# AGENTS.md

A list of useful payloads and bypass for Web Application Security and Pentest/CTF

## Setup

```
# TODO: the install command. No lockfile was found, so this could not be inferred.
```

## Commands

```
# TODO: nothing declares a build or test command, so an agent has to guess.
# This is the single most valuable section of this file. Fill it in.
```

## Layout

- `Upload Insecure Files/`       20 source files
- `File Inclusion/`              3 source files
- `Insecure Deserialization/`    2 source files
- `Server Side Request Forgery/` 1 source file
- `Web Sockets/`                 1 source file

## Conventions

- There are no tests yet. An agent has no way to check its own work here.
- CI defines what passing means. See `.github/workflows/check-markdown.yml`, and keep it green.
- TODO: add the two or three conventions a newcomer always gets wrong here.

## Gotchas

- No lockfile is committed, so an install here may not match what CI produced.

---

Drafted by agentreadme.com from what is in this repository. Everything marked TODO
needs a human. Check it in as AGENTS.md at the root.
