Bulk triage open security reports across all assigned HackenProof programs: discover reports via API, sync local git repos, analyze vulnerabilities, and generate structured recommendations for human review.
Claude Code plugin marketplace for HackenProof bug bounty triage.
Reusable triage skill for HackenProof report handling:
Add to your organization's managed settings at claude.ai → Admin Settings → Claude Code → Managed settings:
{
"extraKnownMarketplaces": {
"hackenproof-skills": {
"source": {
"source": "github",
"repo": "hackenproof-public/skills"
}
}
},
"enabledPlugins": {
"hackenproof-triage@hackenproof-skills": true
}
}
All authenticated org members will receive the plugin automatically.
Add to your project's .claude/settings.json:
{
"extraKnownMarketplaces": {
"hackenproof-skills": {
"source": {
"source": "github",
"repo": "hackenproof-public/skills"
}
}
},
"enabledPlugins": {
"hackenproof-triage@hackenproof-skills": true
}
}
/plugin in Claude Codehackenproof-public/skillshackenproof-triage.claude-plugin/
marketplace.json # Marketplace index
plugins/
hackenproof-triage/
.claude-plugin/
plugin.json # Plugin manifest
skills/
hackenproof-triage-marketplace/
SKILL.md # Skill definition
agents/
openai.yaml
references/
hackenproof-global-policy.md
severity-mapping.md
triage-comment-templates.md
Based on adoption, maintenance, documentation, and repository signals. Not a security audit or endorsement.
HackenProof bug bounty triage workflow for consistent report handling
npx claudepluginhub hackenproof-public/skills --plugin hackenproof-bulk-triageHackenProof bug bounty triage workflow for consistent report handling
Interactively validate and triage Hacktron findings against source and an optional live deployment, then fix + commit confirmed issues or set their state in Hacktron.
Security research toolkit for discovering and remediating vulnerabilities
Systematic false positive verification for security bug analysis with mandatory gate reviews
71-skill bug-hunting & external red-team bundle for Claude Code — 48 hunt-* web/vuln-class + framework skills, enterprise platform attack chains (M365/Entra, Okta, SharePoint, vCenter, SSL-VPN, APK), recon/OSINT, reporting & validation gates, and Burp MCP integration. Skills auto-load by topic; 15 slash commands included.
Enterprise grade AI-native application security scanning, validation, and remediation
Own this plugin?
Verify ownership to unlock analytics, metadata editing, and a verified badge. GitHub access is read-only (username + org membership).
Sign in to claimOwn this plugin?
Verify ownership to unlock analytics, metadata editing, and a verified badge. GitHub access is read-only (username + org membership).
Sign in to claim