返回插件市场
DSH Plugins技能

VulnClaw

Netw0rkNoob/VulnClaw

VulnClaw is a tool for DeepSeek Harness. Built on AI Agent + MCP toolchain + pentest Skill orchestration, with an LLM: natural language input → fully automated 'information gathering → vulnerability discovery → exploitation → report generation' workflow.

Netw0rkNoob/VulnClaw Screenshot preview
Stars
3.3k
Forks
447
Issues
19
Update
11 days

REVIEW SCORECARD

评测成绩单

8.5/10Excellent
detail.dimSecurity9.0
detail.dimQuality9.0
detail.dimContent7.0
detail.dimDeps7.0
detail.dimMaintenance9.0

无Risky检出 · 自动化扫描结果仅供参考,非官方背书

AI DEEP REVIEW

AI 深度评测

7.2/10Cautious

Powerful AI-driven pentest agent with strong docs, but offensive tooling and shell/code execution warrant authorized-use

Code quality7

README shows codecov badge, PyPI packaging, Docker support, and modular MCP/plugin architecture, but no visible test suite or CI config details beyond the coverage badge.

Security5

Ships a shell_command tool, python_execute (self-described as 'high-risk experimental, not a strong sandbox'), and TLS verification disabled by default for CTF targets, which are meaningful risks despite the authorized-only scope disclaimer.

Utility8

Automates the full recon-to-report pentest workflow with 14 LLM providers, 50 skills, and MCP tooling, addressing a real and popular security testing pain point.

Maintenance8

Last updated 2026-09-05, not archived, with active versioning (v0.3.8), Discord community, and a project website indicating ongoing development.

Docs8

README provides install commands, four-step quickstart, Docker instructions, architecture overview, and feature list, though some sections (e.g. config step 2) appear truncated.

Generated by AI after reading the project README, as a decision aid; neutral scores are given when information is thin. Not an official endorsement.

PROJECT README项目说明展开Collapse

正在读取 GitHub README...

INSTALL REFERENCE

安装参考

待结构检查
pip install vulnclaw

This command comes from an explicit install reference in the README and is provided for reference only — it is never auto-executed by a DSH host.

PROJECT TOPICS

项目标签

VALIDATION LADDER

验证进度

待结构检查
01市场发现Passed
02归类识别Passed
03结构检查Pending
04实机验证Pending

FAQ

Frequently Asked Questions

What is VulnClaw used for?

Built on AI Agent + MCP toolchain + pentest Skill orchestration, with an LLM: natural language input → fully automated 'information gathering → vulnerability discovery → exploitation → report generation' workflow.

How popular is VulnClaw?

VulnClaw has 3,311 stars and 447 forks on GitHub, last updated 2026-09-05.

What license does VulnClaw use?

VulnClaw is distributed under the MIT license.

Is VulnClaw compatible with DeepSeek Harness?

VulnClaw is listed in the DSH Universe directory as a tool for DeepSeek Harness. This plugin is listed in the DSH Universe directory and covered by its validation pipeline.

CLASSIFICATION EVIDENCE

/10类依据

项目类型技能
功能/10类DSH Plugins
规则置信度High

System reads GitHub Topics first, then compares against the in-site category dictionary and word-root rules. Current match:skill