Use when attacking or auditing a CI/CD pipeline or software supply chain — pwn requests, poisoned pipeline execution, compromised/mutable-tag actions, dependency confusion, registry worms, runner backdoors, OIDC trust abuse, SLSA/provenance
$npx -y skills add hypnguyen1209/offensive-claude --skill cicd-supply-chainInstalls into the current project.
Run `npx skills use "https://github.com/hypnguyen1209/offensive-claude" --skill "hypnguyen1209/offensive-claude/cicd-supply-chain"` and follow the generated skill instructions now. Read its complete output, redirecting it to a temporary file first if necessary. Resolve relative paths from the supporting-files directory it provides.
Use the skills in "https://github.com/hypnguyen1209/offensive-claude" that are relevant to the current task. Run `npx skills add "https://github.com/hypnguyen1209/offensive-claude"` and select the relevant skills, then follow their instructions.