CtrlK
BlogDocsLog inGet started
Tessl Logo

active-directory-attacks

Provide comprehensive techniques for attacking Microsoft Active Directory environments. Covers reconnaissance, credential harvesting, Kerberos attacks, lateral movement, privilege escalation, and domain dominance for red team operations and penetration testing.

60

Quality

71%

Does it follow best practices?

Run evals on this skill

Adds up to 20 points to the overall score

View guide

SecuritybySnyk

Critical

Do not install without reviewing

Fix and improve this skill with Tessl

tessl review fix ./skills/active-directory-attacks/SKILL.md
SKILL.md
Quality
Evals
Security

Quality

Content

76%Weight 40%Scale 1-5

Reviews the quality of instructions and guidance provided to agents. Good implementation is clear, handles edge cases, and produces reliable results.

The content is highly actionable with executable commands throughout and a well-structured single-level reference, but the destructive/batch attack workflows lack explicit validation and verification checkpoints, capping workflow clarity at 3.

Suggestions

Add explicit validation/verification checkpoints to destructive workflows (e.g., after ZeroLogon, verify DC connectivity and restore the DC machine-account password before proceeding; after DCSync, confirm extracted hashes are valid before ticket forging).

Insert feedback loops (verify -> fix -> retry) for batch operations like password spraying (monitor for lockouts, abort if lockout threshold approached) and NTLM relay (confirm SMB signing status before launching).

Remove the duplicated Purpose paragraph (the description already states it) and trim redundant commented headers to tighten token efficiency.

DimensionReasoningScore

Conciseness

The body is largely lean command references with minimal padding and assumes Claude's competence, though the duplicated purpose block and some commented headers add minor redundancy that could be trimmed.

4 / 5

Actionability

Provides copy-paste-ready, executable commands and code across every attack category with specific tools, flags, and target placeholders, covering the common cases comprehensively.

5 / 5

Workflow Clarity

The core workflow lists sequenced steps but validation checkpoints are largely absent, and the destructive/batch nature of the operations (DCSync, ZeroLogon, password spraying) without validation caps this at 3 per the rubric.

3 / 5

Progressive Disclosure

Good structure with a concise overview in SKILL.md and a clearly signaled one-level-deep reference to references/advanced-attacks.md (a real file); only minor organization gaps remain.

4 / 5

Total

16

/

20

Passed

Description

67%Weight 40%Scale 1-5

Based on the skill's description, can an agent find and select it at the right time? Clear, specific descriptions lead to better discovery.

The description is specific and clearly occupies a distinct niche, but it answers 'what' thoroughly while omitting any explicit 'when to use' trigger guidance, which caps completeness at 3.

Suggestions

Append an explicit 'Use when...' trigger clause (e.g., 'Use when assessing or attacking Microsoft Active Directory environments during authorized red team or penetration testing engagements.').

Add natural synonyms and concrete trigger phrasing users would actually say (e.g., 'AD attacks', 'Kerberoasting', 'credential dumping', 'domain dominance').

Add file-extension or tool-name cues that users naturally mention (e.g., 'BloodHound', 'Mimikatz', 'Impacket') to improve trigger-term coverage.

DimensionReasoningScore

Specificity

Lists multiple concrete attack actions across the AD domain — 'reconnaissance, credential harvesting, Kerberos attacks, lateral movement, privilege escalation, and domain dominance' — providing comprehensive coverage of the skill's capabilities.

5 / 5

Completeness

Clearly answers 'what' with a detailed capability list but provides no 'Use when...' clause or equivalent explicit trigger guidance, capping completeness at 3 per the rubric.

3 / 5

Trigger Term Quality

Contains relevant domain terms ('Active Directory', 'Kerberos', 'red team', 'penetration testing') but lacks the natural variations or synonyms a user would say, and offers no explicit trigger phrasing to guide invocation.

3 / 5

Distinctiveness Conflict Risk

Targets a clear niche — Microsoft Active Directory offensive operations — with distinct triggers that are unlikely to conflict with unrelated skills.

5 / 5

Total

16

/

20

Passed

Validation

93%

Checks the skill against the spec for correct structure and formatting. All validation checks must pass before discovery and implementation can be scored.

Validation15 / 16 Passed

Validation for skill structure

CriteriaDescriptionResult

frontmatter_unknown_keys

Unknown frontmatter key(s) found; consider removing or moving to metadata

Warning

Total

15

/

16

Passed

Repository
sickn33/antigravity-awesome-skills
Reviewed

Table of Contents

Is this your skill?

If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.