Ross ROSS = Recommend OSS · open-source software intelligence for agents

PentesterFlow/agent

Agentic offensive-security in your terminal observed · 2026-08-28

github.com/PentesterFlow/agent · homepage · TypeScript · Apache-2.0 (permissive) observed · 2026-08-28

Health v2 · maintenance only

71/100

  • Activity 87
  • Release rhythm 88
  • Longevity 6

Flags: young

How is this computed?

round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10) — computed 2026-09-02. Adoption (stars, forks) is never an input.

  • gap_med: 0.0
  • age_days: 94
  • days_rel: 80
  • days_push: 80
  • n_releases_24m: 21

Full methodology

Adoption not part of the score

1308 stars · 240 forks observed · 2026-08-28

What it is AI-extracted, prompt v1, taxonomy v1, 2026-08-30, confidence not recorded

PentesterFlow is a terminal-based agentic AI CLI assistant for penetration testers and bug bounty hunters. It orchestrates LLM-driven recon, enumeration, validation, and reporting workflows while keeping the human analyst in control of sensitive actions.

Use cases

  • automate recon and enumeration on a pentest target
  • test an API for broken access control and IDOR vulnerabilities
  • collect evidence and generate findings reports during a security audit
  • run an AI agent that assists with bug bounty hunting
  • keep an audit log of commands run during authorized offensive-security work

When to choose

  • you are a pentester or bug hunter wanting an LLM assistant with human-in-the-loop approval
  • you need reproducible, curl-first command execution with saved evidence for reporting
  • you want an agent that remembers lessons across sessions via local knowledge bases

When to avoid

  • you lack explicit authorization to test the target systems
  • you need fully autonomous scanning without human approval gates
  • you need a GUI-based vulnerability scanner rather than a terminal workflow

Facets

cli-tool · maturity active

agent-framework llm-inference security penetration-testing cli developer-tools security penetration-testing artificial-intelligence developer-tools cli cross-platform windows offensive-security bug-bounty human-in-the-loop agentic-ai security-automation recon vulnerability-assessment ai-agents command-line nodejs macos linux

1 source

Member repositories

RepositoryRoleHealth v2
PentesterFlow/agentmain71

For agents

markdown · JSON · MCP: product_card(name="PentesterFlow/agent")

Data as of 2026-08-30T08:39:29.467469+00:00 · Report a problem