Content
76%Weight 40%Scale 1-5Reviews the quality of instructions and guidance provided to agents. Good implementation is clear, handles edge cases, and produces reliable results.
An exceptionally actionable, lean offensive-AD reference packed with executable commands and well-structured sections. Its main weakness is workflow validation: destructive and batch operations lack explicit verify→remediate→retry feedback loops.
Suggestions
Add explicit validation/verification feedback loops for destructive techniques — e.g., after DCShadow /push or GPO abuse, show how to confirm the change took effect and how to roll back on failure before proceeding.
Reconcile the 'Engagement Cheatsheet' with the detailed sections to remove duplicated commands, or explicitly frame it as a quick-reference index that links back to the detailed sections.
Consider moving the large ADCS (ESC1-ESC15) and Persistence catalogs into separate reference files with one-line pointers from SKILL.md to reduce the monolithic single-file footprint.
| Dimension | Reasoning | Score |
|---|---|---|
Conciseness | Dense and largely token-efficient with no concept over-explanation, but the closing 'Engagement Cheatsheet' repeats commands already shown in earlier sections, a minor redundancy that could be trimmed. | 4 / 5 |
Actionability | Throughout, the skill provides fully executable, copy-paste-ready commands with specific tools (Rubeus, certipy, impacket, BloodHound), exact flags, and hashcat modes covering the common cases. | 5 / 5 |
Workflow Clarity | The Quick Workflow gives a clear 5-step sequence and mentions 'validate at each hop', but destructive techniques (DCShadow push, GPO abuse, Golden Ticket, password resets) lack explicit validate→fix→retry feedback loops, capping this dimension per the destructive-ops rule. | 3 / 5 |
Progressive Disclosure | Well-organized with clear section headers (Reconnaissance, Credential Harvesting, ADCS, Persistence) and an explicit Key References block; no bundle files exist so there is no nested-reference problem, though the large single-file reference could optionally split detailed technique catalogs into separate files. | 4 / 5 |
Total | 16 / 20 Passed |