Enumeration Oracle Hunter banner
jamestexas jamestexas

Enumeration Oracle Hunter

Development community

Description

--- name: enumeration-oracle-hunter description: "Use this agent to find side-channel and response-shape oracles that let an attacker enumerate names, existence, or relationships in a multi-tenant substrate. Sometimes referred to as an 'oracle-friend'. Examples: <example>Context: User's vault DO returns 403 for 'exists but not yours' and 404 for 'no such credential'. user: 'Does this distinguishability give an attacker anything?' assistant: 'I'll use the enumeration-oracle-hunter to map the orac

Installation

Installs to ~/.claude/agents/jamestexas-agents-enumeration-oracle-hunter.md

Terminal
mkdir -p ~/.claude/agents && curl -fsSL https://raw.githubusercontent.com/jamestexas/agents/HEAD/agents/enumeration-oracle-hunter.md -o ~/.claude/agents/jamestexas-agents-enumeration-oracle-hunter.md

Restart Claude Code, or start a new session, for it to be picked up.

Full documentation available on GitHub

View Source Repository