TL;DR
An open-source tool that automates the entire bug bounty hunting workflow (recon, vulnerability detection, validation, report generation) from the terminal using AI.
Key features
Automated recon: Automatically gathers information about target domains.
20 vulnerability classes detection: Tests for major vulnerabilities like SQL injection, XSS, etc.
Autonomous hunting: AI agent autonomously finds and validates vulnerabilities.
Report generation: Automatically generates submission-ready reports for HackerOne, Bugcrowd, Intigriti, and Immunefi.
Session persistence: Can resume previous sessions.
Multiple modes: Works as a Claude Code plugin or as a standalone CLI with free AI providers (Ollama, etc.).
When to use it
When you want to automate the bug bounty workflow from recon to report writing.
When you want to leverage AI to improve vulnerability detection efficiency.
When you want AI-powered hunting for free without a Claude subscription.