
wapiti
Web vulnerability scanner written in Python3

Web vulnerability scanner written in Python3

Next generation web scanner

Keyless active-probe security auditor for Directus CMS. Proves public-role data exposure, user enumeration, unauthenticated version/schema leaks,…

Scans public code repositories and code snippet platforms to extract and validate AI service API keys with real-time dashboard and multi-format…

Full-stack platform for authorized web application security scanning with a detector-based engine, async Celery workers, and a React dashboard for…

The AI toolkit for building reliable browser automations

OWASP D4N155 - Intelligent and dynamic wordlist using OSINT

Agentic Pentesting MCP server that discovers, exploits, and reports web application vulnerabilities.

Web app authorisation coverage scanning

API Scraper Agent for Web API's

Asynchronous WordPress security scanner with WAF bypass via headless browser. Enumerates plugins, themes, users, and multisite installations with…

A powerful directory brute-force tool that's tailored for recursive/multiplex operations, API discovery and enumeration, JS file scraping, and lists…

Advanced recon engine that finds real secrets, validates them live, and builds exploit paths from client-side intelligence.

A fast WordPress plugin enumeration tool

Collaborative application security testing between humans and agents via CLI and MCP

WordPress security scanner with AI-powered analysis, ethical compliance framework, and professional reporting.