zan8in/afrog
A Security Tool for Bug Bounty, Pentest and Red Teaming. observed · 2026-08-28
Health v2 · maintenance only
96/100
- Activity 96
- Release rhythm 94
- Longevity 100
How is this computed?
round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10) — computed 2026-09-03. Adoption (stars, forks) is never an input.
- gap_med: 13
- age_days: 1651
- days_rel: 42
- days_push: 29
- n_releases_24m: 30
Adoption not part of the score
4372 stars · 477 forks observed · 2026-08-28
What it is AI-extracted, prompt v1, taxonomy v1, 2026-08-29, confidence not recorded
afrog is an open-source security tool written in Go for vulnerability scanning using PoC (Proof of Concept) rules. It is designed for bug bounty hunters, penetration testers, and red teamers to detect known vulnerabilities in targets.
Use cases
- scan a target for known vulnerabilities with PoC rules
- find exploitable CVEs during a pentest
- run batch vulnerability scans for bug bounty recon
- write custom PoC rules for vulnerability detection
- verify whether a service is affected by a specific exploit
When to choose
- you need a fast CLI-based PoC vulnerability scanner
- you do bug bounty, pentest, or red team engagements and want community PoCs
- you want to write and run custom PoC rules in a simple format
When to avoid
- you need a full authenticated web application scanner
- you want a GUI-driven enterprise vulnerability management platform
- you need continuous compliance or asset inventory scanning rather than PoC-based checks
Facets
cli-tool · maturity active
vulnerability-scanning security penetration-testing cli security penetration-testing windows cli cross-platform poc-scanner bug-bounty red-teaming vulnerability-scanner go linux macos
1 source
- readme: https://github.com/zan8in/afrog · fetched 2026-08-28 · 5c445e3b37c2
Member repositories
| Repository | Role | Health v2 |
|---|---|---|
| zan8in/afrog | main | 96 |
For agents
Data as of 2026-08-30T08:39:29.467469+00:00 · Report a problem