Skill-Audit-Bericht

bugcrowd-reporting Audit-Bericht.

Bugcrowd-specific reporting tactics complementing report-writing: VRT category search-and-fallback strategy when no exact match exists, manual severity override when VRT defaults underrate impact, severity-request paragraph as first body section, OOS-clause rebuttal templates (rate limiting on auth-flow endpoints, debug-info framing, user-enumeration with sensitive PII, theoretical-issue counter), chained-finding cross-reference patterns, target selection for QA-vs-prod programs, researcher-side hygiene (Bugcrowdninja email alias, account state restoration, friendly-tester posture). Use when filing a Bugcrowd submission, when VRT default seems wrong, when triager closes as OOS or downgrades severity, when chaining linked submissions, or when scope distinguishes production from QA. Pairs with report-writing and triage-validation.

Experimentell · PrüfenPrüfung nötigErstellt 11. Okt. 2026Heuristisches Metadaten-Audit
82
Audit
78
Vertrauen
80
Qualität
80
Sicherheit
88
Maintain
92
Installieren

OpenAgentSkill Trust Score

78
Starke Shortlist

OpenAgentSkill Trust Score

The Trust Score helps an agent decide whether a skill is safe enough to shortlist before installation.

GitHub-Akzeptanz

Bestanden

86

4.0K GitHub-Stars

Star-/Fork-Aktivität

Bestanden

83

4.0K Stars und 629 Forks; Issue-Aktivität ist in den aktuellen Metadaten nicht verfügbar

Aktuelle Wartung

Bestanden

88

1 Monate seit dem letzten Push

Lizenzklarheit

Bestanden

86

MIT

README/SKILL.md-Vollständigkeit

Bestanden

86

Metadaten enthalten ausreichend Nutzungs- und Workflow-Kontext

Abhängigkeits-/Laufzeitrisiko

Info

64

credential or environment access, network or browser surface

Installationsverfügbarkeit

Bestanden

92

npx skills add elementalsouls/Claude-BugHunter --skill bugcrowd-reporting

Sicherheit des Installationsbefehls

Bestanden

92

Standard-Paket- oder Laufzeit-Installationspfad

Berechtigungsumfang

Fehlgeschlagen

34

secrets or environment access, filesystem or document access

Repository-Nachweis

Bestanden

86

https://github.com/elementalsouls/Claude-BugHunter/tree/main/skills/bugcrowd-reporting

Prüfstatus

Bestanden

88

KI-Prüfdaten verfügbar

Agent-validierte Ergebnisse

Info

54

Noch keine Agent-Ergebnisdaten

Prüfungen

Installations- und Adoptionsprüfung

9 Bestanden · 9 Prüfung nötig

Installationspfad

92

Bestanden

npx skills add elementalsouls/Claude-BugHunter --skill bugcrowd-reporting

Repository

88

Bestanden

https://github.com/elementalsouls/Claude-BugHunter/tree/main/skills/bugcrowd-reporting

Lizenz

86

Bestanden

MIT

Wartung

88

Bestanden

1 Monate seit dem letzten Push

KI-Prüfung

88

Bestanden

Approved with no listed issues

README/SKILL.md-Vollständigkeit

86

Bestanden

Usable description available

Abhängigkeitsrisiko

64

Prüfen

credential or environment access, network or browser surface

Sicherheit des Installationsbefehls

92

Bestanden

Standard-Paket- oder Laufzeit-Installationspfad

Berechtigungsumfang

34

Beheben

secrets or environment access, filesystem or document access

Star-/Fork-Aktivität

83

Bestanden

4.0K Stars und 629 Forks; Issue-Aktivität ist in den aktuellen Metadaten nicht verfügbar

Akzeptanz

88

Bestanden

4.0K GitHub-Stars

Financial decision safety

58

Prüfen

Research-only use: do not treat output as financial advice or execute a position without human approval.

Warnungen

  • Permission surface may require sandboxing
  • Financial research output is not financial advice; require human review before any live investment decision
  • Financial research output is not financial advice; require human review before any live investment decision.
  • Quality score needs review
  • Permission surface needs review: secrets or environment access, filesystem or document access
  • Permission surface: secrets or environment access, filesystem or document access

Methode

This report combines public metadata, AI review output, repository freshness, install readiness, OpenAgentSkill events, quality scoring, trust checks, and the agent safety gate. It is not a full source-code security review.

Nahe Optionen vergleichen

Ähnliche Skills als Nächstes prüfen