claude-red
Review Skills in 0xwilliamortiz/claude-red, with license, maintenance context, and source paths.
- Skills
- 2
- Repository stars
- 712
- Identity status
- Source-linked
Provenance
Source and identity
- Profile type
- Repository
- Canonical name
- claude-red
- Public sources
- 1
- License context
- MIT
Source entries
Agent Skills from claude-red
Repository stars and maintenance signals provide context, but do not automatically become an individual Skill's quality score.
0xwilliamortiz/claude-red
offensive-business-logic
Business logic vulnerability testing for web/mobile/API engagements. Covers workflow bypass, state machine violations, multi-step process abuse, price/quantity/discount manipulation, currency confusion, coupon stacking, refund/chargeback abuse, race conditions on logic boundaries, parameter tampering for hidden flows, role/tenant boundary violations, time-of-check vs use, anti-automation defeat, fraud-detection evasion, and subscription/quota abuse. Use when scoping an application after surface-
0xwilliamortiz/claude-red
offensive-toctou
Time-of-Check / Time-of-Use (TOCTOU) race condition exploitation methodology across binary, kernel, filesystem, web, and container layers. Covers symbolic-link races (open/access/stat split), file-descriptor races, fopen/realpath traversal races, /proc and procfs races, FUSE-backed slow-fs races to widen the window, ptrace and signal races, kernel double-fetch / userspace pointer races, container/runc/symlink escape primitives, kubernetes admission/authz TOCTOU, web auth-vs-authz TOCTOU, JWT-cla
Pinned paths
Every entry links to a specific source path and commit when available.
Repository context
Activity, license, and repository-level popularity are shown as context.
Open the source
Inspect the public repository