Content
72%Reviews the quality of instructions and guidance provided to agents. Good implementation is clear, handles edge cases, and produces reliable results.
The body is a concise, well-organized single-file technique catalog that assumes Claude's competence and needs no external references. Its weaknesses are actionability and workflow clarity: it describes attacker techniques more than it gives executable testing procedures, and the probing workflow lacks explicit validation checkpoints.
Suggestions
Add a concrete, executable test harness or step-by-step probing procedure (e.g., example commands for running the listed plugins and checking interactsh/Burp Collaborator callbacks) to move from descriptive catalog to actionable playbook.
Insert an explicit validation loop for the probe workflow — run probe → confirm detection signal fired → confirm OOB callback received → classify severity — with checkpoints before escalating, to lift workflow_clarity above 2.
Provide at least one fully worked example (complete injection prompt + expected model output + the detection signal it should trigger) so Claude can execute a technique end-to-end.
| Dimension | Reasoning | Score |
|---|---|---|
Conciseness | The body is lean and bullet-driven ('First-letter encoding', 'Whitespace patterns', 'U+200B'), uses terse notation ('w/', '→', 'exfil'), and never over-explains concepts Claude already knows, so every token earns its place. | 3 / 3 |
Actionability | Concrete elements exist (a probe-pattern YAML block, specific exfil URL examples, and detection signals), but the bulk is descriptive enumeration of attacker techniques rather than a complete executable test harness or step-by-step procedure Claude can run end-to-end. | 2 / 3 |
Workflow Clarity | T7.006 lays out a clear Step 1/2/3 sequence and the probe→detect→severity flow is implied, but there are no explicit validation/verification checkpoints for the risky probing workflow, which caps workflow clarity at 2 per the scoring notes. | 2 / 3 |
Progressive Disclosure | The skill is a single self-contained file with well-organized sections (Techniques, Probe pattern, Detection signals, Severity, Defender, Cross-references), no nested or broken references, and no bundle files needing navigation, so the well-structured single-file organization scores full marks. | 3 / 3 |
Total | 10 / 12 Passed |