Mikacr1138/claude-bug-bounty

Enable efficient bug bounty hunting across Web2 and Web3 with a tool that supports full recon to detailed reporting.

This repository also configures its own agents. See what claude-bug-bounty tells them →

2Stars on the repository
22Mods indexed here, across every type
yesterdayLast push, which is what freshness is scored on
MITLicence, which decides whether bodies are shown

bug-bounty

01

Mikacr1138/claude-bug-bounty

Skill Claude CodeCodex

Complete bug bounty workflow — recon (subdomain enumeration, asset discovery, fingerprinting, HackerOne scope, source code audit), pre-hunt learning (disclosed reports, tech stack research, mind maps, threat modeling), vulnerability hunting (IDOR, SSRF, XSS, auth bypass, CSRF, race conditions, SQLi, XXE, file upload…

not rated 2 yesterday C 323 tokens copy · 95% MIT

bug-bounty

02

Mikacr1138/claude-bug-bounty

Skill Claude CodeCodex needs its repo

Complete bug bounty workflow — recon (subdomain enumeration, asset discovery, fingerprinting, HackerOne scope, source code audit), pre-hunt learning (disclosed reports, tech stack research, mind maps, threat modeling), vulnerability hunting (IDOR, SSRF, XSS, auth bypass, CSRF, race conditions, SQLi, XXE, file upload…

not rated 2 yesterday C 323 tokens copy · 95% MIT

report-writing

03

Mikacr1138/claude-bug-bounty

Skill Claude CodeCodex

Bug bounty report writing for H1/Bugcrowd/Intigriti/Immunefi — report templates, human tone guidelines, impact-first writing, CVSS 3.1 scoring, title formula, impact statement formula, severity decision guide, downgrade counters, pre-submit checklist. Use after validating a finding and before submitting. Never use…

not rated 2 yesterday A 82 tokens original MIT

security-arsenal

04

Mikacr1138/claude-bug-bounty

Skill Claude CodeCodex needs its repo

Security payloads, bypass tables, wordlists, gf pattern names, always-rejected bug list, and conditionally-valid-with-chain table. Use when you need specific payloads for XSS/SSRF/SQLi/XXE/IDOR/path-traversal, bypass techniques, or to check if a finding is submittable. Also use when asked about what NOT to submit.

not rated 2 yesterday B 84 tokens original MIT

triage-validation

05

Mikacr1138/claude-bug-bounty

Skill Claude CodeCodex

Finding validation before writing any report — 7-Question Gate (all 7 questions), 4 pre-submission gates, always-rejected list, conditionally valid with chain table, CVSS 3.1 quick reference, severity decision guide, report title formula, 60-second pre-submit checklist. Use BEFORE writing any report. One wrong answer…

not rated 2 yesterday A 87 tokens original MIT

web2-recon

06

Mikacr1138/claude-bug-bounty

Skill Claude CodeCodex

Web2 recon pipeline — subdomain enumeration (subfinder, Chaos API, assetfinder), live host discovery (dnsx, httpx), URL crawling (katana, waybackurls, gau), directory fuzzing (ffuf), JS analysis (LinkFinder, SecretFinder), continuous monitoring (new subdomain alerts, JS change detection, GitHub commit watch). Use when…

not rated 2 yesterday A 103 tokens original MIT

web2-vuln-classes

07

Mikacr1138/claude-bug-bounty

Skill Claude CodeCodex

Complete reference for 18 web2 bug classes with root causes, detection patterns, bypass tables, exploit techniques, and real paid examples. Covers IDOR, auth bypass, XSS, SSRF (11 IP bypass techniques), SQLi, business logic, race conditions, OAuth/OIDC, file upload (10 bypass techniques), GraphQL, LLM/AI (ASI01-ASI10…

not rated 2 yesterday D 132 tokens original MIT

web3-audit

08

Mikacr1138/claude-bug-bounty

Skill Claude CodeCodex needs its repo

Smart contract security audit — 10 DeFi bug classes (accounting desync, access control, incomplete path, off-by-one, oracle, ERC4626, reentrancy, flash loan, signature replay, proxy), pre-dive kill signals (TVL < $500K etc), Foundry PoC template, grep patterns for each class, and real Immunefi paid examples. Use for…

not rated 2 yesterday A 103 tokens copy · 100% MIT

At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: