metasploit-framework
Plan Authorized Metasploit Assessments
Security teams need a structured reference for complex Metasploit workflows. This skill organizes module selection, payload handling, sessions, post-exploitation, and reporting for authorized assessments.
Do not auto-install this skill.
The canonical policy requires operator review before any installation action.
Install with my Agent
Copy this request to your Agent. It includes the canonical Skill page and manifest.
Review the Skillstore skill "metasploit-framework" from https://skillstore.io/skills/sickn33-metasploit-framework.md and its manifest at https://skillstore.io/api/skills/sickn33-metasploit-framework/manifest. Verify the artifact. Do not auto-install. Inspect the skill and report your findings, then wait for an operator or manual installation decision.Your Agent should still show its plan and request any confirmation required by the security policy.
Agent-readable resources
Use these links when an AI agent, crawler, or script needs clean context instead of reading the full page.
Test it
Using "metasploit-framework". Explain how to prepare before validating a vulnerability in a lab.
Expected outcome:
- Confirm the exact lab target and written scope.
- Record versions, network boundaries, snapshots, and stop conditions.
- Prefer a non-destructive check before any exploit attempt.
- Collect minimal evidence and restore the environment afterward.
Using "metasploit-framework". Summarize the risks of the documented post-exploitation phase.
Expected outcome:
The phase can access files, credentials, screens, processes, and network routes. These actions require explicit scope, data controls, monitoring, and cleanup.
Security Audit
CriticalMarkdown formatting and private example addresses caused many false positives, but the skill contains extensive actionable offensive guidance. Confirmed risks include exploitation, payload generation, keylogging, credential access, persistence, defense evasion, file transfer, network scanning, and privileged setup.
Confirmed security concerns (60)
Show all 60 confirmed findings
Capability review items (3)
These are real local capabilities that may be expected for this skill, so they require review but are not counted as confirmed malicious behavior.
Risk Factors
โ๏ธ External commands (50)
๐ Network access (19)
๐ Filesystem access (2)
Detected Patterns
Share & cite this report
Share the versioned assessment report, neutral badge, embed card, and citations. Skillstore reports evidence without deciding whether this Skill is safe.
Copy report link
https://skillstore.io/skills/sickn33-metasploit-framework/audits/5?utm_source=security_passport&utm_medium=share&utm_campaign=versioned_reportMarkdown badge
[](https://skillstore.io/skills/sickn33-metasploit-framework?utm_source=security_passport_badge)HTML badge
<a href="https://skillstore.io/skills/sickn33-metasploit-framework?utm_source=security_passport_badge"><img src="https://skillstore.io/badges/skills/sickn33-metasploit-framework/security.svg" alt="Skillstore security assessment" loading="lazy"></a>Embed card
<iframe src="https://skillstore.io/embed/skills/sickn33-metasploit-framework.html" title="Skillstore Security Assessment" sandbox="allow-popups allow-popups-to-escape-sandbox" loading="lazy" referrerpolicy="no-referrer" width="420" height="180"></iframe>Academic citations (APA ยท BibTeX ยท CFF)
APA citation
zebbern. (2026). metasploit-framework security audit report (audit version 5) [Author version unspecified]. Skillstore. https://skillstore.io/skills/sickn33-metasploit-framework/audits/5BibTeX citation
@techreport{zebbern-sickn33-metasploit-framework-2026,
author = {zebbern},
title = {metasploit-framework security audit report (audit version 5)},
institution = {Skillstore},
year = {2026},
number = {5},
url = {https://skillstore.io/skills/sickn33-metasploit-framework/audits/5},
note = {Author version unspecified}
}CITATION.cff
cff-version: 1.2.0
message: "If you use this Skill, cite its author and this versioned security audit report."
title: "metasploit-framework security audit report (audit version 5)"
version: "unspecified"
type: report
authors:
- name: "zebbern"
date-released: "2026-08-04"
url: "https://skillstore.io/skills/sickn33-metasploit-framework/audits/5"
identifiers:
- type: other
value: "skillstore:sickn33-metasploit-framework:audit:5"
description: "Skillstore immutable audit report identifier"
Skillstore Score
Why this score Evidence Confidence: MediumWhat You Can Build
Prepare a Controlled Lab
Review module categories and build a disposable environment before any authorized test.
Structure an Assessment
Organize module research, option validation, evidence collection, and cleanup within written scope.
Review Test Coverage
Compare planned validation activities with approved rules of engagement and defensive monitoring.
Try These Prompts
Explain Metasploit module categories for a beginner. Use conceptual examples only and do not provide commands that affect a target.
Create a checklist for an isolated Metasploit training lab. Include authorization, snapshots, network isolation, evidence handling, and cleanup.
Review this written assessment scope: [scope]. Identify permitted targets, prohibited actions, confirmation gates, evidence requirements, and stop conditions.
Design a non-destructive validation plan for [CVE] in [lab environment]. Include prerequisites, safe checks, monitoring, rollback, and reporting criteria.
Best Practices
- Use only isolated systems covered by current written authorization.
- Show every target-changing command and obtain explicit confirmation before execution.
- Minimize collected data, preserve evidence, and remove test artifacts after validation.
Avoid
- Do not test public or third-party systems without explicit written permission.
- Do not use keylogging, credential dumping, persistence, or evasion outside approved research.
- Do not replace target placeholders until scope and network boundaries are verified.
Frequently Asked Questions
Does this skill install Metasploit?
Can this skill verify my authorization?
Is this suitable for production systems?
Does it include active exploitation instructions?
What data could the workflows access?
What is the safest learning environment?
Developer Details
Author
zebbernLicense
MIT
Skillstore revision
r2
Version notice
The author did not declare a version.
Repository
https://github.com/sickn33/antigravity-awesome-skills/tree/main/skills/metasploit-frameworkRef
81e05e636292629114b76cbb3922fbe57672fc02
Maintenance freshness
8/5/2026
Usage
9 downloads ยท 144 views
File structure
๐ SKILL.md