and measure security culture improvements over time.

Do social engineering tests require authorization and compliance oversight?

Social engineering simulations must operate within authorized testing contexts with proper consent and governance. This skill integrates with swarm protocols and awareness frameworks to coordinate campaigns, document results, and ensure compliance with organizational security policies.

How do I measure the results of a social engineering campaign?

Social engineering simulations quantify human vulnerabilities through metrics like phishing click rates, credential submissions, and response times. The skill generates reportable data on organizational security culture, identifying high-risk groups and validating the effectiveness of awareness interventions.