hackerone

Installation
SKILL.md

HackerOne Bug Bounty

Automates: scope parsing → parallel testing per asset → PoC validation → submission reports.

Quick start

  1. Input: HackerOne program URL or scope CSV.
  2. Parse scope and program guidelines.
  3. Spawn one coordinator per eligible asset (parallel).
  4. Each coordinator runs the standard engagement flow (see skills/coordination/SKILL.md).
  5. Validate PoCs, generate HackerOne-formatted reports.

Scope CSV format

Expected columns:

  • identifier — asset URL/domain.
  • asset_type — URL, WILDCARD, API, CIDR.
  • eligible_for_submission — must be true.
  • max_severity — critical / high / medium / low.
Related skills
Installs
59
GitHub Stars
266
First Seen
Feb 20, 2026