kalpmodi

19 mods across 1 repository, 21 stars between them.

akira

01

kalpmodi/akira

Plugin Claude Code

The AI pentest co-pilot that actually finds bugs. Phase-chained, evidence-gated offensive security skills for bug bounty and authorized pentesting.

21 1mo ago A tokens not measured original MIT

akira AGENTS.md

02

kalpmodi/akira

Instructions file CodexOpenCode

Instructions for kalpmodi/akira, covering akira - ai agent adapter, what akira does, skill index, how to use and phase artifacts.

21 1mo ago A 575 tokens original MIT

akira

03

kalpmodi/akira

Cursor rule Cursor

Akira pentest skill suite - activates for security testing, bug bounty, and CTF tasks.

21 1mo ago A 19 tokens original MIT

403-bypass

04

kalpmodi/akira

Skill Claude CodeCodex

Use when encountering HTTP 403 Forbidden responses during pentests or bug bounty hunting, testing access control bypasses, trying to reach restricted endpoints, admin panels, or protected API routes. Also trigger when the user says "403 bypass", "bypass forbidden", "access denied bypass", "forbidden page bypass", or…

21 1mo ago F 90 tokens original MIT

_shared

05

kalpmodi/akira

Skill Claude CodeCodex

Internal utility library - not an invokable skill. Contains phase0.sh (session state, intel relay, memory read) and signals.sh (append-only signal emission). Sourced by all other skills via source /.claude/skills/shared/phase0.sh.

21 1mo ago A 56 tokens original MIT

ad-attacks

06

kalpmodi/akira

Skill Claude CodeCodex

Use when attacking Active Directory environments, hunting Kerberoastable accounts, AS-REP roasting, DCSync, Pass-the-Hash, Pass-the-Ticket, BloodHound path analysis, LDAP enumeration, GPO abuse, ACL abuse, or full AD domain compromise chains. Also use when the user says "attack AD", "domain compromise", "Kerberoast"…

21 1mo ago A 95 tokens original MIT

cloud-audit

07

kalpmodi/akira

Skill Claude CodeCodex

Use when auditing cloud infrastructure for misconfigurations, testing AWS IAM privilege escalation, enumerating exposed S3 buckets, attacking GCP service accounts, testing Azure RBAC misconfigs, hunting for exposed Kubernetes API servers, or finding cloud credential leaks in metadata services. Also use when the user…

21 1mo ago D 97 tokens original MIT

compact

08

kalpmodi/akira

Skill Claude CodeCodex

Use when context is running long during a pentest engagement, at phase boundaries after completing a full phase, or when the user says "compact", "compress context", "trim context", or "save tokens". Compresses completed phase outputs while keeping session.json as the authoritative source of truth.

21 1mo ago A 60 tokens original MIT

ctf

09

kalpmodi/akira

Skill Claude CodeCodex

Use when working on CTF (Capture the Flag) challenges, HackTheBox machines, TryHackMe rooms, pwn challenges, reverse engineering, cryptography puzzles, forensics, web exploitation CTF tasks, OSINT challenges, or steganography. Also use when the user says "CTF", "HackTheBox", "HTB", "TryHackMe", "THM", "pwn this"…

21 1mo ago D 104 tokens original MIT

exploit

10

kalpmodi/akira

Skill Claude CodeCodex

Use when running exploitation phase of a pentest, testing for SQL injection, XSS, SSRF, JWT confusion, deserialization, prototype pollution, HTTP smuggling, cache poisoning, SSTI, XXE, GraphQL, SAML, LFI, file upload bypass, CORS, WebSocket hijacking, IDOR, mass assignment, account takeover chains, 2FA bypass, or any…

21 1mo ago A 128 tokens original MIT

oauth-attacks

11

kalpmodi/akira

Skill Claude CodeCodex

Use when attacking OAuth 2.0 or OIDC implementations, testing for authorization code interception, PKCE bypass, open redirect chains, token leakage via referer, state parameter CSRF, token substitution, JWT confusion, implicit flow token theft, or OAuth misconfiguration in bug bounty targets. Also use when the user…

21 1mo ago C 96 tokens original MIT

plan-engagement

12

kalpmodi/akira

Skill Claude CodeCodex

Use when starting any pentesting engagement, receiving a target domain or IP, saying "new engagement", "start a pentest", "plan this target", or beginning any offensive security assessment. Invoke this FIRST before any other skill. Also triggers on "bug bounty on X", "test X for me", "attack X", "scope is X".

21 1mo ago B 74 tokens original MIT

race-conditions

13

kalpmodi/akira

Skill Claude CodeCodex

Use when testing for race conditions, single-packet attacks, TOCTOU vulnerabilities, limit-bypass via concurrent requests, coupon/voucher reuse, double-spend, rate limit bypass, or parallel request timing attacks. Also use when the user says "race condition", "single packet attack", "concurrent requests", "double…

21 1mo ago A 81 tokens original MIT

recon

14

kalpmodi/akira

Skill Claude CodeCodex

Use when running reconnaissance on a pentest target, starting phase 1 of an engagement, gathering subdomains, DNS resolution, live hosts, port scan results, URL intelligence, JavaScript endpoints, GitHub secrets, cloud buckets, subdomain takeovers, or attack surface mapping. Also use when the user says "run recon"…

21 1mo ago A 95 tokens original MIT

redteam

15

kalpmodi/akira

Skill Claude CodeCodex

Use when running APT-level red team operations, post-exploitation, lateral movement, credential harvesting, Active Directory attacks (Kerberoasting, DCSync, Golden/Silver tickets, ADCS ESC chains, BloodHound), C2 framework tradecraft (Cobalt Strike, Havoc, Sliver), Living off the Land binaries, defense evasion (AMSI…

21 1mo ago A 206 tokens original MIT

report

16

kalpmodi/akira

Skill Claude CodeCodex

Use when generating a pentest report, writing up findings from a completed assessment, converting triage output into a structured document, or producing an executive summary of vulnerabilities. Also use when the user says "generate report", "write report", or "create report".

21 1mo ago A 54 tokens original MIT

secrets

17

kalpmodi/akira

Skill Claude CodeCodex

Use when hunting for secrets, API keys, tokens, or credentials on a pentest target, running phase 2 of an engagement, scanning JS files for hardcoded secrets, or running trufflehog/gitleaks. Also use when the user says "run secrets", "hunt secrets", or "phase 2".

21 1mo ago A 67 tokens original MIT

triage

18

kalpmodi/akira

Skill Claude CodeCodex

Use when aggregating pentest findings across all phases, clustering vulnerabilities by severity, prioritizing findings for a report, or surfacing the top actionable issues from a completed scan. Also use when the user says "triage", "aggregate findings", or "what did we find".

21 1mo ago A 59 tokens original MIT

zerodayhunt

19

kalpmodi/akira

Skill Claude CodeCodex

Use when hunting for zero-days, backdoors, RCE, supply chain attacks, JWT vulnerabilities, cache poisoning, HTTP smuggling, dependency confusion, source map exposure, GSRM/WAF bypass, internal admin panel exposure, business logic flaws, race conditions, subdomain takeover, cloud misconfigs, mobile APK secrets, OAuth…

21 1mo ago A 136 tokens original MIT