CtrlK
BlogDocsLog inGet started
Tessl Logo

dynamic

iOS dynamic instrumentation on jailbroken device — Frida/Objection setup, SSL Kill Switch pinning bypass, jailbreak-detection bypass, keychain dump, biometric/LAContext bypass, and ObjC runtime method hooking.

68

Quality

82%

Does it follow best practices?

Run evals on this skill

Adds up to 20 points to the overall score

View guide

SecuritybySnyk

Critical

Do not install without reviewing

SKILL.md
Quality
Evals
Security

Quality

Content

82%Weight 40%Scale 1-5

Reviews the quality of instructions and guidance provided to agents. Good implementation is clear, handles edge cases, and produces reliable results.

The content is highly actionable and well-structured with concrete code and per-path verification, with only minor conciseness trims and feedback-loop gaps preventing a top score.

Suggestions

Add an explicit validate→fix→retry loop for the pinning and jailbreak-detection paths (e.g. 'if Burp shows no decrypted traffic, re-check the Gadget attachment and re-run').

Move the longer JavaScript hook scripts into a references/ file referenced one level deep to tighten the main SKILL.md body.

DimensionReasoningScore

Conciseness

The body is code- and command-heavy and assumes Claude's competence with Frida/ObjC, but a few prose lines (e.g. 'Most enterprise and bounty-program iOS testing falls here') could be trimmed, matching anchor 4.

4 / 5

Actionability

Provides copy-paste-ready objection REPL commands, frida --codeshare invocations, complete JavaScript hook scripts, and a one-liner, covering the common cases fully.

5 / 5

Workflow Clarity

Each path (A–E) is sequenced with explicit 'Verify in Burp' / 'check Burp proxy' checkpoints and a ZFP two-method evidence checklist, but explicit validate→fix→retry feedback loops are only implied.

4 / 5

Progressive Disclosure

Well-organized into headed sections (Prerequisites, Paths A–E, Evidence, OPSEC, References) with a one-level cross-reference to ios-static; no bundle files exist so content is inline, but navigation is clear.

4 / 5

Total

17

/

20

Passed

Description

82%Weight 40%Scale 1-5

Based on the skill's description, can an agent find and select it at the right time? Clear, specific descriptions lead to better discovery.

The description is specific, trigger-rich, and highly distinctive, but lacks an explicit 'Use when…' trigger clause, which caps its completeness at 3.

Suggestions

Append an explicit trigger clause, e.g. 'Use when doing iOS dynamic instrumentation on a jailbroken device, or when the user mentions Frida, objection, SSL pinning bypass, keychain dumps, or biometric/LAContext bypass.'

Keep the action list but pair it with concrete 'when' phrasing so both what and when are explicitly answered.

DimensionReasoningScore

Specificity

Lists six concrete actions — 'Frida/Objection setup, SSL Kill Switch pinning bypass, jailbreak-detection bypass, keychain dump, biometric/LAContext bypass, and ObjC runtime method hooking' — giving comprehensive, specific coverage rather than generic language.

5 / 5

Completeness

The 'what' is clear and detailed, but there is no 'Use when…' clause or equivalent explicit trigger guidance; per the judging guidelines a missing trigger clause caps completeness at 3.

3 / 5

Trigger Term Quality

Includes natural iOS-pentest phrasing a user would say ('Frida/Objection', 'SSL Kill Switch', 'jailbreak', 'keychain dump', 'biometric/LAContext', 'ObjC runtime') with synonyms and tool names, matching comprehensive anchor 5.

5 / 5

Distinctiveness Conflict Risk

Occupies a clear niche ('iOS dynamic instrumentation on jailbroken device') with distinct triggers, making conflict with other skills unlikely.

5 / 5

Total

18

/

20

Passed

Validation

93%

Checks the skill against the spec for correct structure and formatting. All validation checks must pass before discovery and implementation can be scored.

Validation15 / 16 Passed

Validation for skill structure

CriteriaDescriptionResult

metadata_version

'metadata.version' is missing

Warning

Total

15

/

16

Passed

Repository
PurpleAILAB/Decepticon
Reviewed

Table of Contents

Is this your skill?

If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.