claude-red is a curated library of offensive security skills designed for the Claude skills system. Each skill is a structured SKILL.md file that primes Claude with expert-level methodology for a specific attack surface — from SQLi to shellcode, EDR evasion to exploit development.
Incomplete The queue state is partial, the last saved scan was truncated or incomplete, or a continuation record is still stored. Indexed content may be missing.
Repository
Canonical name
SnailSploit/Claude-Red
GitHub repository ID
1172273835
Package records
79 (historical registry records, not current availability)
Discovery and queue
First recorded source
search:topic:claude-skills fork:false
Discovered
Queue state
ok
Recorded errors
0
Last settled processing
Next-check eligibility
Eligible from
The first recorded source is what the queue stored first, not the full discovery history. The error count increases when processing ends in the error state and resets after a successful settlement; it is not a count of all attempts. “Last settled processing” is when it finished, not when it started.
Eligibility is calculated as of . It is not a schedule: each collector run handles only a limited number of sources, and being eligible does not promise when a check happens.
Last saved scan
Repository metadata read
Scan status
truncated
Scan saved
Extractor version
2
Continuation record
None
The scan record is separate from the queue state: the queue state shows processing progress, the scan record shows what was last saved. A continuation record only means unfinished state is stored; it has no remaining count.
Source-file evidence coverage
Raw counts of the pinned source files that stored package versions reference in this repository. They show what has been recorded, not how complete the repository is.
Scope and limits
Counts distinct pinned file links (repository, commit, path) across all stored versions, from any package, that name exactly this repository's canonical name. Files of packages owned by this repository are not counted unless some version links to them here. Alias names are not merged and no history is guessed from a current name.
“Known” means a regular-file identity is recorded. It does not mean a whole directory or package is covered. Links that are not valid pinned file URLs are not counted.
79 pinned source files referenced
79 known
0 absent at commit
0 file listing truncated
0 unsupported
0 not recorded
0 read failed
Deduplicated by repository, commit and path; the same path at two commits counts as two file identities. These are not component-group counts.
Failed source-commit reads 0
No source commit has a stored failed read for files that are still unrecorded.
Linked packages 79
Linked by verified repository identity. The count is historical registry records, not current availability.
Comprehensive red team operations methodology covering full engagement lifecycle from planning through reporting. Addresses engagement scoping and rules of engagement negotiation, multi-tier C2 infrastructure design with redirectors and do…
Anti-forensics and evidence destruction techniques for red team operators conducting authorized engagements. Covers log clearing on Windows (wevtutil, Clear-EventLog, ETW provider patching) and Linux (journal truncation, utmp/wtmp binary e…
Advanced API exploitation methodology focused on business logic abuse and sophisticated attack patterns that bypass traditional security controls. Covers business logic bypass through API call chaining and workflow manipulation. Addresses …
Comprehensive API security testing methodology covering REST, gRPC, and WebSocket attack surfaces. Addresses the full OWASP API Security Top 10 2023 including BOLA/IDOR, broken authentication, excessive data exposure, rate limiting bypass,…
Bluetooth Low Energy (BLE) attack methodology — GATT enumeration, characteristic read/write without auth, pairing downgrade (Just Works forced), LE Secure Connections bypass, MITM via active relay, sniffing with Sniffle (TI CC1352) / Ubert…
Command and Control framework deployment, configuration, and operational tradecraft for red team engagements. Covers Cobalt Strike (malleable C2 profiles, Beacon types HTTP/HTTPS/DNS/SMB, Beacon Object Files for in-memory execution, sleep …
Comprehensive secrets extraction methodology targeting CI/CD environments across all major platforms. Covers environment variable extraction from build contexts, exploitation of vault and secrets-manager misconfigurations (HashiCorp Vault,…
Container escape and breakout techniques targeting Docker, containerd, and Podman runtimes. Covers privileged container breakout via host filesystem mount and nsenter, Docker socket abuse through /var/run/docker.sock, Linux capability expl…
Systematic methodology for identifying and exploiting cryptographic implementation weaknesses in real-world applications. Covers padding oracle attacks against CBC-mode ciphers with PKCS7 padding (Vaudenay's original attack through modern …
When last recorded, these names pointed to this repository. This is a recorded resolution, not a live GitHub check; packages and metadata are never merged because of it.
No aliases pointing to this repository are recorded.
Unsupported marketplace entries 0
Entries in this repository's marketplace that this registry does not support yet. They are preserved source data and are never fetched or executed.