apiscan
API security audit — REST, GraphQL, JWT analysis, parameter discovery
Generate a formatted vulnerability report from engagement findings
> /plugin marketplace add ogrodev/fsociety > /plugin install fsociety@ogrodev-fsociety
How it fires
How this command gets triggered: by you, by Claude, or both.
/reportContext preview
What this command does when you run it.
Generate a formatted vulnerability report from engagement findings
description: Generate a formatted vulnerability report from engagement findings allowed-tools: ToolSearch, Bash, Read, Write, Glob, Grep argument-hint:
> **Storage Policy**: ALL output files MUST be saved in the project directory. NEVER write to `/tmp/` or any system temporary directory.
Generate a comprehensive penetration test report from findings in the current engagement.
Use ToolSearch to load:
Read all reconnaissance and scan output files in the project directory:
Run `create_scan_summary` to generate a consolidated summary of all tool outputs from this engagement.
Run `create_vulnerability_report` with all discovered vulnerabilities, organized by:
Save the report to `PENTEST-REPORT-{date}.md` in the project directory.
Include:
Multi-plugin marketplace for Claude Code offensive security plugins
Repo: ogrodev/fsociety
API security audit — REST, GraphQL, JWT analysis, parameter discovery
Archive or list previous engagement snapshots
Password brute force and hash cracking against target services
Resume or execute an attack campaign with progress tracking
Show running scans, system health, and engagement status