Ross ROSS = Recommend OSS · open-source software intelligence for agents

j3ssie/osmedeus

A Modern Orchestration Engine for Security observed · 2026-08-28

github.com/j3ssie/osmedeus · homepage · Go · MIT (permissive) observed · 2026-08-28

Health v2 · maintenance only

93/100

  • Activity 96
  • Release rhythm 84
  • Longevity 100
How is this computed?

round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10) — computed 2026-09-02. Adoption (stars, forks) is never an input.

  • gap_med: 55
  • age_days: 2853
  • days_rel: 25
  • days_push: 25
  • n_releases_24m: 8

Full methodology

Adoption not part of the score

6538 stars · 1028 forks observed · 2026-08-28

What it is AI-extracted, prompt v1, taxonomy v1, 2026-08-29, confidence not recorded

Osmedeus is a security-focused declarative orchestration engine that lets users define reconnaissance and vulnerability-scanning pipelines as auditable YAML workflows. It supports distributed execution via Redis workers, Docker/SSH runners, cron and event triggers, cloud provisioning, and LLM-powered agentic steps, with a CLI, REST API, and web UI.

Use cases

  • automate reconnaissance pipelines for bug bounty targets
  • orchestrate penetration testing workflows in YAML
  • run distributed security scans across multiple workers
  • schedule recurring attack surface monitoring scans
  • integrate LLM agents into security automation workflows
  • provision cloud VMs to run scans and clean them up automatically
  • trigger security workflows from webhooks or cron

When to choose

  • you need declarative, auditable YAML pipelines for security tooling
  • you want distributed master-worker execution with Redis queues
  • you need built-in recon utilities like nmap integration, WAF/CDN detection, and SARIF parsing
  • you want LLM agent steps and cloud provisioning inside one security automation engine

When to avoid

  • you only need a single scanner rather than a workflow orchestrator
  • you want a GUI-first product with no YAML or CLI work
  • your automation is unrelated to security or reconnaissance
  • you cannot run Go binaries or Docker in your environment

Facets

cli-tool · maturity active

workflow-automation penetration-testing osint agent-framework scheduling cli api-framework webhook security penetration-testing developer-tools osint windows go cli self-hosted reconnaissance bug-bounty attack-surface-management yaml-workflows distributed-execution llm-agents vulnerability-scanning automation command-line linux macos docker

3 sources

Member repositories

RepositoryRoleHealth v2
j3ssie/osmedeusmain93

For agents

markdown · JSON · MCP: product_card(name="j3ssie/osmedeus")

Data as of 2026-08-30T08:39:29.467469+00:00 · Report a problem