Automate triage of HackenProof bug bounty reports by validating scope, commit/version, PoC evidence, and duplicates, then assigning severity, state, labels, and comments for consistent handling.
Claude Code plugin marketplace for HackenProof bug bounty triage.
Reusable triage skill for HackenProof report handling:
Add to your organization's managed settings at claude.ai → Admin Settings → Claude Code → Managed settings:
{
"extraKnownMarketplaces": {
"hackenproof-skills": {
"source": {
"source": "github",
"repo": "hackenproof-public/skills"
}
}
},
"enabledPlugins": {
"hackenproof-triage@hackenproof-skills": true
}
}
All authenticated org members will receive the plugin automatically.
Add to your project's .claude/settings.json:
{
"extraKnownMarketplaces": {
"hackenproof-skills": {
"source": {
"source": "github",
"repo": "hackenproof-public/skills"
}
}
},
"enabledPlugins": {
"hackenproof-triage@hackenproof-skills": true
}
}
/plugin in Claude Codehackenproof-public/skillshackenproof-triage.claude-plugin/
marketplace.json # Marketplace index
plugins/
hackenproof-triage/
.claude-plugin/
plugin.json # Plugin manifest
skills/
hackenproof-triage-marketplace/
SKILL.md # Skill definition
agents/
openai.yaml
references/
hackenproof-global-policy.md
severity-mapping.md
triage-comment-templates.md
Own this plugin?
Verify ownership to unlock analytics, metadata editing, and a verified badge. GitHub access is read-only (username + org membership).
Sign in to claimOwn this plugin?
Verify ownership to unlock analytics, metadata editing, and a verified badge. GitHub access is read-only (username + org membership).
Sign in to claimBased on adoption, maintenance, documentation, and repository signals. Not a security audit or endorsement.
npx claudepluginhub hackenproof-public/skills --plugin hackenproof-triageBulk triage workflow for all assigned HackenProof programs
Bulk triage workflow for all assigned HackenProof programs
Interactively validate and triage Hacktron findings against source and an optional live deployment, then fix + commit confirmed issues or set their state in Hacktron.
71-skill bug-hunting & external red-team bundle for Claude Code — 48 hunt-* web/vuln-class + framework skills, enterprise platform attack chains (M365/Entra, Okta, SharePoint, vCenter, SSL-VPN, APK), recon/OSINT, reporting & validation gates, and Burp MCP integration. Skills auto-load by topic; 15 slash commands included.
Claude Code skills and agents for authorized security testing, bug bounty hunting, and pentesting workflows
Systematic false positive verification for security bug analysis with mandatory gate reviews
Security research toolkit for discovering and remediating vulnerabilities