triage-validation

Guides security analysts through validating vulnerability scope, impact, reproducibility, and report quality before submission.

4|Updated Mar 12, 2026
One-click install
npx skills add https://github.com/Bsh13lder/Lazy-Claw --skill triage-validation-bsh13lder
Or copy as Structured Prompt for Agent▼
Please help me install this Agent Skill.
Skill: triage-validation
Source: https://github.com/Bsh13lder/Lazy-Claw/tree/main/claude-bug-bounty/skills/triage-validation
Command: npx skills add https://github.com/Bsh13lder/Lazy-Claw --skill triage-validation-bsh13lder

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill includes references (resource) components.

What problem does it solve?

This Skill provides a comprehensive checklist and process for security analysts to verify and prioritize bug bounties efficiently, reducing false positives and ensuring impactful reports.

Core Features & Use Cases

  • Structured Validation: Guides users through detailed impact and scope verification steps.
  • Impact Assessment: Helps determine the severity and exploitability of vulnerabilities.
  • Pre-Submission Gates: Ensures bug reports meet quality standards before submission.
  • Use Case: A security researcher uses this Skill to validate a potential IDOR vulnerability by systematically checking scope, impact, duplicate reports, and proof quality, ensuring only high-value bugs are submitted.

Quick Start

Ask this Skill to review a reported security issue, verify its impact, scope, and reproducibility, and prepare a high-quality bug report.

Frequently Asked Questions about triage-validation

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I validate a vulnerability before submitting a bug bounty report?▼

To validate a vulnerability before submitting a bug bounty report, you must systematically verify its scope, impact, reproducibility, and duplicate status to ensure only high-value bugs are submitted.

What steps are needed to assess the impact and severity of a security vulnerability?▼

Assessing vulnerability impact involves guiding through detailed verification steps to determine severity and exploitability, ensuring the security issue meets strict quality standards prior to submission.

How can I reduce false positives in my security vulnerability assessments?▼

You can reduce false positives in vulnerability assessments by applying structured validation questions and pre-submission gates that verify reproducibility and impact before reporting.

Does this vulnerability validation process work for verifying IDOR bug reports?▼

Yes, this vulnerability validation process works for IDOR bug reports by guiding analysts step-by-step through checking scope, impact, duplicates, and proof quality for accurate submission.

When should I use a structured validation checklist for vulnerability reporting?▼

You should use a structured validation checklist for vulnerability reporting when you need to verify bug scope and exploitability, ensuring your reports meet quality standards and avoid duplicates.