home / skills / transilienceai / communitytools

transilienceai/communitytools

Open-source Claude Code skills, agents, and slash commands for AI-powered penetration testing, bug bounty hunting, and security research

28 skills
GitHub

Sponsored

common-appsec-patterns

transilienceai/communitytools

35
This skill coordinates specialized agents to identify and validate XSS, injection, CSRF, and other web vulnerabilities across modern apps.
html_content_analysis

transilienceai/communitytools

35
This skill analyzes HTML to extract technology signals from meta tags, comments, script patterns, and structured data for security research.
tls_certificate_analysis

transilienceai/communitytools

35
This skill analyzes TLS certificates to extract issuer, SANs, validity and fingerprints to identify hosting, security posture, and technologies.
authenticating

transilienceai/communitytools

35
This skill helps you automate comprehensive authentication security testing including signup, login, 2FA bypass, CAPTCHA, and bot detection evasion.
api_portal_discovery

transilienceai/communitytools

35
This skill discovers public API portals, OpenAPI/Swagger endpoints, and developer docs to map exposure and assist security research.
dns_intelligence

transilienceai/communitytools

35
This skill extracts technology signals from DNS records (MX, TXT, NS, CNAME, SRV) to reveal providers and configurations.
frontend_inferencer

transilienceai/communitytools

35
This skill infers frontend technologies by analyzing signals from JavaScript, HTML, and CSS to identify frameworks and UI patterns.
ip_attribution

transilienceai/communitytools

35
This skill maps IP addresses to cloud providers, ASNs, and organizations using WHOIS and IP range matching to speed threat attribution.
javascript_dom_analysis

transilienceai/communitytools

35
This skill detects frontend frameworks by analyzing global variables, DOM attributes, bundle patterns, and source maps to reveal technologies.
job_posting_analysis

transilienceai/communitytools

35
This skill extracts technology requirements from job postings and career pages to reveal a company's tech stack for targeted talent insights.
security_posture_analyzer

transilienceai/communitytools

35
This skill analyzes an organization's security posture by evaluating headers, CSP, HSTS, security.txt, and email security signals to identify gaps.
web_archive_analysis

transilienceai/communitytools

35
This skill analyzes Wayback snapshots to detect technology migrations over time, revealing historical stack changes and migration patterns for a domain.
ai-threat-testing

transilienceai/communitytools

35
This skill helps you assess AI systems for OWASP LLM vulnerabilities by orchestrating targeted tests and generating professional PoC reports.
domain-assessment

transilienceai/communitytools

35
This skill coordinates subdomain discovery and port scanning by delegating tasks to specialized agents to build a complete domain attack surface inventory.
hackerone

transilienceai/communitytools

35
This skill automates HackerOne workflows by parsing scope CSVs, deploying parallel pentest agents, validating PoCs, and generating ready-to-submit reports.
cloud_infra_detector

transilienceai/communitytools

35
This skill detects cloud providers, PaaS, and serverless platforms from signals such as IP, DNS, headers, and TLS to identify infrastructure.
backend_inferencer

transilienceai/communitytools

35
This skill analyzes HTTP signals, DNS, and repository data to infer backend technologies, improving vulnerability assessment and tooling alignment.
certificate_transparency

transilienceai/communitytools

35
This skill queries Certificate Transparency logs to discover SANs, infer subdomain patterns, and surface potential internal naming conventions for security
http_fingerprinting

transilienceai/communitytools

35
This skill analyzes HTTP responses to identify technology signatures in headers, cookies, and error pages for accurate web fingerprinting.
third_party_detector

transilienceai/communitytools

35
This skill identifies third-party services such as payments, analytics, auth, CRM, and support from signals across a target.
pentest

transilienceai/communitytools

35
This skill coordinates pentest activities, deploying specialized agents, aggregating findings, and generating comprehensive reports to streamline engagement
web-application-mapping

transilienceai/communitytools

35
This skill orchestrates specialized reconnaissance agents to map web applications, discover endpoints, and identify attack surfaces for thorough security
cdn_waf_fingerprinter

transilienceai/communitytools

35
This skill identifies CDNs and WAFs from HTTP, DNS, and TLS signals to reveal protection layers and potential exposure.
devops_detector

transilienceai/communitytools

35
This skill detects CI/CD platforms, containerization, and orchestration signals from repo, job postings, and infrastructure indicators to identify tech stacks.
subdomain_enumeration

transilienceai/communitytools

35
This skill enumerates subdomains for a domain using CT logs, passive DNS, and dorks to map attack surface.
cve-testing

transilienceai/communitytools

35
This skill coordinates CVE research and exploit validation by delegating to specialized subagents for comprehensive vulnerability assessment.
code_repository_intel

transilienceai/communitytools

35
This skill scans public repositories to identify technologies from dependencies, CI configs, and language stats across GitHub and GitLab.
domain_discovery

transilienceai/communitytools

35
This skill finds and validates a company's official domain using web search, WHOIS lookups, and common TLD checks.