mcpbeat Sign in

Engagement Flow Skill for Claude

Use when starting, planning, or running a multi-phase pentest or red-team engagement — to sequence the Cyber Kill Chain phases with quality gates instead of jumping straight to exploitation

787 tokens
context cost
the whole folder, loaded on every use
1
files
instructions only
0
copies elsewhere
how many repositories repackaged it
334
stars on the repo
on the repository, not the skill itself

Install

one command, takes just this skill from the repository
npx skills add https://github.com/hypnguyen1209/offensive-claude --skill engagement-flow

The instruction itself

6 sections, as written by the author

Engagement Flow

Overview

A pentest/red-team engagement is a phased pipeline with gates, not a pile of techniques run

ad hoc. This skill sequences the 9-phase Lockheed Martin Cyber Kill Chain and routes each phase to

its commands, domain skills, and discipline checks. It is the offensive analog of

brainstorming → writing-plans → executing-plans: scope the work, plan it, then execute phase by phase.

Don't jump to exploitation. Earlier phases earn the access that later phases need, and each gate

keeps quality high before you advance.

The pipeline

digraph killchain {
    rankdir=LR;
    scope -> recon -> weaponize -> deliver -> exploit -> install -> c2 -> actions -> report;
    scope [label="0 SCOPE"]; recon [label="1 RECON"]; weaponize [label="2 WEAPONIZE"];
    deliver [label="3 DELIVER"]; exploit [label="4 EXPLOIT"]; install [label="5 INSTALL"];
    c2 [label="6 C2"]; actions [label="7 ACTIONS"]; report [label="8 REPORT"];
}

Each transition requires a gate (/engage.gate): required artifacts present, findings carry

CWE+CVSS+ATT&CK+evidence, and the automated checks pass. Gate FAIL → fix the gap before advancing.

How to run it

  • Pick the workflow preset for the engagement type (web-app, network, red-team, cloud, mobile,

ad-domain, bug-bounty) and drive phases with the /engage.* commands.

  • Phase 0 (scope): emit .engage/scope/scope.json. REQUIRED: scope-discipline.
  • Phases 1-7: before any target interaction → scope-discipline; before any outward action →

opsec-discipline; invoke the matching domain skill for the technique.

  • Recall prior intel: at recon/weaponize, /engage.memory recall to start from what worked.
  • Findings: REQUIRED: finding-discipline — nothing is [CONFIRMED] without proof.
  • Phase 8 (report): record confirmed findings to engagement-memory; generate the report.
  • Optional autopilot: engine/engine.py runs the phases under a budget/loop/trace with --resume

(/engage.pickup); offensive actions stay operator-gated.

Red Flags — STOP, back up a phase

  • "Let me just start exploiting" (no scope.json / no recon → back to phase 0/1)
  • "Skip the gate, I'll document later" (gates exist so the report is complete and findings are real)
  • "Recon is done, I didn't check prior intel" (run /engage.memory recall)

Quick reference

| Phase | Command | Discipline / tooling |

|-------|---------|----------------------|

| Scope | /engage.scope | scope-discipline → scope.json |

| Recon | /engage.recon | scope-discipline; /engage.memory recall |

| Exploit | /engage.exploit | opsec-discipline; finding-discipline |

| Actions | /engage.actions | action_guard gate; opsec-discipline |

| Report | /engage.report | finding-discipline; record to memory |

| Gate / resume | /engage.gate, /engage.pickup | automated checks; engine trace |

Other skills for the same job

different authors, same section of the catalogue
Doc Coauthoring
by anthropics
vendor ×10

Guide users through a structured workflow for co-authoring documentation. Use when user wants to write documentation, proposals, technical specs, decision docs, or similar structured content. This workflow helps users efficiently transfer context, refine content through iteration, and verify the doc works for readers. Trigger when user mentions writing docs, creating proposals, drafting specs, or similar documentation tasks.

4k tokens
File Organizer
by frostant
×10

Intelligently organizes your files and folders across your computer by understanding context, finding duplicates, suggesting better structures, and automating cleanup tasks. Reduces cognitive load and keeps your digital workspace tidy without manual effort.

3k tokens
Domain Name Brainstormer
by frostant
×8

Generates creative domain name ideas for your project and checks availability across multiple TLDs (.com, .io, .dev, .ai, etc.). Saves hours of brainstorming and manual checking.

1k tokens
Brainstorming
by ZhanlinCui
×4

You MUST use this before any creative work - creating features, building components, adding functionality, or modifying behavior. Explores user intent, requirements and design before implementation.

626 tokens
Planning With Files
by ZhanlinCui
×3

Implements Manus-style file-based planning for complex tasks. Creates task_plan.md, findings.md, and progress.md. Use when starting complex multi-step tasks, research projects, or any task requiring >5 tool calls.

9k tokens scripts
Scientific Brainstorming
by christophacham
×3

Creative research ideation and exploration. Use for open-ended brainstorming sessions, exploring interdisciplinary connections, challenging assumptions, or identifying research gaps. Best for early-stage research planning when you do not have specific observations yet. For formulating testable hypotheses from data use hypothesis-generation.

5k tokens
GitHub Project Management
by ComeOnOliver
×3

Comprehensive GitHub project management with swarm-coordinated issue tracking, project board automation, and sprint planning

14k tokens
Grill Me
by ComeOnOliver
×3

Interview the user relentlessly about a plan or design until reaching shared understanding, resolving each branch of the decision tree. Use when user wants to stress-test a plan, get grilled on their design, or mentions "grill me".

3k tokens

How to use it

Copy the folder

Take hypnguyen1209/engagement-flow from the repository into ~/.claude/skills for personal use, or into .claude/skills inside a project.

Check the name does not clash

The agent identifies a skill by the name field in its header. Two skills with the same name cannot sit side by side — one of them will be ignored.