An entry point for a Sentinel security skill bundle covering audits, penetration testing, capture-the-flag exercises, CVEs, reports, frontend security, and workflows. A CVE is a public record of a known software vulnerability.
Use for CTF (Capture The Flag) challenges — web exploitation, binary pwn, cryptography, reverse engineering, forensics, and misc. Invoke when user mentions "CTF", "flag{", "challenge", "HackTheBox", "TryHackMe", "PicoCTF", "pwn", or shares a challenge description asking how to solve it.
Use when user mentions CVE, CVSS, vulnerability lookup, exploit research, CVE database search, or asks about a specific vulnerability severity and mitigation. Invoke when user shares a CVE ID, asks how to assess vulnerability severity, or needs to find known exploits for a component.
Authorized pentest workflow. When engagement summary or findings are delivered, MUST chain to sentinel-report — read sentinel-report/SKILL.md, ask save folder, Write .md + offline .html.
MANDATORY after sentinel-audit, sentinel-pentest, sentinel-frontend completes. Default write sentinel-security-assessment.md + sentinel-security-assessment.html. MUST ask save folder. HTML has ECharts pie (online, CDN) + CSS-bar fallback (offline). Multi-project tabs show each project vuln count as proportion of…
Use for engineering discipline around security work — systematic root-cause tracing, verification before claiming success, structured review of fixes, threat-focused design exploration, and coordinating parallel multi-target analysis. Standalone replacement for external workflow plugins. Works in Claude Code, Cursor…
Entry for security tasks (audit, pentest, CTF, CVE). After audit/pentest/frontend audit completes, MUST load sentinel-report/SKILL.md and Write .md + .html — never stop at chat-only findings.
★not rated 8 4mo agoA51 tokens
At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: