Penthera

Runs authorized security scans on live URLs and local repos using the Penthera CLI (TLS, headers, OpenAPI, auth hardening, secret scanning, optional injection probes), then applies framework-aware fixes and re-scans to verify them. Use when the user asks to scan, audit, harden, fix, pentest, or review security of their own app, staging URL, localhost, or repo; apply security best practices; generate SARIF for GitHub; diff against a baseline; or find hardcoded secrets before deploy. Do NOT use for targets without explicit authorization.

danoszz 0ed79fe 11 files · 41.4 KB Updated

File contents

danoszz/penthera/tree/main/skills/penthera commit 0ed79fe86b

Frequently asked questions

npx skillmds@latest add danoszz/penthera