hypnguyen1209/opsec-discipline
Use when about to take any outward or offensive action (request, payload, persistence, lateral movement, exfil, or feeding captured traffic to the model) — to decide detection footprint, cleanup, and secret redaction first
npx skills add https://github.com/hypnguyen1209/offensive-claude --skill opsec-discipline
Decide the detection footprint and cleanup before acting, not after. Every offensive technique
in this repo pairs with the telemetry it generates and a detection signature — use that pairing to
choose the quieter path and to know what you'll need to clean up.
domain skill's OPSEC & Detection table has this.) Pick the lower-noise variant when one exists.
reverted? Stage the cleanup before you create the artifact.
redacted at the boundary:
python skills/coding-mastery/scripts/_lib/redact_headers.py < exchange.txt (or redact_text()),
so Authorization/Cookie/API-key/JWT values never land in context or the report.
| Excuse | Reality |
|--------|---------|
| "OPSEC slows me down" | Unplanned noise/loot is how engagements get burned and how data leaks. |
| "It's an internal tool log" | Logs get shipped, shared, and indexed. Redact. |
| "Cleanup is a reporting-phase task" | You can't clean what you didn't track. Track at action time. |
OPSEC is part of every action, not a phase. Detection-awareness also strengthens the defensive value
of the finding (you can tell the client exactly how to catch it).
Take hypnguyen1209/opsec-discipline from the repository into ~/.claude/skills for personal
use, or into .claude/skills inside a project.
The agent identifies a skill by the name field in its header. Two skills with the
same name cannot sit side by side — one of them will be ignored.