argus
shuvonsec/claude-bug-bountyArgus — the all-seeing scanner suite. Six automated scanners for high-value web + LLM bug classes — CORS misconfiguration (origin reflection / null /…
Scores out of 100 · grade A
2026-08-17Works
40% of the score100/100
- Loads cleanly: valid frontmatter, required fields present, no dangling references.
Maintained
25% of the score100/100
- no commits in the last 12 weeks
Adopted
20% of the score50/100
- 4,231 stars on the source repo.
Documented
15% of the score74/100
- 774 words with worked examples.
Install
npx skills add shuvonsec/claude-bug-bounty/argusWhat it says it does
Argus — the all-seeing scanner suite. Six automated scanners for high-value web + LLM bug classes — CORS misconfiguration (origin reflection / null / credentialed read), CRLF & host-header injection, NoSQL injection (operator auth-bypass / $where blind), JWT attacks (alg:none / RS256→HS256 confusion / secret crack), out-of-band confirmation of blind SSRF/XXE/SQLi/RCE/Log4Shell via interactsh, and an LLM red-team corpus (prompt-injection / jailbreak / system-prompt leak / exfil / indirect injection). Use when a target exposes a JSON API, a login endpoint, JWT auth, a parameter that might reach the server, a chatbot/agent, or any endpoint suspected of a blind/out-of-band bug.
Also in shuvonsec/claude-bug-bounty
| Artifact | Score | What the check found | Type | Reach | Last commit |
|---|---|---|---|---|---|
| client-reverseshuvonsec/claude-bug-bounty | clean | Skill | 4.2k stars | 6 days ago | |
| bb-methodologyshuvonsec/claude-bug-bounty | clean | Skill | 4.2k stars | 6 days ago | |
| cicd-securityshuvonsec/claude-bug-bounty | clean | Skill | 4.2k stars | 6 days ago | |
| credential-attackshuvonsec/claude-bug-bounty | clean | Skill | 4.2k stars | 6 days ago | |
| graphql-auditshuvonsec/claude-bug-bounty | clean | Skill | 4.2k stars | 6 days ago | |
| meme-coin-auditshuvonsec/claude-bug-bounty | clean | Skill | 4.2k stars | 6 days ago |
Other ai & agents skills
Browse all| Artifact | Score | What the check found | Category | Reach | Last commit |
|---|---|---|---|---|---|
| mcp-builderanthropics/skills | No license | AI & agents | 104,949 installs | today | |
| agent-developmentanthropics/claude-plugins-official | clean | AI & agents | 5,901 installs | today | |
| plugin-settingsanthropics/claude-plugins-official | clean | AI & agents | 5,465 installs | today | |
| skill-creatoranthropics/claude-plugins-official | clean | AI & agents | 5,836 installs | today | |
| microsoft-foundrymicrosoft/azure-skills | clean | AI & agents | 544,819 installs | today | |
| claude-apianthropics/skills | No license | AI & agents | 59,236 installs | today |
Put this measurement in your README
A badge carrying how many listings this index holds from the repository and how many pass every static structural check. It reads from this index every time somebody loads your page, so it changes when the measurement changes and there is nothing to keep up to date. Free, no account, and the value is not something you or we can set by hand.
[](https://skillworks.kynth.studio/?q=shuvonsec%2Fclaude-bug-bounty)Would rather not hotlink us? Every badge is also served in shields.io’s endpoint schema, so shields renders the image and your readers never talk to our domain:
Published by Toolproof, the masthead over this index and eight others. The method behind the number is at toolproof.kynth.studio/methodology, and the whole thing is readable as JSON with no key at /api.
