/surface — Development skill for Claude Code
View the prioritized attack surface for a target.
How to install /surface
This entry records only its repository, not the path inside it, so there is no
exact command to give. Open shuvonsec/claude-bug-bounty and copy the folder into
~/.claude/skills/, or the file into ~/.claude/agents/.
What /surface does
View the prioritized attack surface for a target.
One of 16 entries listed from shuvonsec/claude-bug-bounty. The repository README
describes the whole collection, not this skill — read it on GitHub.
Alternatives in Development
- Triage PRs — Classify all open PRs by module, review state, scope, and architectural impact — produces a prioritized triage 12.6k ★
- JWT Scan — JWT attack toolkit (offline) — alg:none forgery, RS256→HS256 algorithm confusion, weak-secret crack, static cl 4.5k ★
- Ctf 24h Fleet — 24h unattended multi-target Web CTF fleet loop runner 1.1k ★
Related Skills
Signal Monitor
Scan target accounts for new buying signals and output a prioritized alert list.
Engage.Recon
Execute Phase 1 - Reconnaissance and Attack Surface Mapping
Review Attack Surface
Review external attack surface using Zscaler EASM findings, exposed services, and lookalike domains.
Minimize
Remove unused dependencies and convert Dockerfiles to multi-stage builds to reduce attack surface
Zp Surface
Show the ranked attack surface and what it dispatches to. Usage: /zp-surface
Cua Hunt
Hunt Computer-Use-Agent (CUA) prompt-injection surface — instructions planted in CUA-readable DOM channels (hi
Related Agents
Recon Ranker
Attack surface ranking agent. Takes recon output and hunt memory, produces a prioritized attack plan. Ranks by
Attack Surface
Stage 3 of Vulpine. Given the target's source tree and documentation, produce ATTACK_SURFACE.md — an enumerate
Recon
Maps a repository's attack surface — structure, entry points, dependencies, trust boundaries. Use this first o