BigHugger
GH Repository · Kritt-ai

open-kritt

Open-source, self-hosted AI vulnerability research tool that orchestrates agents to find and validate security issues in code.

stars
2,140
30-day movement
+5418/day
Related entries
60
Connections
2
agent-appJavaScriptsource-code-analysisbugbounty-toolssecurity-researchaiself-hostedai-securitycode-securitysecurity-automationhackenproofdockerai-agentshackeronevulnerability-scannerbug-bountyimmunefisecurity-tools

Open-kritt is a self-hosted AI vulnerability research tool that orchestrates multiple agents to find and validate security issues in source code. It is written in JavaScript, licensed under AGPL-3.0, ships a Docker toolchain and an AGENTS.md file for agent configuration.

You want an agent-driven, self-hosted alternative for automated vulnerability discovery and validation in code you can run on your own infrastructure.

Use it to

  • Run self-hosted AI agents to scan source code for vulnerabilities
  • Support bug bounty workflows on platforms like HackerOne, Bugcrowd, and Immunefi
  • Validate suspected security issues before reporting
  • Integrate agent-driven security analysis into your own toolchain via Docker

For Security researchers, bug bounty hunters, and code security teams

Role
agent-app
Language
JavaScript
Licence
AGPL-3.0
Forks
364
Open issues
5
Last push
2026-09-15
Latest release
v1.1.0 · 2026-07-20
topicsai-agentsvulnerability-scannersecurity-researchbug-bountyself-hostedcode-security