mobile-network-agent
SAST specialist for OWASP Mobile M5:2024 Insecure Communication. Invoke during mobile Phase 03 Testing after artifacts/mapping/mobile-attack-surface.json…
An agent is a specialist Claude hands a whole job to, with its own tools and its own context.
200 agents across 361 plugins.
SAST specialist for OWASP Mobile M5:2024 Insecure Communication. Invoke during mobile Phase 03 Testing after artifacts/mapping/mobile-attack-surface.json…
Runs one assigned c-review cluster task and writes finding files to the run's output directory. Spawned by the c-review skill orchestrator only.
Analyzes one bounded Trailmark source packet and returns source-cited JSON without accessing the repository. Use only when invoked by the slicing-code-context…
Analyzes data flow from source to vulnerability sink, mapping trust boundaries, API contracts, environment protections, and cross-references. Spawned by…
Network penetration testing specialist for ARP attacks, MitM, packet capture, SNMP enumeration, SMB relay, Responder credential capture, and network-level…
Open source intelligence specialist for passive reconnaissance. Handles domain intelligence, certificate transparency, Shodan enumeration, email harvesting,…
Password cracking and credential attack specialist. Use when working with password hashes, hash cracking, wordlist attacks, credential analysis, or password…
Retroactive 6-pillar visual audit of implemented frontend code. Produces scored UI-REVIEW.md. Spawned by /thrunt:ui-review orchestrator.
Validates UI-SPEC.md design contracts against 6 quality dimensions. Produces BLOCK/FLAG/PASS verdicts. Spawned by /thrunt:ui-phase orchestrator.
Produces UI-SPEC.md design contract for frontend phases. Reads upstream artifacts, detects design system state, asks only unanswered questions. Spawned by…
NFT specialist — ERC-721, ERC-1155, royalties (ERC-2981, EIP-7585), metadata mutability, mint mechanics, marketplaces. Use when target is an NFT contract or…
Writes patches that fix specific findings. Validates via forge build + test. Use from /remediate.
Writes the final audit report (Markdown + HTML + JSON) from raw findings. Used by /report. Produces polished prose without consuming main context.
Builds security in and hardens systems across code, cloud, and infrastructure — DevSecOps, secure CI/CD pipelines, control implementation, automation, and…
Works a SOC alert queue and runs tiered monitoring/triage: validates, enriches, scopes, and decides escalate vs. close consistently, escalating real incidents…
SAST reconnaissance specialist for mobile apps (Android/iOS). Invoke first in the mobile pipeline, once artifacts/recon/scope.json exists and…
SAST specialist for OWASP Mobile M9:2024 Insecure Data Storage. Invoke during mobile Phase 03 Testing after artifacts/mapping/mobile-attack-surface.json…
SAST specialist for OWASP Mobile M4:2024 Insufficient Input/Output Validation (WebView XSS, local SQLi, deep-link/IPC injection). Invoke during mobile Phase 03…
Adds dimensional annotations to source code at anchor points using Reserve Protocol's format
Discovers dimensional vocabulary for codebases by analyzing naming conventions and protocol patterns
Propagates dimensional annotations through arithmetic and call chains, reporting mismatches found during propagation
Post-exploitation specialist for privilege escalation, lateral movement, persistence, and credential harvesting. Use after obtaining initial shell access.…
Reconnaissance and enumeration specialist. Use when scanning, enumerating ports, fingerprinting services, discovering subdomains, running nuclei vulnerability…
Penetration test report writing specialist. Consolidates evidence from all evidence/ directories into professional reports with CVSS scoring, executive…
Restaking and AVS specialist — EigenLayer, Symbiotic, Karak, Babylon, AVS implementations, operator slashing. Use when target involves restaking deposits,…
Staking-protocol specialist. Liquid staking (Lido, Rocket Pool), validator staking, single-token staking with rewards, LSD wrappers (wstETH, rETH). Use when…
Vyper-language specialist. Compiler-version bugs, decorator semantics, raw_call/create_from_blueprint, no-inheritance auth. Use when any contract is written in…
Proof-of-concept documentation specialist, shared by the web and mobile pipelines. Invoke in Phase 05, after artifacts/findings/validated-findings.json has at…
SAST specialist for OWASP Mobile M6:2024 Inadequate Privacy Controls, scoped to Medium-Critical impact only. Invoke during mobile Phase 03 Testing as a…
SAST reconnaissance specialist. Invoke first in the vantage pipeline, before any other testing agent, once artifacts/recon/scope.json exists. Statically parses…
Validates dimensional consistency and detects dimensional bugs in annotated code
Draw the 12 Houses of the Zodiac Tarot spread and return a concise structured reading. Use as a named agent instead of wrapping Skill(let-fate-decide) in an…
Verifies whether a suspected vulnerability is actually exploitable by proving attacker control, mathematical bounds, and race condition feasibility. Spawned by…
Binary reverse engineering and exploit development specialist. Handles static analysis with Ghidra/Radare2, dynamic analysis with GDB/strace, shellcode…
Social engineering and phishing simulation specialist. Handles GoPhish campaign setup, spear-phishing email crafting, evilginx2 adversary-in-the-middle…
Proactive threat hunting specialist using ATT&CK-based hypotheses. Hunts for lateral movement, persistence, credential dumping, C2 beaconing, data…
Yield aggregator and ERC-4626 specialist. Yearn V3, Beefy, Sommelier, MetaMorpho, custom vaults with strategies. Use when target is an ERC-4626 vault or…
ZK proof-verifier contract specialist. Groth16/PLONK/Halo2 on-chain verifiers, public-input binding, pairing-precompile misuse, field-range checks, nullifier…
Final report assembly specialist. Invoke in Phase 06, once artifacts/findings/validated-findings.json exists (PoCs if any). Synthesizes validated findings,…
SAST specialist for hardcoded secrets and cryptographic failures (API keys/credentials in source, weak crypto on sensitive data), scoped to Medium-Critical…
SAST specialist for SQL/NoSQL injection. Invoke during Phase 03 Testing after artifacts/mapping/attack-surface.json exists. Statically traces user input into…
Analyzes one function in depth for audit context: invariants, assumptions, and what its callees establish. Writes the prose analysis to disk and returns a…
Creates proof-of-concept exploits (pseudocode, executable, and unit tests) demonstrating a verified vulnerability, plus negative PoCs showing exploit…
Deduplication judge for the rust-review pipeline. Merges duplicate findings deterministically by exact location and bug class, then runs LLM passes over…
Vulnerability research and CVE analysis specialist. Handles NVD API queries, searchsploit cross-reference, PoC reliability assessment, CVSS scoring, version…
Web application penetration testing — SQL injection, XSS, SSRF, LFI, IDOR, JWT attacks, GraphQL, API parameter discovery, and OWASP Top 10 exploitation
Wireless network penetration testing specialist. Handles WPA2/WPA3 capture and cracking, PMKID attacks, Evil Twin / rogue AP attacks, WPS PIN attacks, EAP/PEAP…
SAST specialist for OWASP Mobile M2:2024 Inadequate Supply Chain Security, scoped to Medium-Critical impact only. Invoke during mobile Phase 03 Testing as a…
© 2026 Flowy · Free and open source
Built for Claude Code · Not affiliated with Anthropic