# claude-bughunter

A self-contained Claude skill bundle for bug hunting and external red-team work · 82 skills · 15 slash commands · 681 disclosed-report patterns across 24 core vulnerability classes · enterprise identity + infrastructure attack matrices · engagement-folder

- Tier: Indexed (plain plugin)
- Category: Security
- Page: https://www.flowy.sh/listings/elementalsouls-claude-bughunter
- Source: https://github.com/elementalsouls/Claude-BugHunter
- Price: free and open source

## Summary
claude-bughunter is a Claude Code plugin with 82 hand-picked skills for security work, indexed on Flowy. Install it with the command on its page. It includes apk-redteam-pipeline, bb-local-toolkit, bb-methodology. Its skills do not fire on their own yet. Request auto-invocation to have Flowy route them as you prompt. Free and open source.

## Install (Claude Code)
```
/plugin marketplace add elementalsouls/Claude-BugHunter
/plugin install claude-bughunter@elementalsouls
```

## Skills
- apk-redteam-pipeline
- bb-local-toolkit
- bb-methodology
- bug-bounty
- bugcrowd-reporting
- cloud-iam-deep
- enterprise-vpn-attack
- evidence-hygiene
- hunt-api-misconfig
- hunt-aspnet
- hunt-ato
- hunt-auth-bypass
- hunt-brute-force
- hunt-business-logic
- hunt-cache-poison
- hunt-captcha-bypass
- hunt-cicd
- hunt-clickjacking
- hunt-cloud-misconfig
- hunt-cors
- hunt-csrf
- hunt-deserialization
- hunt-dispatch
- hunt-dom
- hunt-exceptional-conditions
- hunt-file-upload
- hunt-forgot-password
- hunt-graphql
- hunt-grpc
- hunt-host-header
- hunt-html-injection
- hunt-http-smuggling
- hunt-idor
- hunt-jwt-crypto
- hunt-k8s
- hunt-laravel
- hunt-ldap
- hunt-lfi
- hunt-llm-ai
- hunt-mfa-bypass
- hunt-misc
- hunt-nextjs
- hunt-nodejs
- hunt-nosqli
- hunt-ntlm-info
- hunt-oauth
- hunt-open-redirect
- hunt-race-condition
- hunt-rag-vector
- hunt-rce
- hunt-saml
- hunt-session
- hunt-shadow-api
- hunt-sharepoint
- hunt-source-leak
- hunt-spa-api
- hunt-springboot
- hunt-sqli
- hunt-ssrf
- hunt-ssti
- hunt-subdomain
- hunt-tls-network
- hunt-websocket
- hunt-xss
- hunt-xxe
- ios-redteam-pipeline
- m365-entra-attack
- meme-coin-audit
- mid-engagement-ir-detection
- offensive-osint
- okta-attack
- osint-methodology
- recon-scope-triage
- redteam-mindset
- redteam-report-template
- report-writing
- security-arsenal
- supply-chain-attack-recon
- triage-validation
- vmware-vcenter-attack
- web2-recon
- web3-audit

## FAQ

### What is claude-bughunter?
A self-contained Claude skill bundle for bug hunting and external red-team work · 82 skills · 15 slash commands · 681 disclosed-report patterns across 24 core vulnerability classes · enterprise identity + infrastructure attack matrices · engagement-folder

### How do I install claude-bughunter?
Run these in Claude Code: /plugin marketplace add elementalsouls/Claude-BugHunter then /plugin install claude-bughunter@elementalsouls. Then prompt normally.

### Does claude-bughunter auto-invoke its skills?
Not yet. It is indexed on Flowy as a plain plugin. Request auto-invocation on its page and Flowy will route its skills for you as you prompt.

### Is claude-bughunter free?
Yes. Flowy is free and open source, with nothing gated. You can read every skill in full before you install.
