Content
72%Weight 40%Scale 1-5Reviews the quality of instructions and guidance provided to agents. Good implementation is clear, handles edge cases, and produces reliable results.
A highly actionable, token-efficient catalog of SAML attacks with copy-paste payloads and commands. Its weaknesses are the absence of explicit validation checkpoints for the destructive ATO workflows (capping workflow clarity) and a monolithic single-file structure with no local progressive disclosure.
Suggestions
Add explicit validation checkpoints to each attack workflow (e.g. 'Confirm ATO by checking the session user identity in a follow-up request') so destructive operations have verify-then-report feedback loops.
Split the XSW template variants, comment-injection parser-difference payloads, and NameID test lists into separate reference files under references/ and link to them one level deep, rather than inlining everything in SKILL.md.
Reorder so the core recon → attack → validate → triage sequence is one numbered workflow, making the multi-step process and its checkpoints explicit instead of spread across separate Attack sections.
| Dimension | Reasoning | Score |
|---|---|---|
Conciseness | Efficient body that assumes Claude's competence—no basic XML/SAML primers—and most tokens earn their place; the comment-injection discrepancy explanation is slightly long but justified, keeping it just below a 5. | 4 / 5 |
Actionability | Fully executable guidance: copy-paste base64 decode/re-encode commands ('base64 -w0 saml.xml'), concrete XML XSW and XXE payloads, a recon grep one-liner, and the exact SAML Raider Burp workflow steps covering the common cases. | 5 / 5 |
Workflow Clarity | Attack steps are sequenced with a triage table, but this is a destructive/batch XML-manipulation skill (account takeover) lacking explicit validate-the-impact-checkpoints beyond the severity table; per the rubric cap, destructive skills without validation steps cannot exceed 3. | 3 / 5 |
Progressive Disclosure | The body is a single ~113-line monolithic file with section headers but no bundle files; content that could live in separate references (e.g. the XSW payload catalog delegated to security-arsenal) is inlined, and external references are to other skills rather than to local one-level-deep files. | 3 / 5 |
Total | 15 / 20 Passed |