{"repo":"Telefonica/AgentHound","free":true,"listed":false,"github":"https://github.com/Telefonica/AgentHound","clone":"git clone https://github.com/Telefonica/AgentHound.git","description":"BloodHound-style risk analysis for multi-agent AI architectures. Parses CrewAI, Dify, LangGraph, or generic YAML into a typed capability graph and detects reachable attack paths from untrusted input to sensitive data or external action, with live control simulation.","language":"TypeScript","stars":11,"topics":["agentic-ai","ai-security","attack-path-analysis","blackhat-arsenal","bloodhound","crewai","dify","fastapi","langgraph","llm-security"],"license":"AGPL-3.0","category":"ai-agents","readme_excerpt":"AgentHound AgentHound analyzes multi-agent architecture definitions (CrewAI, Dify, LangGraph, generic YAML) for capability paths that lead to risk, following a BloodHound-style model: typed capability edges between nodes, risk evaluated on the combination of capabilities, node properties, and missing controls. \"Generic YAML\" is not a third-party framework but AgentHound's own explicit nodes / edges format: a thin authoring layer over the internal model that the framework adapters also target, and the most expressive of the four (it can describe full capability paths the tree-shaped adapter outputs cannot). It is auto-detected from top-level nodes and edges . Repository layout - Backend/ — FastAPI backend service (Pydantic v2 + NetworkX). See Backend/app/docs/README.md for backend-only details. - Frontend/ — Next.js + Mistica web app. The threat-model wizard uploads an architecture YAML, calls the backend, and renders the capability graph, findings, and risk metrics. See Frontend/README.md . - examples/ — Engine-verified example architectures (four progressive scenarios as CrewAI, Dify, LangGraph, and generic YAML, plus a risky/safe pair migrated from an earlier proof of concept) with per-scenario notes, usable as a demo set and regression bank. See examples/README.md . Status The backend is implemented: generic YAML parser, normalized IR, NetworkX graph, the v0.2 rule catalog (35 rules across path, node and edge patterns) with each finding classified as an attack path or a hy","default_branch":null,"files":null,"tree":[],"storefront":"/r/Telefonica","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/Telefonica/AgentHound/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}