From 21d5b2bf4e851e20569fe59a5a6dca8ee205337e Mon Sep 17 00:00:00 2001 From: jhuang-tw <77732008+jhuang-tw@users.noreply.github.com> Date: Mon, 17 Aug 2026 23:42:59 -0700 Subject: [PATCH] docs(p0): make master skill use platform-native entrypoints --- skills/SKILL.md | 21 ++++++++++++++++----- 1 file changed, 16 insertions(+), 5 deletions(-) diff --git a/skills/SKILL.md b/skills/SKILL.md index 187dc6e..ff1eed7 100644 --- a/skills/SKILL.md +++ b/skills/SKILL.md @@ -10,10 +10,10 @@ description: Routes reverse engineering, exploitation, penetration testing, malw 读完本文件后,不允许只回复“已读/已理解”。必须按顺序执行: -1. `NOW`:读 `MASTER-ROUTING.md`(或跑 `scripts/master-route.ps1 -Hint "..."`)定 PRIMARY;疑难再读 `routing.md` 三轴表。 -2. `NOW`:`scripts/case-init.ps1` 落地 `work//scope.md`(契约见 `ops/scope-contract.md`);**auth 未 granted 禁止对目标 ACT**。 +1. `NOW`:读 `MASTER-ROUTING.md`(或跑平台原生 router:Windows `scripts/master-route.ps1`;Linux/macOS/Kali `scripts/master-route.sh`)定 PRIMARY;疑难再读 `routing.md` 三轴表。 +2. `NOW`:平台原生 `case-init` 落地当前分析项目的 `work//scope.md`(Windows `scripts/case-init.ps1`;Linux/macOS/Kali `scripts/case-init.sh`;契约见 `ops/scope-contract.md`);**auth 未 granted 禁止对目标 ACT**。本地离线样本使用 `offline-sample` preset + explicit sample;Force 不得绕过硬门。 3. `NOW`:按 `ops/role-map.md` 标 lead/specialist;立即打开 PRIMARY `SKILL.md` 执行 ACTION REQUIRED。 -4. `NEXT`:涉及本机工具时读 `tool-index.md`;**禁止猜路径**;缺工具 → `bootstrap-reverse.ps1`(仅 manifest)。 +4. `NEXT`:涉及本机工具时读 `tool-index.md`;**禁止猜路径**;缺工具 → 平台原生 bootstrap(仅 manifest)。 5. `ACT`:执行并 **追加 timeline / 更新 workitems**;结论用 Evidence→Finding→Path(`ops/evidence-finding-path.md`)。 6. 结束:`docs-generator` 报告 + 脱敏 `field-journal`;阶段菜单 3–6 项。 @@ -83,7 +83,7 @@ description: Routes reverse engineering, exploitation, penetration testing, malw 遇到逆向、CTF、抓包、前端签名、APK 改包、二进制分析类任务时,先按这个顺序进入: -1. `MASTER-ROUTING.md` 或 `scripts/master-route.ps1` → PRIMARY +1. `MASTER-ROUTING.md` 或平台原生 router(Windows `scripts/master-route.ps1`;Linux/macOS/Kali `scripts/master-route.sh`)→ PRIMARY 2. 疑难时再读 `routing.md` 三轴全表 3. 打开 PRIMARY 子模块 `SKILL.md` 4. 需要本机路径时再读 `tool-index.md` @@ -137,12 +137,23 @@ description: Routes reverse engineering, exploitation, penetration testing, malw ## 按需自举 -当 workflow 发现缺少工具时,不要直接报错。统一调用: +当 workflow 发现缺少工具时,不要直接报错。统一调用平台原生 bootstrap: +Windows: ```powershell powershell -NoProfile -ExecutionPolicy Bypass -File "\scripts\bootstrap-reverse.ps1" -Capability @('工具名') -StartServices ``` +Linux / macOS: +```bash +bash /scripts/bootstrap-reverse.sh 工具名 --start-services +``` + +Kali: +```bash +bash /kali/scripts/bootstrap-reverse.sh 工具名 --start-services +``` + 支持的能力(以 `scripts/bootstrap-manifest.json` 为准):jadx、apktool、jeb-pro、frida、frida-ps、idalib-mcp、reqable-mcp、jshookmcp、anything-analyzer、idapro、r2、rabin2、adb、agent-browser、ghidra-mcp、seclists、proxycat、burpsuite-mcp、nmap、pentestswarm、binwalk、yara、pwntools、bkcrack > JEB Pro 已登记为**手动许可安装**能力:bootstrap 只输出指引,绝不下载或规避商业许可。Reqable MCP 仅登记固定版本的官方运行时,仍需要用户自行安装 Reqable 桌面客户端。