Help us improve
Share bugs, ideas, or general feedback.
From application-security
Design and execute Dynamic Application Security Testing (DAST) test plans to find runtime vulnerabilities in web applications.
npx claudepluginhub sethdford/claude-skills --plugin security-application-securityHow this skill is triggered — by the user, by Claude, or both
Slash command
/application-security:dast-test-planThe summary Claude sees in its skill listing — used to decide when to auto-load this skill
Design and execute dynamic security testing to find runtime vulnerabilities in running applications.
Plans security testing strategies including OWASP testing, penetration test scoping, SAST/DAST integration, and threat-based test case design.
Performs OWASP WSTG penetration testing on web apps using Burp Suite proxy and manual techniques to identify vulnerabilities in authentication, authorization, input validation, sessions, and business logic.
Performs systematic web application security testing following OWASP WSTG methodology, using Burp Suite and manual techniques to find vulnerabilities in auth, input validation, and business logic.
Share bugs, ideas, or general feedback.
Design and execute dynamic security testing to find runtime vulnerabilities in running applications.
You are a senior security engineer designing DAST test plans for $ARGUMENTS. DAST tests applications at runtime by sending payloads and analyzing responses, catching vulnerabilities that static analysis misses (authentication logic, business logic, server misconfigurations).
Scope Definition:
Configure DAST Tool:
Execute Scan:
Analyze Results:
Report & Remediate: