{"id":"66c48617-7094-4e0f-81ff-e3c334818a31","slug":"gusocegodk-ai-whitebox-pentest-skill","name":"whitebox-pentest","description":"Whitebox penetration testing of web applications combining source code analysis with dynamic testing through Burp Suite MCP. Performs code review to map attack surface, generates operator-approved test plans, executes non-destructive proof-of-concept attacks via Burp, and produces structured vulnerability reports with CVSS scores and remediation. Use when: (1) the user wants to pentest a web application with source code access, (2) the user asks for whitebox security testing, (3) the user wants to find and exploit vulnerabilities in a running web app, (4) the user mentions dynamic application security testing (DAST) combined with code review.","canonicalUrl":"https://www.xpersona.co/skill/gusocegodk-ai-whitebox-pentest-skill","sourceUrl":"https://github.com/gusocegodk/ai-whitebox-pentest-skill","homepage":null,"source":"GITHUB_OPENCLEW","vendor":{"slug":"gusocegodk","label":"Gusocegodk","url":"https://github.com/gusocegodk/ai-whitebox-pentest-skill"},"protocols":["MCP"],"capabilities":["for","replay","achieve"],"trustScore":null,"trustConfidence":"unknown","artifactCount":0,"benchmarkCount":0,"lastRelease":null,"freshnessAt":"2026-04-15T01:14:39.089Z","freshnessLabel":"Apr 15, 2026","securityReviewed":true,"openapiReady":false,"stats":[{"label":"Trust score","value":"Unknown"},{"label":"Compatibility","value":"MCP"},{"label":"Freshness","value":"Apr 15, 2026"},{"label":"Vendor","value":"Gusocegodk"},{"label":"Artifacts","value":"0"},{"label":"Benchmarks","value":"0"},{"label":"Last release","value":"Unpublished"}],"factsPreview":[{"factKey":"docs_crawl","label":"Crawlable docs","value":"6 indexed pages on the official domain","category":"integration","href":"https://github.com/login?return_to=https%3A%2F%2Fgithub.com%2Fopenclaw%2Fskills%2Ftree%2Fmain%2Fskills%2Fasleep123%2Fcaldav-calendar","sourceUrl":"https://github.com/login?return_to=https%3A%2F%2Fgithub.com%2Fopenclaw%2Fskills%2Ftree%2Fmain%2Fskills%2Fasleep123%2Fcaldav-calendar","sourceType":"search_document","confidence":"medium","observedAt":"2026-04-15T05:03:46.393Z","isPublic":true,"metadata":{}},{"factKey":"vendor","label":"Vendor","value":"Gusocegodk","category":"vendor","href":"https://github.com/gusocegodk/ai-whitebox-pentest-skill","sourceUrl":"https://github.com/gusocegodk/ai-whitebox-pentest-skill","sourceType":"profile","confidence":"medium","observedAt":"2026-04-15T01:14:39.481Z","isPublic":true,"metadata":{}},{"factKey":"protocols","label":"Protocol compatibility","value":"MCP","category":"compatibility","href":"https://www.xpersona.co/api/v1/agents/gusocegodk-ai-whitebox-pentest-skill/contract","sourceUrl":"https://www.xpersona.co/api/v1/agents/gusocegodk-ai-whitebox-pentest-skill/contract","sourceType":"contract","confidence":"medium","observedAt":"2026-04-15T01:14:39.481Z","isPublic":true,"metadata":{}},{"factKey":"handshake_status","label":"Handshake status","value":"UNKNOWN","category":"security","href":"https://www.xpersona.co/api/v1/agents/gusocegodk-ai-whitebox-pentest-skill/trust","sourceUrl":"https://www.xpersona.co/api/v1/agents/gusocegodk-ai-whitebox-pentest-skill/trust","sourceType":"trust","confidence":"medium","observedAt":null,"isPublic":true,"metadata":{}}],"highlights":["Trust evidence available"],"agentCard":{"name":"whitebox-pentest","description":"Whitebox penetration testing of web applications combining source code analysis with dynamic testing through Burp Suite MCP. Performs code review to map attack surface, generates operator-approved test plans, executes non-destructive proof-of-concept attacks via Burp, and produces structured vulnerability reports with CVSS scores and remediation. Use when: (1) the user wants to pentest a web application with source code access, (2) the user asks for whitebox security testing, (3) the user wants to find and exploit vulnerabilities in a running web app, (4) the user mentions dynamic application security testing (DAST) combined with code review.","source":"GITHUB_OPENCLEW","sourceId":"github:1160737741","repository":"https://github.com/gusocegodk/ai-whitebox-pentest-skill","documentation":"https://www.xpersona.co/skill/gusocegodk-ai-whitebox-pentest-skill/agent/gusocegodk-ai-whitebox-pentest-skill","protocols":["MCP"],"capabilities":["for","replay","achieve"],"languages":["typescript"],"install":{"command":"git clone https://github.com/gusocegodk/ai-whitebox-pentest-skill.git","ecosystem":"git"},"examples":[{"kind":"example","language":"text","snippet":"[VULN-CLASS-NN] Test Title\n  Target:    METHOD /path\n  Sink:      file.py:42 — description of vulnerable pattern\n  Payload:   brief description of what will be sent\n  Risk:      None/Low — why this is safe (non-destructive, read-only, etc.)\n  Priority:  Critical/High/Medium/Low"}]}}