quickscan

Installation
SKILL.md

ALL agents dispatched by this command MUST use model: "inherit" in the Agent tool call.

Run a quick security assessment on: $ARGUMENTS

Workflow:

  1. Brain: uv run python3 $CLAUDE_PROJECT_DIR/tools/brain.py brief $ARGUMENTS — check what we already know. Note exhausted areas.
  2. Scope: uv run python3 $CLAUDE_PROJECT_DIR/tools/scope_check.py $ARGUMENTS — if out of scope, STOP.
  3. Launch IN PARALLEL (skip areas the brain marks EXHAUSTED):
    • recon agent with passive-only depth, passing brain context about known subdomains/tech
    • config-auditor agent for headers, CSP, CORS, TLS, cookies
  4. Record results: for each new finding, run uv run python3 $CLAUDE_PROJECT_DIR/tools/brain.py record <target> <status> <technique> <details>
  5. Log session: uv run python3 $CLAUDE_PROJECT_DIR/tools/brain.py log "quickscan completed on $ARGUMENTS"
  6. Summarize: separate NEW findings from KNOWN, recommend next steps.

Top-Tier Quickscan Loop

Quickscan should answer "is there obvious money or obvious risk here in 30 minutes?"

Installs
16
GitHub Stars
812
First Seen
May 10, 2026
quickscan — h-mmer/pentest-agents