agentsclimarketplace

Strix nuclei

Skill asdfgh1445/ctf-super-hub/strix-nuclei

Strix Nuclei 命令手册,覆盖模板选择、高吞吐执行与自动化边界控制;触发名:strix-nucleiFrom its SKILL.md

Install
npx -y skills add asdfgh1445/ctf-super-hub --skill strix-nuclei

Assembled from the repository path, not quoted from the project. Check it against their README if it does not work.

One thing to look at

  • no licenseNo license file was found in the repository. Code published without one is not open source by default, so using it at work is a question for whoever answers licensing questions where you are.

SKILL.md

2.8 KB, 781 tokens by cl100k_base, as published. Nobody here has run it

Nuclei CLI Playbook

Official docs:

Canonical syntax: nuclei [flags]

High-signal flags:

  • -u, -target <url> single target
  • -l, -list <file> targets file
  • -im, -input-mode <mode> list/burp/jsonl/yaml/openapi/swagger
  • -t, -templates <path|tag> explicit template path(s)
  • -tags <tag1,tag2> run by tag
  • -s, -severity <critical,high,...> severity filter
  • -as, -automatic-scan tech-mapped automatic scan
  • -ni, -no-interactsh disable OAST/interactsh requests
  • -rl, -rate-limit <n> global request rate cap
  • -c, -concurrency <n> template concurrency
  • -bs, -bulk-size <n> hosts in parallel per template
  • -timeout <seconds> request timeout
  • -retries <n> retries
  • -stats periodic scan stats output
  • -silent findings-only output
  • -j, -jsonl JSONL output
  • -o <file> output file

Agent-safe baseline for automation: nuclei -l targets.txt -as -s critical,high -rl 50 -c 20 -bs 20 -timeout 10 -retries 1 -silent -j -o nuclei.jsonl

Common patterns:

  • Focused severity scan: nuclei -u https://target.tld -s critical,high -silent -o nuclei_high.txt
  • List-driven controlled scan: nuclei -l targets.txt -as -rl 50 -c 20 -bs 20 -timeout 10 -retries 1 -j -o nuclei.jsonl
  • Tag-driven run: nuclei -l targets.txt -tags cve,misconfig -s critical,high,medium -silent
  • Explicit templates: nuclei -l targets.txt -t http/cves/ -t dns/ -rl 30 -c 10 -bs 10 -j -o nuclei_templates.jsonl
  • Deterministic non-OAST run: nuclei -l targets.txt -as -s critical,high -ni -stats -rl 30 -c 10 -bs 10 -timeout 10 -retries 1 -j -o nuclei_no_oast.jsonl

Critical correctness rules:

  • Provide a template selection method (-as, -t, or -tags); avoid unscoped broad runs.
  • Keep -rl, -c, and -bs explicit for predictable resource use.
  • Use -ni when outbound interactsh/OAST traffic is not expected or not allowed.
  • Use structured output (-j -o <file>) for automation.

Usage rules:

  • Start with severity/tags/templates filters to keep runs explainable.
  • Keep retries conservative (-retries 1) unless transport instability is proven.
  • Do not use -h/--help for routine operation unless absolutely necessary.

Failure recovery:

  • If performance degrades, lower -c/-bs before lowering -rl.
  • If findings are unexpectedly empty, verify template selection (-as vs explicit -t/-tags).
  • If scan duration grows, reduce target set and enforce stricter template/severity filters.

If uncertain, query web_search with: site:docs.projectdiscovery.io nuclei <flag> running

What ships with it

Read from the repository

Just SKILL.md. No reference files, no scripts.

Keep looking

Skills are one crate of 325,949. Ordering is by how many stacks a row turns up in, so the top of any crate is what has actually been picked rather than what has the most stars.