{"repo":"openhackai/OpenHack","free":true,"listed":false,"github":"https://github.com/openhackai/OpenHack","clone":"git clone https://github.com/openhackai/OpenHack.git","description":"Open Source Agentic Security Scanner","language":"Python","stars":387,"topics":["agents","llm","ai","sast","security","cybersecurity","hacking"],"license":"MIT","category":"security-tools","readme_excerpt":"⏚ OpenHack Open Source Agentic Security Scanner & Verifier for your codebase. Like Claude Code Security / Codex Security but open source and exclusively uses open source models . &nbsp; &nbsp; &nbsp; Get started Or with uv: Or with pip: How it works OpenHack does recon - hunting - validation - verification all in one pipeline to find high quality verified vulnerabilities. Recon : Does a deep dive and fully understands your application along with any custom context you give it. Builds a full project model before hunting begins. Hunter : Specialized category based hunters get to finding vulnerabilities initially, along with feature based hunters divind deep to find vulnerabilities in risky code areas. Validation : Validation agent performs a review of the finding and it's impact and whether it's even valid. Verification : Verification agent performs a full browser + sandbox based attack to find verify vulnerabilities in a real docker / DOM environment. Quick start On first run you'll go through a one-time setup: 1. Pick Login with OpenHack account (recommended) — opens a browser, you log in, get $20 in free credits , and the CLI gets a token automatically. 2. Type /scan . to scan the current directory, or /scan path/to/repo for somewhere else. 3. While scanning, the Trace tab shows live agent activity (recon → hunters → validators). When the scan finishes, the Findings tab shows everything that was found. What it does OpenHack runs a multi-agent pipeline against your codebase: ","default_branch":null,"files":null,"tree":[],"storefront":"/r/openhackai","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/openhackai/OpenHack/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}