Ross ROSS = Recommend OSS · open-source software intelligence for agents

protectai/vulnhuntr

Zero shot vulnerability discovery using LLMs observed · 2026-08-28

github.com/protectai/vulnhuntr · Python · AGPL-3.0 (copyleft) observed · 2026-08-28

Health v2 · maintenance only

24/100

  • Activity 5
  • Release rhythm 35
  • Longevity 49

Flags: no_releases

How is this computed?

round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10) — computed 2026-09-03. Adoption (stars, forks) is never an input.

  • gap_med: n/a
  • age_days: 687
  • days_rel: n/a
  • days_push: 573
  • n_releases_24m: 0

Full methodology

Adoption not part of the score

2747 stars · 320 forks observed · 2026-08-28

What it is AI-extracted, prompt v1, taxonomy v1, 2026-08-30, confidence not recorded

Vulnhuntr is a Python CLI tool that uses large language models combined with static code analysis to autonomously discover exploitable vulnerabilities in Python codebases. It traces complete call chains from remote user input to server output to find complex, multi-step security flaws that traditional static analyzers miss.

Use cases

  • find zero-day vulnerabilities in python projects with llm analysis
  • audit open-source python codebases for rce and ssrf bugs
  • discover security flaws that static analyzers miss
  • hunt for exploitable bugs in ai and llm applications
  • trace remote user input through code call chains to find vulnerabilities
  • automate vulnerability discovery for bug bounty research
  • scan python web apps for xss sqli and lfi issues

When to choose

  • you need to audit a Python codebase for remotely exploitable vulnerabilities
  • traditional static analysis tools miss complex multi-step attack chains
  • you are doing security research or bug bounty hunting on Python projects
  • you want to find 0-days in popular AI/LLM applications

When to avoid

  • your codebase is not written in Python
  • you need guaranteed complete coverage rather than LLM-assisted discovery
  • you cannot provide LLM API access or handle the associated cost
  • you need to scan non-Python languages like C, Go, or JavaScript

Facets

cli-tool · maturity active

security vulnerability-scanning linter llm-inference nlp security developer-tools artificial-intelligence large-language-models penetration-testing python cli windows vulnerability-discovery zero-shot-analysis llm-security-audit python-code-audit 0day-hunting code-call-chain-analysis security-research responsible-disclosure docker linux macos

1 source

Member repositories

RepositoryRoleHealth v2
protectai/vulnhuntrmain24

For agents

markdown · JSON · MCP: product_card(name="protectai/vulnhuntr")

Data as of 2026-08-30T08:39:29.467469+00:00 · Report a problem