protectai/vulnhuntr
Zero shot vulnerability discovery using LLMs observed · 2026-08-28
Health v2 · maintenance only
24/100
- Activity 5
- Release rhythm 35
- Longevity 49
Flags: no_releases
How is this computed?
round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10) — computed 2026-09-03. Adoption (stars, forks) is never an input.
- gap_med: n/a
- age_days: 687
- days_rel: n/a
- days_push: 573
- n_releases_24m: 0
Adoption not part of the score
2747 stars · 320 forks observed · 2026-08-28
What it is AI-extracted, prompt v1, taxonomy v1, 2026-08-30, confidence not recorded
Vulnhuntr is a Python CLI tool that uses large language models combined with static code analysis to autonomously discover exploitable vulnerabilities in Python codebases. It traces complete call chains from remote user input to server output to find complex, multi-step security flaws that traditional static analyzers miss.
Use cases
- find zero-day vulnerabilities in python projects with llm analysis
- audit open-source python codebases for rce and ssrf bugs
- discover security flaws that static analyzers miss
- hunt for exploitable bugs in ai and llm applications
- trace remote user input through code call chains to find vulnerabilities
- automate vulnerability discovery for bug bounty research
- scan python web apps for xss sqli and lfi issues
When to choose
- you need to audit a Python codebase for remotely exploitable vulnerabilities
- traditional static analysis tools miss complex multi-step attack chains
- you are doing security research or bug bounty hunting on Python projects
- you want to find 0-days in popular AI/LLM applications
When to avoid
- your codebase is not written in Python
- you need guaranteed complete coverage rather than LLM-assisted discovery
- you cannot provide LLM API access or handle the associated cost
- you need to scan non-Python languages like C, Go, or JavaScript
Facets
cli-tool · maturity active
security vulnerability-scanning linter llm-inference nlp security developer-tools artificial-intelligence large-language-models penetration-testing python cli windows vulnerability-discovery zero-shot-analysis llm-security-audit python-code-audit 0day-hunting code-call-chain-analysis security-research responsible-disclosure docker linux macos
1 source
- readme: https://github.com/protectai/vulnhuntr · fetched 2026-08-28 · 6fd4bd054238
Member repositories
| Repository | Role | Health v2 |
|---|---|---|
| protectai/vulnhuntr | main | 24 |
For agents
markdown · JSON · MCP: product_card(name="protectai/vulnhuntr")
Data as of 2026-08-30T08:39:29.467469+00:00 · Report a problem