Security testing toolkit for AI Agent: curated SecLists wordlists, injection payloads, and expert agents for authorized pentesting, CTFs, and bug bounties
Security testing that runs inside the coding agent you already use. Source-available, not open source.
Authorized security testing workspace. v2 TypeScript terminal product on release; v1 Python on pypi-release; Go branch is demo only.
MCP server for Kali Linux penetration testing - 121 tools for AI-assisted security testing - Giving Agents access to full pentesting tools
CI-native security testing for MCP servers. Attack simulation, schema drift detection, and health scoring before agents depend on them.
Open-source adversary emulation for AI agents and MCP servers.
A local MCP runtime that attacks what you own and only reports what it proved. 17 CVEs across 9 projects came out of this repo. Install: npx -y hacker-bob@latest install /path/to/project, then run /bob-evaluate target.com
Master Claude Code Hooks
Skill-Inject: Measuring Agent Vulnerability to Skill File Attacks

MCP configuration to connect AI agent to a Linux machine.
Agent skills for implementing Malaysia payment gateway integrations.

MCPify is an AI enablement compiler that transforms existing applications into AI-native, agent-operable systems.
A fast, keyboard-driven HTTP intercepting proxy and hacking & pentesting toolkit for the terminal.
Composable agent runtime with enforced isolation boundaries

A security scanner for your LLM agentic workflows
Containment for AI agents - user isolation, sandboxed execution, network controls, backup/rollback. TLA+ verified.
MCP server that enables AI agents to perform comprehensive web audits using Google Lighthouse with 13+ tools for performance, accessibility, SEO, and security analysis.
ADR secures enterprise AI agents through observability, security benchmarking, and threat detection. Deployed at Uber.

A self-hosted sandbox for red teams to test payloads against modern detection before deployment. MCP integration lets an LLM agent drive analysis end to end.
All-round bug bounty skill for Claude Code parallelized agents for smart contract audits (EVM, Move, Solana, TRON), web/API security, and submission-ready reports for HackerOne, Bugcrowd, Intigriti & Immunefi.
AI-powered bug bounty hunting toolkit that works with or without subscription.
The system of action for AI-native cybersecurity—where intent becomes governed execution, evidence becomes operational memory, and every operation improves the next.
Multi-language agent runtime and library for execution scope management, lifecycle events, and middleware on tool and LLM calls.
OpenGhost is an Agent Skill for authorized web app penetration testing: Enter lab url paste credential your agent and wait everything does with help of openghost