Валидация уязвимостей перед сабмитом в bug bounty

★ 8.2 · testing

triage-validation is a Claude Code skill that validates security findings before any report is written, reducing N/A submissions and improving acceptance rates in bug bounty programs. It contains an 8-question gate (7 core questions plus an identity/session check), four sequential pre-submission gates, a list of always-rejected vulnerability classes, a conditionally-valid findings table with chaining guidance, a CVSS 3.1 quick reference, and a 60-second pre-submit checklist. A single wrong answer triggers an immediate stop — the skill requires a real copy-paste-ready HTTP request, proven impact beyond "technically possible," and cross-identity reproduction verified against audit.jsonl session IDs to correctly classify IDOR, privilege escalation, and auth bypass. Built for security researchers who want to filter weak or out-of-scope findings during triage rather than after investing time in a full report.