Axguard Ssrf — Development skill for Claude Code
SSRF and unsafe egress — user-influenced fetch/requests, metadata IPs.
How to install Axguard Ssrf
Installs to ~/.claude/skills/shuvonsec-axguard.-axguard-ssrf/SKILL.md
mkdir -p ~/.claude/skills/shuvonsec-axguard.-axguard-ssrf && curl -fsSL https://raw.githubusercontent.com/shuvonsec/AXguard./HEAD/commands/axguard-ssrf.md -o ~/.claude/skills/shuvonsec-axguard.-axguard-ssrf/SKILL.md Restart Claude Code, or start a new session, for it to be picked up.
What Axguard Ssrf does
description: SSRF and unsafe egress — user-influenced fetch/requests, metadata IPs. Usage: /axguard-ssrf [path]
/axguard-ssrf
**Specialist:** Egress Hunter
Usage
/axguard-ssrf
Focus
requests.*/fetchwith variable URLs- Cloud metadata (
169.254.169.254) - Redirect + DNS rebinding as escalation notes (manual)
Steps
- Scan → keep
ssrf.*andcloud.aws-metadata-url. - Confirm URL is request-influenced.
- Prescribe allowlists + private-range blocks +
Alternatives in Development
- Analyze Feature Requests — Prioritize feature requests by theme, impact, effort, and risk 7.8k ★
- Oob — Out-of-band orchestrator — confirm BLIND SSRF/XXE/SQLi/RCE/Log4Shell by correlating interactsh callbacks to th 4.5k ★
- Harness Improvement — Update Kandev harness files from session learnings or explicit cross-platform harness requests 697 ★
Full documentation available on GitHub
View Source RepositoryRelated Skills
Axguard Cloud
Cloud and CORS misconfig — metadata URLs, wildcard origins. Usage: /axguard-cloud [path]
Axguard Auth
AuthZ / IDOR / JWT / CSRF footgun hunt. Usage: /axguard-auth [path]
Openclaw Billing Proxy
Route OpenClaw API requests through Claude Code subscription billing instead of Extra Usage
Taskmaster
Stop hook for Claude Code that keeps the agent working until all plans and user requests are 100% complete
Enhance
Transform user requests into comprehensive, actionable prompts with clear context and success criteria
Orgx Status
Get an OrgX initiative pulse after the user requests a status snapshot.
Related Agents
Cloud Attacker
Cloud penetration testing specialist for AWS, Azure, and GCP. Handles IAM enumeration, privilege escalation, S
Chain Builder
Exploit chain builder. Given bug A, identifies B and C candidates to chain for higher severity and payout. Kno
Rust Reviewer
Expert Rust code reviewer specializing in ownership, lifetimes, error handling, unsafe usage, and idiomatic pa