CtrlK
BlogDocsLog inGet started
Tessl Logo

burp-suite-testing

This skill should be used when the user asks to "intercept HTTP traffic", "modify web requests", "use Burp Suite for testing", "perform web vulnerability scanning", "test with Burp ...

Install with Tessl CLI

npx tessl i github:sickn33/antigravity-awesome-skills --skill burp-suite-testing
What are skills?

79

Does it follow best practices?

Agent success when using this skill

Validation for skill structure

SKILL.md
Review
Evals

Evaluation results

100%

13%

Burp Suite Onboarding Guide for New Penetration Testers

Proxy setup and environment configuration

Criteria
Without context
With context

Proxy address

100%

100%

CA cert source

100%

100%

CA cert install step

87%

100%

Embedded browser

100%

100%

Intercept toggle

100%

100%

Scope configuration

60%

100%

In-scope filtering

100%

100%

Save project

66%

100%

Authorized testing

100%

100%

Rate limiting

0%

100%

Scanner edition

100%

100%

Intruder edition

100%

100%

Without context: $0.2274 · 1m 23s · 10 turns · 59 in / 3,836 out tokens

With context: $0.3704 · 1m 36s · 16 turns · 65 in / 4,088 out tokens

87%

8%

Credential Testing Setup for Internal HR Portal

Intruder attack configuration and analysis

Criteria
Without context
With context

§ markers present

100%

100%

Pitchfork for pairs

14%

50%

Cluster bomb for exhaustive

70%

100%

Two payload sets

100%

100%

Sort by response length

100%

100%

Status code filtering

100%

100%

Grep for strings

100%

100%

Rate limiting precaution

100%

100%

Export results

100%

100%

Intruder edition note

0%

0%

Without context: $0.2886 · 1m 34s · 13 turns · 61 in / 4,840 out tokens

With context: $0.4194 · 2m 8s · 14 turns · 14 in / 5,890 out tokens

84%

14%

Manual Vulnerability Investigation for E-Commerce Product Endpoint

Repeater testing and response analysis

Criteria
Without context
With context

Repeater workflow

70%

100%

Stack trace indicator

100%

100%

Framework disclosure indicator

100%

100%

Response length indicator

100%

100%

Timing indicator

100%

100%

userId modification test

100%

100%

SQL injection payloads

60%

100%

Scope configuration

62%

100%

Manual false positive review

37%

0%

Request history navigation

0%

0%

Decoder or Comparer mention

12%

100%

Path traversal payloads

100%

100%

Without context: $0.3368 · 2m 10s · 10 turns · 11 in / 6,883 out tokens

With context: $0.5895 · 2m 47s · 20 turns · 350 in / 8,953 out tokens

Evaluated
Agent
Claude Code

Table of Contents

Is this your skill?

If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.