Web3 Bug Bounty Hunting AI Skills — Security skill for Claude Code
18 Claude Code skill files for smart contract security — built from 2,749 Immunefi reports, 681 DeFiHack reproductions, and real hunt experience.
How to install Web3 Bug Bounty Hunting AI Skills
This entry records only its repository, not the path inside it, so there is no
exact command to give. Open shuvonsec/web3-bug-bounty-hunting-ai-skills and copy the folder into
~/.claude/skills/, or the file into ~/.claude/agents/.
What Web3 Bug Bounty Hunting AI Skills does
18 Claude Code skill files for smart contract security — built from 2,749 Immunefi reports, 681 DeFiHack reproductions, and real hunt experience.
Alternatives in Security
- /web3 Audit — Smart contract security audit using the 10-bug-class methodology 927 ★
- Review Artifact — Creates one polished, self-contained HTML artifact from review findings, audit notes, PR feedback, code review 652 ★
- Bountyforge — All-round bug bounty skill for Claude Code parallelized agents for smart contract audits (EVM, Move, Solana, T 399 ★
README
web3-bug-bounty-hunting-ai-skills
Smart contract bug bounty skills for Claude Code, Claude AI, and other AI tools. Built from 2,749 Immunefi reports, 681 DeFiHack reproductions, and real hunts.
[](./LICENSE) []() []() []()
Most hunters still do everything manually. Read contracts in a browser, grep from memory, rewrite Foundry templates each hunt, draft reports from scratch.
These skill files load into Claude Code (or any AI) and give it a complete smart contract security knowledge base — target scoring, bug patterns, grep arsenal, PoC templates, report format, and real case studies. One `claude` command, then start hunting.
Works with: **Claude Code**, **Claude.ai**, **Cursor**, **any AI that reads files**.
Files
| File | Contents |
|---|---|
| `00-start-here.md` | Index + how to navigate |
| `01-foundation.md` | Hunter mindset, target scoring (10-point scorecard), recon setup |
| `02-bug-classes.md` | All 10 bug classes — patterns, Solidity examples, real Immunefi findings |
| `03-grep-arsenal.md` | Grep/regex patterns for every bug class |
| `04-poc-and-foundry.md` | 18 Foundry PoC templates — fill in address, run forge test |
| `05-triage-report-examples.md` | 7-question validation gate, Immunefi report format, 20 paid examples |
| `06-methodology-research.md` | Trail of Bits, SlowMist, ConsenSys, Cyfrin, Nethermind methodology |
| `07-case-study-role-misconfiguration.md` | Full hunt walkthrough — role mis |
Related Skills
Bugwolf
BugWolf — all-round bug bounty hunting skill for Claude Code: parallelized agents for smart contract audits (E
Bug Bounty Hunter
All-round bug bounty skill for Claude Code — parallelized agents for smart contract audits (EVM, Move, Solana,
Web3 Audit
Smart contract security audit — runs through 10 bug class checklist (accounting desync, access control, incomp
Hunt
Start hunting on a target — loads scope, reads disclosed reports, picks best attack surface based on tech stac
Yotta Security Testing
YuanCe (元测) — disciplined authorization-first security-testing methodology for AI agents: four-stage web secur
Public Skills Builder
Generate Claude Code bug bounty skills from public HackerOne reports and GitHub writeups — 18 vuln classes, no
Related Agents
Report Writer
Bug bounty report writer. Generates professional H1/Bugcrowd/Intigriti/Immunefi reports. Impact-first writing,
Web3 Auditor
Smart contract security auditor. Checks 10 bug classes in order of frequency (accounting desync 28%, access co
Blockchain Specialist
Smart contract and Web3 expert. Use PROACTIVELY for Solidity development, Hardhat/Foundry testing, Wagmi integ