Use when starting, planning, or running a multi-phase pentest or red-team engagement — to sequence the Cyber Kill Chain phases with quality gates instead of jumping straight to exploitation
npx skills add https://github.com/hypnguyen1209/offensive-claude --skill engagement-flow
A pentest/red-team engagement is a phased pipeline with gates, not a pile of techniques run
ad hoc. This skill sequences the 9-phase Lockheed Martin Cyber Kill Chain and routes each phase to
its commands, domain skills, and discipline checks. It is the offensive analog of
brainstorming → writing-plans → executing-plans: scope the work, plan it, then execute phase by phase.
Don't jump to exploitation. Earlier phases earn the access that later phases need, and each gate
keeps quality high before you advance.
digraph killchain {
rankdir=LR;
scope -> recon -> weaponize -> deliver -> exploit -> install -> c2 -> actions -> report;
scope [label="0 SCOPE"]; recon [label="1 RECON"]; weaponize [label="2 WEAPONIZE"];
deliver [label="3 DELIVER"]; exploit [label="4 EXPLOIT"]; install [label="5 INSTALL"];
c2 [label="6 C2"]; actions [label="7 ACTIONS"]; report [label="8 REPORT"];
}
Each transition requires a gate (/engage.gate): required artifacts present, findings carry
CWE+CVSS+ATT&CK+evidence, and the automated checks pass. Gate FAIL → fix the gap before advancing.
ad-domain, bug-bounty) and drive phases with the /engage.* commands.
.engage/scope/scope.json. REQUIRED: scope-discipline.opsec-discipline; invoke the matching domain skill for the technique.
/engage.memory recall to start from what worked.[CONFIRMED] without proof.engine/engine.py runs the phases under a budget/loop/trace with --resume(/engage.pickup); offensive actions stay operator-gated.
/engage.memory recall)| Phase | Command | Discipline / tooling |
|-------|---------|----------------------|
| Scope | /engage.scope | scope-discipline → scope.json |
| Recon | /engage.recon | scope-discipline; /engage.memory recall |
| Exploit | /engage.exploit | opsec-discipline; finding-discipline |
| Actions | /engage.actions | action_guard gate; opsec-discipline |
| Report | /engage.report | finding-discipline; record to memory |
| Gate / resume | /engage.gate, /engage.pickup | automated checks; engine trace |
Guide users through a structured workflow for co-authoring documentation. Use when user wants to write documentation, proposals, technical specs, decision docs, or similar structured content. This workflow helps users efficiently transfer context, refine content through iteration, and verify the doc works for readers. Trigger when user mentions writing docs, creating proposals, drafting specs, or similar documentation tasks.
Intelligently organizes your files and folders across your computer by understanding context, finding duplicates, suggesting better structures, and automating cleanup tasks. Reduces cognitive load and keeps your digital workspace tidy without manual effort.
Generates creative domain name ideas for your project and checks availability across multiple TLDs (.com, .io, .dev, .ai, etc.). Saves hours of brainstorming and manual checking.
You MUST use this before any creative work - creating features, building components, adding functionality, or modifying behavior. Explores user intent, requirements and design before implementation.
Implements Manus-style file-based planning for complex tasks. Creates task_plan.md, findings.md, and progress.md. Use when starting complex multi-step tasks, research projects, or any task requiring >5 tool calls.
Creative research ideation and exploration. Use for open-ended brainstorming sessions, exploring interdisciplinary connections, challenging assumptions, or identifying research gaps. Best for early-stage research planning when you do not have specific observations yet. For formulating testable hypotheses from data use hypothesis-generation.
Comprehensive GitHub project management with swarm-coordinated issue tracking, project board automation, and sprint planning
Interview the user relentlessly about a plan or design until reaching shared understanding, resolving each branch of the decision tree. Use when user wants to stress-test a plan, get grilled on their design, or mentions "grill me".
Take hypnguyen1209/engagement-flow from the repository into ~/.claude/skills for personal
use, or into .claude/skills inside a project.
The agent identifies a skill by the name field in its header. Two skills with the
same name cannot sit side by side — one of them will be ignored.