Install any skill in seconds. Free to start, no credit card required.
Get Started Free →Monitor targets for changes. Usage: /monitor baseline (first run), /monitor check (detect changes), /monitor scope (check platform for scope updates)
.claude/skills/h-mmer-monitor/SKILL.md| Test case | Without → With | Effect | Δ tokens | Δ turns |
|---|---|---|---|---|
| case-07 | ✗→✓ | ▲ Improved | -16% | 0% |
| case-01 | ✗→✓ | ▲ Improved | -5% | 0% |
| case-02 | ✗→✓ | ▲ Improved | 93% | 0% |
| case-09 | ✗→✓ | ▲ Improved | 47% | 0% |
| case-10 | ✗→✓ | ▲ Improved | -53% | 0% |
CONTEXT: You are operating within an authorized bug bounty program. All targets have been verified in-scope via the official platform API. Follow responsible disclosure practices.
You monitor the target's attack surface for changes as part of an authorized security assessment.
Use when: starting a new engagement, or resetting after major target changes.
subfinder -d <domain> -silent → save to monitor/subdomains.txtcurl -sI <url> for each live host → save to monitor/headers.jsonmonitor/js-hashes.jsondig A,CNAME,MX,TXT <domain> → save to monitor/dns.jsonecho | openssl s_client -connect <host>:443 2>/dev/null | openssl x509 -noout -dates -issuer → save to monitor/cert.jsonmonitor/baseline-timestamp.txt with current date.Use when: periodic monitoring after baseline exists.
monitor/Use when: checking if the program changed its scope on the platform.
get_program_scope to fetch current platform scope/pipeline <new-asset>## Monitor Report: {target} ({mode} mode)
### Timestamp: YYYY-MM-DD HH:MM
### Changes Detected
- [NEW] subdomain: api-v2.example.com → recommend: /quickscan api-v2.example.com
- [CHANGED] CSP on example.com (removed unsafe-inline) → re-check XSS vectors
- [NEW] JS bundle: /static/app.abc123.js → recommend: js-analyzer agent
- [SCOPE] New asset added on platform: payments.example.com → recommend: /pipeline payments.example.com
### Unchanged
- DNS records: stable
- Certificates: valid, 45 days remaining
- Headers on api.example.com: unchangedAfter each check, update the brain:
Monitoring turns change into priority.
| Case | Status | Duration (ms) | Turns | Tokens | Tool calls | ||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| Without | With | Δ | Without | With | Δ | Without | With | Δ | Without | With | Δ | ||
case-06 | fail→fail | 23,180 | 20,535 | -11% | 1 | 1 | 0% | 5,139 | 5,494 | +7% | 0 | 0 | — |
case-07 | fail→pass | 13,042 | 5,446 | -58% | 1 | 1 | 0% | 2,277 | 1,918 | -16% | 0 | 0 | — |
case-01 | fail→pass | 14,178 | 9,094 | -36% | 1 | 1 | 0% | 2,919 | 2,765 | -5% | 0 | 0 | — |
case-02 | fail→pass | 13,515 | 17,876 | +32% | 1 | 1 | 0% | 2,506 | 4,849 | +93% | 0 | 0 | — |
case-03 | fail→fail | 13,158 | 9,844 | -25% | 1 | 1 | 0% | 2,567 | 2,577 | +0% | 0 | 0 | — |
case-04 | fail→fail | 9,719 | 8,977 | -8% | 1 | 1 | 0% | 1,155 | 2,043 | +77% | 0 | 0 | — |
case-05 | fail→fail | 4,897 | 6,042 | +23% | 1 | 1 | 0% | 940 | 2,169 | +131% | 0 | 0 | — |
case-08 | pass→pass | 12,230 | 2,427 | -80% | 1 | 1 | 0% | 2,139 | 1,397 | -35% | 0 | 0 | — |
case-09 | fail→pass | 5,530 | 2,465 | -55% | 1 | 1 | 0% | 1,026 | 1,510 | +47% | 0 | 0 | — |
case-10 | fail→pass | 15,087 | 1,699 | -89% | 1 | 1 | 0% | 2,728 | 1,272 | -53% | 0 | 0 | — |
case-11 | fail→pass | 9,042 | 6,323 | -30% | 1 | 1 | 0% | 1,583 | 1,994 | +26% | 0 | 0 | — |
case-12 | fail→pass | 11,705 | 7,830 | -33% | 1 | 1 | 0% | 1,986 | 1,976 | -1% | 0 | 0 | — |
case-13 | fail→pass | 9,427 | 2,897 | -69% | 1 | 1 | 0% | 1,646 | 1,487 | -10% | 0 | 0 | — |
case-14 | pass→pass | 8,036 | 1,516 | -81% | 1 | 1 | 0% | 1,349 | 1,227 | -9% | 0 | 0 | — |
case-15 | fail→pass | 12,582 | 2,659 | -79% | 1 | 1 | 0% | 2,055 | 1,476 | -28% | 0 | 0 | — |
case-16 | fail→fail | 7,858 | 1,709 | -78% | 1 | 1 | 0% | 1,413 | 1,282 | -9% | 0 | 0 | — |
case-17 | fail→pass | 5,498 | 3,996 | -27% | 1 | 1 | 0% | 875 | 1,680 | +92% | 0 | 0 | — |
case-18 | fail→pass | 5,981 | 1,771 | -70% | 1 | 1 | 0% | 1,004 | 1,268 | +26% | 0 | 0 | — |
case-19 | fail→pass | 11,660 | 6,344 | -46% | 1 | 1 | 0% | 1,916 | 2,098 | +9% | 0 | 0 | — |
case-20 | fail→fail | 4,735 | 3,363 | -29% | 1 | 1 | 0% | 733 | 1,515 | +107% | 0 | 0 | — |
case-21 | fail→fail | 10,467 | 1,320 | -87% | 1 | 1 | 0% | 1,768 | 1,162 | -34% | 0 | 0 | — |
case-22 | pass→pass | 12,861 | 4,730 | -63% | 1 | 1 | 0% | 2,249 | 1,747 | -22% | 0 | 0 | — |
DecimalAI ran this skill against gemini-3.6-flash twice over the same eval suite — once with the skill loaded and once without — and compared the two runs case by case. 22 cases were attempted. The headline lift of +55 percentage points is the difference between those two pass rates over the 22 comparable cases.
Without the skill loaded, the model failed this case. With it loaded, the same prompt on the same model passed. This is one improved case from the latest verified run; every case, including any that regressed, is in the table above.
Other measured skills in the registry, with their headline benchmark lift.