Ross ROSS = Recommend OSS · open-source software intelligence for agents

selinuxG/Golin

弱口令检测、 漏洞扫描、端口扫描(协议识别,组件识别)、web目录扫描、等保工具(网络安全等级保护现场测评工具)内置3级等保核查命令、基线核查工具、键盘记录器 observed · 2026-08-28

github.com/selinuxG/Golin · Go · MIT (permissive) observed · 2026-08-28

Health v2 · maintenance only

66/100

  • Activity 81
  • Release rhythm 31
  • Longevity 92
How is this computed?

round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10) — computed 2026-09-02. Adoption (stars, forks) is never an input.

  • gap_med: 37
  • age_days: 1293
  • days_rel: 381
  • days_push: 116
  • n_releases_24m: 4

Full methodology

Adoption not part of the score

1847 stars · 262 forks observed · 2026-08-28

What it is AI-extracted, prompt v1, taxonomy v1, 2026-08-30, confidence not recorded

Golin is a Go-based security assessment tool combining asset discovery, port/service scanning, weak password brute-forcing for 40+ services, vulnerability scanning (XSS, RCE, unauthorized access), web fingerprinting, and directory scanning. It also includes an MLPS (China's Cybersecurity Classified Protection) level-3 compliance check tool with built-in baseline verification commands and a keyboard logger module.

Use cases

  • scan a network for live hosts and open ports
  • detect weak passwords on ssh mysql redis and other services
  • scan websites for xss and sensitive information leaks
  • identify web components and fingerprints
  • run mlps level-3 compliance baseline checks
  • find unauthorized access on middleware like jenkins kibana nacos
  • enumerate web directories and sensitive files
  • generate a security assessment report for an asset

When to choose

  • you need an all-in-one Chinese-language security scanning toolkit
  • you must perform MLPS (等保) level-3 on-site assessment checks
  • you want combined asset discovery, weak credential, and vuln scanning in one binary

When to avoid

  • you need a stealthy or IDS-evasion-focused pentest framework
  • you require a maintained, audited enterprise vulnerability scanner with CVE feeds
  • the keylogger feature is legally or ethically inappropriate for your context

Facets

cli-tool · maturity active

penetration-testing vulnerability-scanning security networking osint security penetration-testing networking developer-tools windows go cli weak-password-detection port-scanner vulnerability-scanner web-fingerprinting baseline-check mlps-compliance keylogger asset-discovery chinese linux macos

1 source

Member repositories

RepositoryRoleHealth v2
selinuxG/Golinmain66

For agents

markdown · JSON · MCP: product_card(name="selinuxG/Golin")

Data as of 2026-08-30T08:39:29.467469+00:00 · Report a problem