Ross ROSS = Recommend OSS · open-source software intelligence for agents

1N3/Sn1per

Automated penetration testing & attack surface management platform. Recon, scan, exploit, report — 600+ exploits, 90+ integrations, 10K+ detections. observed · 2026-08-28

github.com/1N3/Sn1per · homepage · Shell · NOASSERTION (other) observed · 2026-08-28

Health v2 · maintenance only

63/100

  • Activity 90
  • Release rhythm 8
  • Longevity 100

Flags: no_license

How is this computed?

round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10) — computed 2026-09-03. Adoption (stars, forks) is never an input.

  • gap_med: n/a
  • age_days: 4014
  • days_rel: n/a
  • days_push: 60
  • n_releases_24m: 0

Full methodology

Adoption not part of the score

11043 stars · 2172 forks observed · 2026-08-28

What it is AI-extracted, prompt v1, taxonomy v1, 2026-08-29, confidence not recorded

Sn1per is an open-source automated penetration testing and attack surface management platform that chains reconnaissance, scanning, exploitation, and reporting into a single CLI-driven workflow, with 600+ exploits and 90+ tool/API integrations such as Nmap, Nessus, Burp Suite, Metasploit, and Nuclei. The free Community Edition is a large Shell script for Kali/Debian (or Docker), while paid Professional and Enterprise editions add a web UI, JSON API, scheduled scans, and enterprise reporting.

Use cases

  • automate reconnaissance and vulnerability scanning of a target network from one command
  • run an automated penetration test end to end with exploit verification
  • enumerate subdomains, open ports, and services for bug bounty hunting
  • monitor and manage my organization's external attack surface
  • orchestrate nmap, metasploit, nessus, and nuclei into a single scan pipeline
  • collect OSINT on a domain or IP range
  • generate penetration test reports automatically from scan findings

When to choose

  • You are a pentester, red teamer, or bug bounty hunter who wants a one-command recon-to-exploit workflow instead of stitching together dozens of tools
  • You need to orchestrate existing scanners (Nmap, Nessus, Burp, OpenVAS, WPScan, Nuclei) into one run with a unified findings database
  • You run Kali Linux or Debian natively, or can use Docker, and want continuous attack surface discovery with scheduled scans and reporting

When to avoid

  • You need a purely passive or defensive scanner with minimal network noise — Sn1per actively probes, enumerates, and attempts exploitation, so it requires authorization to run
  • You need first-class support on non-Kali/non-Debian operating systems without Docker, or a permissive open-source license — the core ships under a custom license and the web UI, reporting, and API are paid Professional/Enterprise features
  • You want a lightweight single-purpose scanner rather than a heavyweight orchestrated platform with many external tool dependencies

Facets

cli-tool · maturity active

penetration-testing vulnerability-scanning osint security cli workflow-automation security penetration-testing osint developer-tools cli self-hosted pentesting recon attack-surface-management bug-bounty exploitation red-team vulnerability-scanning nmap metasploit burp-suite nuclei kali-linux shell-script scan-orchestration pentest-reporting custom-license commercial-edition linux docker

8 sources

Member repositories

RepositoryRoleHealth v2
1N3/Sn1permain63

For agents

markdown · JSON · MCP: product_card(name="1N3/Sn1per")

Data as of 2026-08-30T08:39:29.467469+00:00 · Report a problem