Open-source Claude Code skills, agents, and slash commands for AI-powered penetration testing, bug bounty hunting, and security research
☆540Jul 29, 2026Updated last month
Alternatives and similar repositories for communitytools
Users that are interested in communitytools are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Security testing toolkit for AI Agent: curated SecLists wordlists, injection payloads, and expert agents for authorized pentesting, CTFs,…☆385Jun 8, 2026Updated 3 months ago
- Turn Claude Code into your offensive security research assistant. Specialized AI subagents for authorized penetration testing plan engage…☆2,261Aug 16, 2026Updated last month
- AI-powered bug bounty hunting toolkit that works with or without subscription.☆5,149Updated this week
- Burp Suite extension that adds built-in MCP tooling, AI-assisted analysis, privacy controls, passive and active scanning and more☆1,509Sep 2, 2026Updated 3 weeks ago
- HexStrike AI MCP Agents is an advanced MCP server that lets AI agents (Claude, GPT, Copilot, etc.) autonomously run 150+ cybersecurity to…☆12,042Aug 3, 2026Updated last month
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Agent Browser Bridge for Firefox.☆21Apr 29, 2026Updated 4 months ago
- AI-Powered Agents for Bub-Bounty Pentesting and Red-Teaming purposes☆430Apr 30, 2026Updated 4 months ago
- Open-source AI pentester that proves every finding. Machine oracles re-run each exploit; verified bugs ship a proof capsule you can repla…☆1,694Sep 13, 2026Updated last week
- Cybersecurity AI (CAI), the framework for AI Security☆9,835Aug 22, 2026Updated last month
- MCP server that connects AI assistants to HackerOne for bug bounty hunting☆355Apr 7, 2026Updated 5 months ago
- claude-red is a curated library of offensive security skills designed for the Claude skills system. Each skill is a structured SKILL.md f…☆6,819Updated this week
- A Claude Code skill bundle for bug hunting and external red-team work - 82 skills, 15 slash commands, 681 disclosed-report patterns curat…☆4,621Updated this week
- Bug bounty agent framework for Claude Code, Codex, Gemini, Cursor, Windsurf, Copilot, and OpenClaw — 48 agents, 26 commands, 19 CLI tools…☆964Jun 12, 2026Updated 3 months ago
- Agentic Pentesting MCP server that discovers, exploits, and reports web application vulnerabilities.☆231Feb 22, 2026Updated 7 months ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Unofficial MCP server for accessing your HackerOne reports, programs, scope, and earnings from Claude Code☆41Apr 1, 2026Updated 5 months ago
- ☆44Aug 13, 2026Updated last month
- Agentic pentest tooling. Currently achieving 81% (KIMI K2.5) on XBOW's benchmark in full black-box. Completely Self-hosted. Every model a…☆311Aug 7, 2026Updated last month
- Open-source passive reconnaissance and exposure discovery tool that leverages VirusTotal and the Wayback Machine to uncover subdomains, U…☆145Updated this week
- List of AI Hacking Agents☆684Aug 29, 2026Updated 3 weeks ago
- AI-driven automated threat analysis pipeline that routes files, URLs, IPs, domains, or images through specialized security analyzers and …☆22Mar 9, 2026Updated 6 months ago
- Web2 bug bounty Agent Skill — evidence-based, no AI slop. Covers 18 vulnerability classes across HackerOne, Bugcrowd, Intigriti, and YesW…☆72Feb 21, 2026Updated 7 months ago
- The ultimate OWASP MCP Top 10 security checklist and pentesting framework for Model Context Protocol (MCP), AI agents, and LLM-powered sy…☆17Dec 22, 2025Updated 9 months ago
- A collection of skills, agents, commands, and workflows for security researchers. Compatible with Claude Code, Claude Desktop, OpenCode, …☆103Apr 19, 2026Updated 5 months ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Security operations toolkit for AI coding agents. Give Claude Code 25+ skills to catch vulnerabilities, scan containers, detect secrets, …☆215Apr 15, 2026Updated 5 months ago
- Generate Claude Code bug bounty skills from public HackerOne reports and GitHub writeups — 18 vuln classes, no private reports needed☆238Updated this week
- 🤹 Caido AI Skills☆277Aug 13, 2026Updated last month
- A Burp Suite extension that integrates Dalfox XSS scanner directly into your workflow.☆23Feb 6, 2026Updated 7 months ago
- The most comprehensive cybersecurity skill pack for AI coding agents — 741 skills spanning offense, defense, cloud, forensics, malware an…☆23Mar 6, 2026Updated 6 months ago
- Arbitrary file read exploit for the Windows UPnP Device Host service.☆20Jun 5, 2026Updated 3 months ago
- PentestAgent is an AI agent framework for black-box security testing, supporting bug bounty, red-team, and penetration testing workflows.☆3,108Updated this week
- Raptor turns Claude Code into a general-purpose AI offensive/defensive security agent. By using Claude.md and creating rules, sub-agents,…☆3,813Updated this week
- SecKnowledge - Web与AI安全测试知识技能☆410Jun 17, 2026Updated 3 months ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- MCP Server for Burp☆1,183Updated this week
- 通用代码审计skills,覆盖PHP/Java/.NET的18类通用漏洞+专项漏洞+动态调试审计☆59May 11, 2026Updated 4 months ago
- Convert your HackerOne reports into reusable AI skills.☆109Mar 9, 2026Updated 6 months ago
- 8 Claude skills · 100+ recon capabilities · 80 secret-regex patterns · 80+ dorks · 9 read-only credential validators · 27 attack-path tem…☆2,649Aug 30, 2026Updated 3 weeks ago
- TokenTwin Checker — Dual Token BAC/IDOR Tester for Burp Suite☆98Aug 24, 2026Updated last month
- NeuroSploit is an advanced, AI-powered penetration testing framework designed to automate and augment various aspects of offensive securi…☆1,389Updated this week
- Open-source AI-powered offensive security harness for automated penetration testing.☆2,849Updated this week