Content
63%Weight 40%Scale 1-5Reviews the quality of instructions and guidance provided to agents. Good implementation is clear, handles edge cases, and produces reliable results.
A well-sequenced, largely executable workflow for building C2 redirectors with strong code examples and validation checkpoints. Its main weaknesses are some conceptual over-explanation, a vague OPSEC step, and a progressive-disclosure gap where bundle files are never linked and overlapping content is inlined instead.
Suggestions
Link the bundle files from the body: reference references/standards.md for the MITRE/NIST mapping table (and remove the inlined duplicate), references/api-reference.md for the directive reference, and scripts/agent.py for automated config generation and redirector validation.
Make the OPSEC step (7) actionable with concrete commands for geo filtering (e.g., an ipset/GeoIP iptables snippet) and a rotation mechanism, rather than comment-style 'consider...' guidance.
Trim the Overview's explanation of what a C2 redirector is — Claude already knows this — and keep only the skill-specific framing (dumb pipe vs filtering, profile lock-step).
| Dimension | Reasoning | Score |
|---|---|---|
Conciseness | Mostly efficient and code-dense, but the Overview explains what a C2 redirector is ('an intermediary host that sits between victim implants and the real team server') and the inlined MITRE ATT&CK table duplicates references/standards.md, both of which could be trimmed. | 3 / 5 |
Actionability | Steps 1–6 give copy-paste-ready commands (socat, iptables, nginx config, Apache mod_rewrite, cs2modrewrite, certbot), but step 7 (OPSEC) is hand-wavy — 'Consider CDN/domain fronting where supported' and 'rotate the redirector domain/IP on a schedule' appear as comments rather than executable commands. | 4 / 5 |
Workflow Clarity | A clear 7-step sequence with per-step verification (`nginx -t`, `apache2ctl configtest`, curl checks) and a consolidated Validation Criteria checklist, though there is no explicit 'if validation fails, fix and retry' feedback loop embedded in the steps themselves. | 4 / 5 |
Progressive Disclosure | Section structure is good (Overview, When to Use, Prerequisites, Workflow, Tools, Validation), but none of the three bundle files are referenced from the body — references/standards.md duplicates the inlined MITRE table, references/api-reference.md duplicates inlined directives, and scripts/agent.py (a generator/validator) is entirely orphaned. | 3 / 5 |
Total | 14 / 20 Passed |