What problem does it solve? Web application security testing requires disciplined methodology, strict scope control, and reproducible evidence — ad-hoc probing produces unreliable findings and legal risk. This Skill structures the entire engagement from authorization through reporting. ## Core Features & Use Cases - Phased Testing Workflow: Runs pre-recon code analysis, live read-only recon, per-class vulnerability analysis (injection, XSS, auth, authz, SSRF, infra), proof-based exploitation, and CVSS-scored reporting. - Hard Guardrails: Enforces written authorization gates, scope.txt allowlists, rate limiting, destructive-payload approval, and credential redaction before any active request is sent. - Evidence-Based Findings: Applies a "No Exploit, No Report" policy with L1-L4 confidence levels and bypass-exhaustion rules before dismissing candidates as false positives. - Use Case: Point the agent at your staging application, confirm authorization, and receive a professional pentest report with reproducible curl commands, CVSS 3.1 scores, and remediation guidance for every confirmed vulnerability. ## Quick Start Ask the agent to pentest your staging application at a specific URL and confirm you own it or have written authorization to test it.