ctf-sandbox
Thin PRIMARY for CTF / AWD / 靶场 multi-type orchestration. Hands off to the sidecar CTF-Sandbox-Orchestrator. Use when the user says CTF, AWD, 靶场, or 比赛题 and no more specific pwn/APK/IDA route already won.
How do I install this agent skill?
npx skills add https://github.com/zhaoxuya520/reverse-skill --skill ctf-sandboxIs this agent skill safe to install?
- Gen Agent Trust Hubpass
This skill acts as a security gateway and orchestrator for CTF (Capture The Flag) and competitive security tasks. It mandates an initialization routine and network isolation before any actions are taken, serving as a protective wrapper for more specialized sub-skills.
- Socketwarn
1 alert: gptAnomaly
- Snykpass
Risk: LOW · No issues
What does this agent skill do?
CTF sandbox entry (sidecar, not a second router)
ACTION REQUIRED(读完后立刻执行)
NOW: 跑../scripts/case-init.ps1;auth.status=granted前禁止对真实外网 ACT。竞赛/靶场用-NetworkProfile lab或offline。NOW: 打开包根下的../../CTF-Sandbox-Orchestrator/ctf-sandbox-orchestrator/SKILL.md,按它的 sandbox 假设继续。MUST NOT把 40+ 个competition-*子技能写进routing.json。本入口只是一条 PRIMARY 门闩。ACT: 由 orchestrator 选一个 downstreamcompetition-*。具体题型已明确时(pwn/ROP、APK、IDA)应已由routing.json更靠前的规则赢下,不要再抢。
为什么单独一层
CTF-Sandbox-Orchestrator/ 是 GPL 旁路包,授权默认是沙箱内部。核心路由包仍是 MIT + scope.md 门禁。本 skill 只做关键词入口,不把竞赛树并进核心。
任务完成自检(声称完成前 MUST 通过)
- 我是否先走了 case-init / scope,而不是把“用户说了 CTF”当成已授权外网?
- 我是否打开了 sidecar orchestrator,而不是把 40 个子技能当 PRIMARY?
- 若任务其实是 pwn/APK/IDA,我是否让更具体的 PRIMARY 接手?
How can the creator link this skill?
Add the canonical catalog link to the repository README so users can inspect current installs and available audits. The publishing guide covers the complete discovery path.
<a href="https://skillzs.dev/skills/zhaoxuya520/reverse-skill/ctf-sandbox">View ctf-sandbox on skillZs</a>