quickscan
Installation
SKILL.md
ALL agents dispatched by this command MUST use model: "inherit" in the Agent tool call.
Run a quick security assessment on: $ARGUMENTS
Workflow:
- Brain:
uv run python3 $CLAUDE_PROJECT_DIR/tools/brain.py brief $ARGUMENTS— check what we already know. Note exhausted areas. - Scope:
uv run python3 $CLAUDE_PROJECT_DIR/tools/scope_check.py $ARGUMENTS— if out of scope, STOP. - Launch IN PARALLEL (skip areas the brain marks EXHAUSTED):
reconagent with passive-only depth, passing brain context about known subdomains/techconfig-auditoragent for headers, CSP, CORS, TLS, cookies
- Record results: for each new finding, run
uv run python3 $CLAUDE_PROJECT_DIR/tools/brain.py record <target> <status> <technique> <details> - Log session:
uv run python3 $CLAUDE_PROJECT_DIR/tools/brain.py log "quickscan completed on $ARGUMENTS" - Summarize: separate NEW findings from KNOWN, recommend next steps.
Top-Tier Quickscan Loop
Quickscan should answer "is there obvious money or obvious risk here in 30 minutes?"