Content
56%Weight 40%Scale 1-5Reviews the quality of instructions and guidance provided to agents. Good implementation is clear, handles edge cases, and produces reliable results.
The body is well-structured and highly actionable as a payload reference, with a clear phased workflow and good troubleshooting coverage. Its two main weaknesses are token efficiency — most of the content is standard SQL injection knowledge Claude already has, duplicated across sections — and structure, since ~400 lines of payload catalogs live inline in SKILL.md instead of being split into referenced files.
Suggestions
Move the payload catalogs, Quick Reference tables, and worked Examples into references/payloads.md and references/examples.md, keeping SKILL.md as a concise overview of the four-phase workflow with one-level-deep, clearly signaled references.
Cut textbook material Claude already knows (UNION column counting, classic auth-bypass strings, basic sleep-based payloads) and keep only what adds value: scope/authorization gates, evidence-collection requirements, and report deliverable formats.
Either show concrete tool invocations (e.g. sqlmap command lines with the target parameter and session cookie) or drop SQLMap/Burp from the prerequisites, since they are currently named but never used.
| Dimension | Reasoning | Score |
|---|---|---|
Conciseness | The ~440-line body is largely a textbook SQLi payload catalog — UNION column counting via ORDER BY, classic auth-bypass strings (' OR '1'='1), SLEEP-based blind extraction, comment-substitution filter evasion — all of which Claude already knows, which the guidelines explicitly penalize. It is noticeably verbose with several redundant sections (payload lists repeated in Quick Reference and Examples). Above 1 because it is structured reference material rather than padded prose explanation. | 2 / 5 |
Actionability | Payloads are concrete and copy-paste ready, and the worked examples show full HTTP requests with expected responses ("GET /product.php?id=5 ORDER BY 4-- / Response: Normal"). Below 5 because named prerequisites (SQLMap, Burp Suite) never get a single invocation example — the tools are required but their use is left entirely to inference. | 4 / 5 |
Workflow Clarity | A clear four-phase sequence (detection, exploitation, auth bypass, filter bypass) with embedded confirmations — true/false response comparison, ORDER BY-until-error column enumeration, delay confirmation — and a Troubleshooting section for error recovery. Below 5 because validation checkpoints are implicit inside phases rather than explicit gate steps, and the destructive-operation cap does not apply since destructive queries are explicitly forbidden in Constraints. | 4 / 5 |
Progressive Disclosure | No bundle files exist at all: the entire skill is a monolithic SKILL.md where payload catalogs, quick-reference tables, and worked examples clearly belong in separate references/ files. Section headers are good, so above anchor 2 (no structure), but it matches anchor 3: content that should be separate is inlined with no one-level-deep references. | 3 / 5 |
Total | 13 / 20 Passed |