# ki9mu/ARL-plus-docker

基于ARL-V2.6.2修改后的版本

Repository: https://github.com/ki9mu/ARL-plus-docker
Canonical: https://ross.abutalabs.com/products/arl-plus-docker
Language: Shell
License Family: other
Topics: arl, asset-reconnaissance-lighthouse, bugbounty, pentest-tool, python, recon, security-tools, arl-ki9mu
Last push: 2025-06-26T12:28:39+00:00

## Health v2 (maintenance only)
Score: 35/100 (v2, computed 2026-09-02T17:46:02.011165+00:00)
- activity 28, release rhythm 8, longevity 100
- inputs: {"age_days": 1601, "days_push": 433, "days_rel": 691, "gap_med": null, "n_releases_24m": 1}
- flags: no_license
- formula: round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10)

## Adoption (not part of the score)
Stars 1005, forks 162 (observed 2026-09-03T02:15:14.008453+00:00)

## What it is
A Docker-based fork of ARL (Asset Reconnaissance Lighthouse) v2.6.2 that performs automated asset discovery and vulnerability scanning for domains, including subdomain enumeration, port scanning, file-leak detection, and 245 bundled POCs via nuclei. It adds a centralized domain-sharing database, improved task stability for long-running scans, and WAF/NIDS evasion tweaks.

## Use cases
- enumerate subdomains and assets for a target domain
- run automated recon for bug bounty programs
- scan domains for known vulnerabilities with nuclei POCs
- detect file leaks and exposed sensitive files on web assets
- share scanned domain data across a team via a central database
- run long-running reconnaissance tasks without jobs dying

## When to choose
- you need a self-hosted, Docker-deployable asset reconnaissance platform
- you want an ARL fork with extra POCs and improved scan stability
- you do bug bounty or authorized pentesting and need automated domain recon

## When to avoid
- you lack authorization to scan the target domains - unauthorized use is illegal
- you need a lightweight scanner without Docker or heavy server requirements (4C8G+ recommended)
- you want a maintained upstream project rather than a community fork with no license file

## Facets
- artifact type: application
- maturity: active
- function: security, vulnerability-scanning, web-scraping, self-hosted, developer-tools
- domain: security, penetration-testing, osint, developer-tools
- platform: self-hosted
- tags: asset-reconnaissance, bug-bounty, recon, attack-surface-mapping, nuclei, subdomain-enumeration, arl-fork, pentest, docker, linux, web-server

## Member repositories
- ki9mu/ARL-plus-docker (main) score 35

## Provenance
- Observed fields: from GitHub, fetched 2026-09-03T02:15:14.008453+00:00.
- Health v2: computed from the inputs above; adoption is never an input.
- Inferred fields (summary, facets, guidance): AI-extracted, prompt v1, taxonomy v1, on 2026-08-30T07:12:47.259724+00:00, confidence not recorded.
  - readme: https://github.com/ki9mu/ARL-plus-docker (fetched 2026-09-03T02:15:14.008453+00:00, sha f304457be85a)
- Data as of 2026-08-30T08:39:29.467469+00:00.
