This is mostly an incident-response guide, but it bundles directly usable offensive persistence, payload, and tunnel instructions that warrant human review before installation.
Install only for trained, authorized incident responders and configure the agent to treat this skill as advisory unless a human approves each state-changing action. Before broad use, remove or gate the offensive NOPTrace appendix material, replace unsafe API wrapper examples with strict schemas, and require evidence capture, rollback planning, and HITL confirmation for deletion, killing processes, DNS/hosts changes, package removal, external uploads, and any privileged command.