Strix•httpx 用法 — independently scanned and version-tracked by SaferSkills.
SaferSkills independently audited Strix•httpx 用法 (Agent Skill) and scored it 100/100 (green). The audit ran 55 deterministic rules across Security, Supply Chain, Maintenance, Transparency, and Community; it found 0 high-severity and 0 lower-severity findings. The full rule-by-rule trace and per-finding evidence are below. Free, methodology-open.
Findings & checks · 0 flagged
Every scanned point with the score it earned and what moved between them.
First recorded scan — no prior version to compare against.
The primary manifest — the file an agent reads to learn what this artifact does.
Official docs:
Canonical syntax: httpx [flags]
High-signal flags:
-u, -target <url> single target-l, -list <file> target list-nf, -no-fallback probe both HTTP and HTTPS-nfs, -no-fallback-scheme do not auto-switch schemes-sc status code-title page title-server, -web-server server header-td, -tech-detect technology detection-fr, -follow-redirects follow redirects-mc <codes> / -fc <codes> match or filter status codes-path <path_or_file> probe specific paths-p, -ports <ports> probe custom ports-proxy, -http-proxy <url> proxy target requests-tlsi, -tls-impersonate experimental TLS impersonation-j, -json JSONL output-sr, -store-response store request/response artifacts-srd, -store-response-dir <dir> custom directory for stored artifacts-silent compact output-rl <n> requests/second cap-t <n> threads-timeout <seconds> request timeout-retries <n> retry attempts-o <file> output fileAgent-safe baseline for automation: httpx -l hosts.txt -sc -title -server -td -fr -timeout 10 -retries 1 -rl 50 -t 25 -silent -j -o httpx.jsonl
Common patterns:
httpx -l hosts.txt -sc -title -server -td -silent -o httpx.txt
httpx -l hosts.txt -path /,/login,/admin -sc -title -silent -j -o httpx_paths.jsonl
httpx -l hosts.txt -nf -sc -title -silent
httpx -l hosts.txt -vhost -sc -title -silent -j -o httpx_vhost.jsonl
httpx -l hosts.txt -sc -title -proxy http://127.0.0.1:48080 -silent -j -o httpx_proxy.jsonl
httpx -l hosts.txt -fr -sr -srd recon/httpx_store -sc -title -server -cl -ct -location -probe -silent
Critical correctness rules:
-j -o <file>.-rl and -t explicit for reproducible throughput.-nf when you need dual-scheme probing from host-only input.-path or -ports, keep scope tight to avoid accidental scan inflation.-sr -srd <dir> when later steps need raw response artifacts (JS/route extraction, grepping, replay).Usage rules:
-silent for pipeline-friendly output.-mc/-fc when downstream steps depend on specific response classes.-proxy flag over global proxy env vars when only httpx traffic should be proxied.-h/--help for routine runs unless absolutely necessary.Failure recovery:
-rl/-t and/or increase -timeout.-fc filters or -fd duplicate filtering.-nf (and avoid -nfs).If uncertain, query web_search with: site:docs.projectdiscovery.io httpx <flag> usage
~30 seconds. Free. No account. Every finding cites a rule and a line of evidence.