social-engineering

Execute authorized social engineering campaigns with Python tools for monitoring and evidence capture.

7|1|Updated Apr 14, 2026
One-click install
npx skills add https://github.com/ArianHobson333/claude-bug-bounty-stack --skill social-engineering-arianhobson333
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: social-engineering
Source: https://github.com/ArianHobson333/claude-bug-bounty-stack/tree/main/vendor/communitytools/projects/pentest/.claude/skills/social-engineering
Command: npx skills add https://github.com/ArianHobson333/claude-bug-bounty-stack --skill social-engineering-arianhobson333

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill requires Gophish, SET, King Phisher, Evilginx2, and includes scripts (resource) and references (resource) and assets (resource) components.

What problem does it solve?

This Skill addresses the need for a comprehensive set of tools and techniques for conducting authorized social engineering tests, providing a structured approach to human-factor security assessment.

Core Features & Use Cases

  • Comprehensive Techniques: Covers phishing, pretexting, vishing, physical security, and more.
  • Campaign Management: Supports campaign scope definition, development of pretexts, execution, and reporting.
  • Reference Materials: Includes detailed reference documentation on various social engineering techniques and methodologies.
  • Use Case: Use this Skill to simulate a phishing campaign against your employees to gauge their susceptibility to social engineering attacks.

Quick Start

Use the social-engineering skill to launch a phishing campaign against your users.

Frequently Asked Questions about social-engineering

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I run a phishing campaign to test employee security awareness?

The Skill supports executing phishing campaigns by providing tools to define scope, develop pretexts, launch attacks, monitor results, and capture evidence for security assessment reporting.

What is pretexting in social engineering assessments?

Pretexting is a social engineering technique included in the reference materials, used to develop fabricated scenarios that manipulate targets into disclosing information during authorized security assessments.

Does this social engineering toolkit integrate with Gophish and Evilginx2?

Yes, the Skill requires Python tools and explicitly depends on Gophish, SET, King Phisher, and Evilginx2 to execute campaigns, monitor results, and capture evidence.

Can I simulate vishing attacks for physical security assessments?

Yes, the Skill covers comprehensive social engineering techniques including vishing and physical security, providing methodologies to assess human-factor defenses across multiple attack vectors.

What is the best way to manage social engineering campaign scope and reporting?

The best way is using the Skill's structured approach, which supports scope definition, pretext development, execution, monitoring, and comprehensive reporting for human-factor security assessments.

Do I need Python tools to execute social engineering tests with SET and King Phisher?

Yes, executing social engineering tests requires various Python tools to run campaigns with SET and King Phisher, monitor results, and capture evidence effectively.