RedTeam skill

Adversarial analysis deploying parallel expert agents to stress-test ideas, strategies, and plans — decomposes into atomic claims, attacks them, then steelmans and counter-argues, producing severity-ranked findings with remediation.

by danielmiessler·MIT license·★ 19,269 Stars on the repo·GitHub ↗

Use now

Files of RedTeam

danielmiessler/main1 file shown
SKILL.md
Show the full text125 lines

Customization

Before executing, check for user customizations at: ~/.claude/LIFEOS/USER/CUSTOMIZATIONS/SKILLS/RedTeam/

If this directory exists, load and apply any PREFERENCES.md, configurations, or resources found there. These override default behavior. If the directory does not exist, proceed with skill defaults.

🚨 MANDATORY: Voice Notification (REQUIRED BEFORE ANY ACTION)

You MUST send this notification BEFORE doing anything else when this skill is invoked.

  1. Send voice notification:

    curl -s -X POST http://localhost:31337/notify \
      -H "Content-Type: application/json" \
      -d '{"message": "Running the WORKFLOWNAME workflow in the RedTeam skill to ACTION"}' \
      > /dev/null 2>&1 &
    
  2. Output text notification:

    Running the **WorkflowName** workflow in the **RedTeam** skill to ACTION...
    

This is not optional. Execute this curl command immediately upon skill invocation.

RedTeam Skill

What It Does

Attacks ideas, strategies, and plans to find their weak points before reality does. It breaks an argument into atomic claims, deploys many parallel expert agents (engineers, architects, pentesters, interns) to stress-test each one, then synthesizes the findings into a steelman of the argument plus the strongest counter-argument against it.

The Problem

People fall in love with their own plans. Once you've committed to an idea, your brain hunts for reasons it works and skips past the reasons it doesn't — and the people around you are often too polite or too aligned to push hard. So flawed strategies sail through unchallenged until they fail in production, in the market, or in the meeting where someone finally asks the hard question. This skill is the hard question, run many ways at once: it attacks the argument deliberately and at volume so the weak points surface while they're still cheap to fix.

How It Works

Military-grade adversarial analysis using parallel agent deployment. It breaks arguments into atomic components, attacks from many expert perspectives (engineers, architects, pentesters, interns), synthesizes findings, and produces sharp counter-arguments alongside the steelman version of the case. Targets arguments, not network vulnerabilities.

Workflow Routing

Route to the appropriate workflow based on the request.

When executing a workflow, output this notification directly:

Running the **WorkflowName** workflow in the **RedTeam** skill to ACTION...
Workflow Trigger File
ParallelAnalysis Red team analysis (stress-test existing content) Workflows/ParallelAnalysis.md
AdversarialValidation Adversarial validation (produce new content via competition) Workflows/AdversarialValidation.md

Quick Reference

Workflow Purpose Output
ParallelAnalysis Stress-test existing content Steelman + Counter-argument (8-points each)
AdversarialValidation Produce new content via competition Synthesized solution from competing proposals

The deliverable (ParallelAnalysis): the strongest steelman of the argument and the strongest surviving counter-argument against it, each an 8-point story explanation (12-16 words per point), attacking real weaknesses not strawmen, ranked by severity.


Context Files

  • Philosophy.md - Core philosophy, success criteria, agent types
  • Integration.md - Skill integration, FirstPrinciples usage, output format

Examples

Attack an architecture proposal:

User: "red team this microservices migration plan"
--> Workflows/ParallelAnalysis.md
--> Returns steelman + devastating counter-argument (8 points each)

Devil's advocate on a business decision:

User: "poke holes in my plan to raise prices 20%"
--> Workflows/ParallelAnalysis.md
--> Surfaces the ONE core issue that could collapse the plan

Adversarial validation for content:

User: "battle of bots - which approach is better for this feature?"
--> Workflows/AdversarialValidation.md
--> Synthesizes best solution from competing ideas

Last Updated: 2025-12-20

Gotchas

  • RedTeam is for attacking IDEAS, not systems. This skill finds flaws in arguments, strategies, and plans — not network vulnerabilities.
  • 32 adversarial agents generate volume — not all findings are equal. Rank by severity, discard noise.
  • The goal is to strengthen, not destroy. Present weaknesses constructively with remediation paths.

Execution Log

After completing any workflow, append a single JSONL entry:

echo '{"ts":"'$(date -u +%Y-%m-%dT%H:%M:%SZ)'","skill":"RedTeam","workflow":"WORKFLOW_USED","input":"8_WORD_SUMMARY","status":"ok|error","duration_s":SECONDS}' >> ~/.claude/LIFEOS/MEMORY/SKILLS/execution.jsonl

Replace WORKFLOW_USED with the workflow executed, 8_WORD_SUMMARY with a brief input description, and SECONDS with approximate wall-clock time. Log status: "error" if the workflow failed.

