CtrlK
BlogDocsLog inGet started
Tessl Logo

pt-nuclei-template-creation

Creates Nuclei YAML templates for vulnerability detection across HTTP, DNS, TCP, SSL, and other protocols. Use when converting a confirmed vulnerability, misconfiguration, or exposure into a reusable automated check — for example, turning a manual finding into a detection rule, writing a CVE check, or codifying a technology fingerprint.

75

Quality

92%

Does it follow best practices?

Run evals on this skill

Adds up to 20 points to the overall score

View guide

SecuritybySnyk

Passed

No findings from the security scan

SKILL.md
Quality
Evals
Security

Quality

Content

92%Weight 40%Scale 1-5

Reviews the quality of instructions and guidance provided to agents. Good implementation is clear, handles edge cases, and produces reliable results.

A well-structured, actionable skill body with executable examples, an explicit validation feedback loop, and clean progressive disclosure into verified bundle files. Only minor conciseness trimming opportunities remain.

DimensionReasoningScore

Conciseness

Dense, technical, and mostly assumes competence with minimal padding; a few inline explanations (attack types, headless speed note) could be trimmed but earn their place as Nuclei-specific detail.

4 / 5

Actionability

Multiple complete, copy-paste YAML blocks (skeleton, raw, dns/tcp/ssl, headless, variables, payloads, flow) plus concrete validation commands cover the common cases.

5 / 5

Workflow Clarity

Five-step numbered workflow leads to an explicit self-review and validation step, with a Quality Checks checklist and required true-positive/negative host testing providing feedback checkpoints.

5 / 5

Progressive Disclosure

Overview body signals one-level-deep references (REFERENCE.md, protocols.md, three asset templates), all verified present, with bulk DSL/protocol detail appropriately deferred to those files.

5 / 5

Total

19

/

20

Passed

Description

92%Weight 40%Scale 1-5

Based on the skill's description, can an agent find and select it at the right time? Clear, specific descriptions lead to better discovery.

A strong, specific description with explicit what-and-when guidance and concrete trigger examples. Minor room to broaden natural synonym coverage.

DimensionReasoningScore

Specificity

Lists multiple concrete actions — creating Nuclei YAML templates for vulnerability detection across named protocols, and converting confirmed findings/CVEs/fingerprints into reusable automated checks — giving comprehensive coverage.

5 / 5

Completeness

Explicitly answers what (creates Nuclei YAML detection templates across protocols) and when ('Use when converting a confirmed vulnerability... — for example...') with concrete trigger phrases.

5 / 5

Trigger Term Quality

Strong natural terms ('vulnerability', 'CVE check', 'misconfiguration', 'exposure', 'fingerprint', 'manual finding', 'detection rule') but a few common synonyms/extensions are not explicitly stated.

4 / 5

Distinctiveness Conflict Risk

Occupies a clear niche (Nuclei template authoring for detection) with protocol-specific triggers, distinct from scanning or general pentest skills.

5 / 5

Total

19

/

20

Passed

Validation

100%

Checks the skill against the spec for correct structure and formatting. All validation checks must pass before discovery and implementation can be scored.

Validation16 / 16 Passed

Validation for skill structure

No warnings or errors.

Repository
santosomar/ethical-hacking-agent-skills
Reviewed

Table of Contents

Is this your skill?

If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.