mirror of
https://github.com/CyberSecurityUP/NeuroSploit.git
synced 2026-10-05 15:37:24 +02:00
- /scope-file <path> (aliases /scopefile, /import-scope): import a ready scope config (hard allowlist + exclusions + guardrails) in the REPL — one step to "scope set correctly", instead of typing /inscope repeatedly. Pins the scope. - scope_pinned: once scope is set explicitly (scope-file / /inscope / capability), /target no longer re-derives the scope from the target, so an imported allowlist is not clobbered by picking a target. - examples/scopes/rockstargames.yaml and examples/scopes/nasa.yaml — ready TEMPLATES scoped to *.rockstargames.com / *.nasa.gov with conservative, bounty/VDP-safe guardrails (no destructive verbs, no mass accounts, low rate, forbidden payloads) and a clear "verify the program's current in/out-of-scope before running" banner. Both parse and enforce; subdomain enumeration happens inside the wildcard boundary. 422 tests passing. Co-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>