vuln-definitions-mobile
v0.2.3移动端(Android App + iOS App)领域漏洞定义:形态主表(Deep Link / URL Scheme / WebView / Intent / 组件导出 / Content Provider / 广播 / 文件路径 / 认证逻辑 / 权限与 WIU / UI 覆盖与点按劫持 / 跨用户与 Private Space / 数据存储密钥 / SSL-TLS 证书 / 内存安全)与 HackerOne 移动端赏金惯例 → 四档映射;含调整/无效条款、Gate 门禁、Android·iOS 攻击面索引、历史漏洞模式库(案例归纳 + 定级校准 + 挖掘切入点),以及 Google Bug Hunters 的 Android 与 Google 设备项目规则(范围 / 资格 / PoC 与补丁要求 / 奖金与 SNR 纪律,不定级)。本地 DoS(杀进程 / 纯崩溃 / 资源耗尽)按 INV1 不报;破坏性远程 DoS 按 H8 报。入口面本身(exported / 自定义 scheme / 不校验调用方)按 INV26 不报。
By DeepSonar0 GitHub starsUpdated 2 days ago
Directory evidence
- Runtimes
- Claude Code
- Parsed components
- 0 skill or MCP entries
- Source updated
- Sep 22, 2026
- Manifest status
- Canonical path parsed
The directory validates manifest shape and source location. It does not execute the plugin or provide a security endorsement. Review the indexing methodology →
Install vuln-definitions-mobile for Claude Code
claude plugin marketplace add IchenDEV/agent-plugin-mkt
claude plugin marketplace update agent-plugin-marketplace
claude plugin install vuln-definitions-mobile@agent-plugin-marketplacePaste and run these commands in a terminal with Claude Code. They add and refresh the PluginsMP catalog, then install this plugin.
The installer fetches third-party code from the source repository shown on this page. This directory validates manifest structure and source location, but does not perform a security audit; review the manifest, components, and source before installing.
Get the source manually
git clone https://github.com/SummerSec/DeepSonar-SkillsClone the source repository, then follow its setup instructions to add the plugin to a compatible client. The plugin root is vuln-definitions-mobile/.
Plugin files
└── .claude-plugin/plugin.json
Plugin manifests1
{
"name": "vuln-definitions-mobile",
"version": "0.2.3",
"description": "移动端(Android App + iOS App)领域漏洞定义:形态主表(Deep Link / URL Scheme / WebView / Intent / 组件导出 / Content Provider / 广播 / 文件路径 / 认证逻辑 / 权限与 WIU / UI 覆盖与点按劫持 / 跨用户与 Private Space / 数据存储密钥 / SSL-TLS 证书 / 内存安全)与 HackerOne 移动端赏金惯例 → 四档映射;含调整/无效条款、Gate 门禁、Android·iOS 攻击面索引、历史漏洞模式库(案例归纳 + 定级校准 + 挖掘切入点),以及 Google Bug Hunters 的 Android 与 Google 设备项目规则(范围 / 资格 / PoC 与补丁要求 / 奖金与 SNR 纪律,不定级)。本地 DoS(杀进程 / 纯崩溃 / 资源耗尽)按 INV1 不报;破坏性远程 DoS 按 H8 报。入口面本身(exported / 自定义 scheme / 不校验调用方)按 INV26 不报。",
"author": {
"name": "DeepSonar"
}
}For maintainers
If you maintain this plugin, link to this source-backed listing from your README so users can review its manifest and indexed components.
[vuln-definitions-mobile on Agent Plugins Marketplace](https://pluginsmp.com/plugins/vuln-definitions-mobile)