Skip to main content
Back to the directory
affaan-m/everything-claude-codeSoftware EngineeringFrontend and Design

security-bounty-hunter

Use this when the goal is practical vulnerability discovery for responsible disclosure or bounty submission, not a broad best-practices review.

SkillJury keeps community verdicts, source metadata, and external repository signals in separate lanes so ranking data never pretends to be a review.

SkillJury verdict
Pending

No approved reviews yet

Would recommend
Pending

Waiting on enough review volume

Install signal
1

Weekly or total install activity from catalog data

Sign in to review
0 review requests
Install command
npx skills add https://github.com/affaan-m/everything-claude-code --skill security-bounty-hunter
SkillJury does not have enough approved reviews to publish a community verdict yet. Source metadata and repository proof are still available above.
SkillJury Signal Summary

As of Apr 30, 2026, security-bounty-hunter has 1 weekly installs, 0 community reviews on SkillJury. Community votes currently stand at 0 upvotes and 0 downvotes. Source: affaan-m/everything-claude-code. Canonical URL: https://skills.sh/affaan-m/everything-claude-code/security-bounty-hunter.

Security audits
Gen Agent Trust HubPASS
SocketWARN
SnykPASS
About this skill
Use this when the goal is practical vulnerability discovery for responsible disclosure or bounty submission, not a broad best-practices review. Bias toward remotely reachable, user-controlled attack paths and throw away patterns that platforms routinely reject as informative or out of scope. These are the kinds of issues that consistently matter: These are usually low-signal or out of bounty scope unless the program says otherwise: Then manually filter: Before submitting: - Scanning a repository for exploitable vulnerabilities - Preparing a Huntr, HackerOne, or similar bounty submission - Triage where the question is "does this actually pay?" rather than "is this theoretically unsafe?" - Local-only pickle.loads , torch.load , or equivalent with no remote path - eval() or exec() in CLI-only tooling - shell=True on fully hardcoded commands - Missing security headers by themselves - Generic rate-limiting complaints without exploit impact - Self-XSS requiring the victim to paste code manually - CI/CD injection that is not part of the target program scope - Demo, example, or test-only code - Check scope first: program rules, SECURITY.md, disclosure channel, and exclusions. - Find real entrypoints: HTTP handlers, uploads, background jobs, webhooks, parsers, and integration endpoints. - Run static tooling where it helps, but treat it as triage input only. - Read the real code path...

Source description provided by the upstream listing. Community review signal and install context stay separate from this narrative layer.

Community reviews

Latest reviews

No community reviews yet. Be the first to review.

Browse this skill in context
FAQ
What does security-bounty-hunter do?

Use this when the goal is practical vulnerability discovery for responsible disclosure or bounty submission, not a broad best-practices review.

Is security-bounty-hunter good?

security-bounty-hunter does not have approved reviews yet, so SkillJury cannot publish a community verdict.

Which AI agents support security-bounty-hunter?

security-bounty-hunter currently lists compatibility with Claude Code, Skills CLI.

Is security-bounty-hunter safe to install?

security-bounty-hunter has been scanned by security audit providers tracked on SkillJury. Check the security audits section on this page for detailed results from Socket.dev and Snyk.

What are alternatives to security-bounty-hunter?

Skills in the same category include grimoire-morpho-blue, conversation-memory, second-brain-ingest, zai-tts.

How do I install security-bounty-hunter?

Run the following command to install security-bounty-hunter: npx skills add https://github.com/affaan-m/everything-claude-code --skill security-bounty-hunter

Related skills

More from affaan-m/everything-claude-code

Related skills

Alternatives in Software Engineering