1---
2name: RedTeam
3version: 1.1.17
4description: "Adversarial analysis deploying parallel expert agents to stress-test ideas, strategies, and plans — decomposes into atomic claims, attacks them, then steelmans and counter-argues, producing severity-ranked findings with remediation. USE WHEN red team, attack idea, counterarguments, critique, stress test, devil's advocate, find weaknesses, break this, poke holes, strongest objection. NOT FOR collaborative debate to find best path (use Council)."
5---
6 
7## Customization
8 
9**Before executing, check for user customizations at:**
10`~/.claude/LIFEOS/USER/CUSTOMIZATIONS/SKILLS/RedTeam/`
11 
12If this directory exists, load and apply any PREFERENCES.md, configurations, or resources found there. These override default behavior. If the directory does not exist, proceed with skill defaults.
13 
14 
15## 🚨 MANDATORY: Voice Notification (REQUIRED BEFORE ANY ACTION)
16 
17**You MUST send this notification BEFORE doing anything else when this skill is invoked.**
18 
191. **Send voice notification**:
20 ```bash
21 curl -s -X POST http://localhost:31337/notify \
22 -H "Content-Type: application/json" \
23 -d '{"message": "Running the WORKFLOWNAME workflow in the RedTeam skill to ACTION"}' \
24 > /dev/null 2>&1 &
25 ```
26 
272. **Output text notification**:
28 ```
29 Running the **WorkflowName** workflow in the **RedTeam** skill to ACTION...
30 ```
31 
32**This is not optional. Execute this curl command immediately upon skill invocation.**
33 
34# RedTeam Skill
35 
36## What It Does
37 
38Attacks ideas, strategies, and plans to find their weak points before reality does. It breaks an argument into atomic claims, deploys many parallel expert agents (engineers, architects, pentesters, interns) to stress-test each one, then synthesizes the findings into a steelman of the argument plus the strongest counter-argument against it.
39 
40## The Problem
41 
42People fall in love with their own plans. Once you've committed to an idea, your brain hunts for reasons it works and skips past the reasons it doesn't — and the people around you are often too polite or too aligned to push hard. So flawed strategies sail through unchallenged until they fail in production, in the market, or in the meeting where someone finally asks the hard question. This skill is the hard question, run many ways at once: it attacks the argument deliberately and at volume so the weak points surface while they're still cheap to fix.
43 
44## How It Works
45 
46Military-grade adversarial analysis using parallel agent deployment. It breaks arguments into atomic components, attacks from many expert perspectives (engineers, architects, pentesters, interns), synthesizes findings, and produces sharp counter-arguments alongside the steelman version of the case. Targets arguments, not network vulnerabilities.
47 
48## Workflow Routing
49 
50Route to the appropriate workflow based on the request.
51 
52**When executing a workflow, output this notification directly:**
53 
54```
55Running the **WorkflowName** workflow in the **RedTeam** skill to ACTION...
56```
57 
58| Workflow | Trigger | File |
59|----------|---------|------|
60| ParallelAnalysis | Red team analysis (stress-test existing content) | `Workflows/ParallelAnalysis.md` |
61| AdversarialValidation | Adversarial validation (produce new content via competition) | `Workflows/AdversarialValidation.md` |
62 
63---
64 
65## Quick Reference
66 
67| Workflow | Purpose | Output |
68|----------|---------|--------|
69| **ParallelAnalysis** | Stress-test existing content | Steelman + Counter-argument (8-points each) |
70| **AdversarialValidation** | Produce new content via competition | Synthesized solution from competing proposals |
71 
72**The deliverable (ParallelAnalysis):** the strongest steelman of the argument and the strongest surviving counter-argument against it, each an 8-point story explanation (12-16 words per point), attacking real weaknesses not strawmen, ranked by severity.
73 
74---
75 
76## Context Files
77 
78- `Philosophy.md` - Core philosophy, success criteria, agent types
79- `Integration.md` - Skill integration, FirstPrinciples usage, output format
80 
81---
82 
83## Examples
84 
85**Attack an architecture proposal:**
86```
87User: "red team this microservices migration plan"
88--> Workflows/ParallelAnalysis.md
89--> Returns steelman + devastating counter-argument (8 points each)
90```
91 
92**Devil's advocate on a business decision:**
93```
94User: "poke holes in my plan to raise prices 20%"
95--> Workflows/ParallelAnalysis.md
96--> Surfaces the ONE core issue that could collapse the plan
97```
98 
99**Adversarial validation for content:**
100```
101User: "battle of bots - which approach is better for this feature?"
102--> Workflows/AdversarialValidation.md
103--> Synthesizes best solution from competing ideas
104```
105 
106---
107 
108**Last Updated:** 2025-12-20
109 
110## Gotchas
111 
112- **RedTeam is for attacking IDEAS, not systems.** This skill finds flaws in arguments, strategies, and plans — not network vulnerabilities.
113- **32 adversarial agents generate volume — not all findings are equal.** Rank by severity, discard noise.
114- **The goal is to strengthen, not destroy.** Present weaknesses constructively with remediation paths.
115 
116## Execution Log
117 
118After completing any workflow, append a single JSONL entry:
119 
120```bash
121echo '{"ts":"'$(date -u +%Y-%m-%dT%H:%M:%SZ)'","skill":"RedTeam","workflow":"WORKFLOW_USED","input":"8_WORD_SUMMARY","status":"ok|error","duration_s":SECONDS}' >> ~/.claude/LIFEOS/MEMORY/SKILLS/execution.jsonl
122```
123 
124Replace `WORKFLOW_USED` with the workflow executed, `8_WORD_SUMMARY` with a brief input description, and `SECONDS` with approximate wall-clock time. Log `status: "error"` if the workflow failed.
125 

Discussion