AI kit · IT and development
The AI kit for Penetration Testers
Everything your ChatGPT, Claude or Copilot needs to work like an expert penetration tester, hand-picked from our libraries and kept up to date. Add it once and just ask your AI for help. We guide you through the set-up.
AI Coach included
11 skills for penetration testers
Picked from our 6,000+ skills. Know-how your AI follows step by step, so the result looks like an expert made it. Just ask for the task; your AI picks the right skill.
Runs a full engagement, for example scoping a 10-day external test then validating and reporting each finding.
Turns your codebase into pentest-plan.md, for example test cases for each API endpoint and auth check.
Prioritizes vulnerabilities across code, network, and policy, for example a threat model for your customer portal.
Reads pcap, flow, and log data to spot intrusions, for example flagging beaconing from an internal host.
7 more in the kit for members.
Get the full kit24 prompts in 8 topics
Picked from our 60,000+ prompts. Tested instructions for every task in your job. Copy, paste, done. In your kit they're one click away.
Like "Draft Rules Of Engagement"
Like "Summarize Vulnerability Scan Results"
Like "Map Web App Attack Surface"
Like "Troubleshoot Exploit Failure From Error"
20 more in the kit for members.
Get the full kit12 AI agents for penetration testers
Picked from our 4,000+ AI agents. An agent runs a whole task for you, every day or every month. It stops and asks you before anything important.
A coverage matrix backed by evidence and a prioritized plan for the remaining testing
A proof of concept that is shown to work in the lab and is safe to run against the client
Every item placed during the test is removed or confirmed removed, with a signed cleanup statement
Critical findings reach the client fast, with a tracked response and confirmed fix
8 more in the kit for members.
Get the full kit12 connections (MCP servers) for penetration testers
Picked from our 4,000+ MCP servers. A connection lets your AI look things up and get work done in an app you already use. You only switch on the ones you have, and we show you how.
Lets your AI look up IP addresses, devices, DNS records and known security flaws using Shodan.
Lets your AI run common security scanning tools like Nmap, Nuclei and Subfinder for you from one place.
Lets your AI send and test web requests at a low level, for security checks and fuzzing.
Lets your AI look up internet-connected devices and websites using ZoomEye search.
8 more in the kit for members.
Get the full kit12 AI apps for penetration testers
Picked from our 9,000+ AI apps. The AI apps worth your time in this job, so you don't have to test dozens yourself.
Strix is an open-source AI penetration-testing agent that finds and validates vulnerabilities, produces PoCs and compliance-ready reports to accelerate security
Darkmoon is an open-source, self-hosted autonomous penetration testing platform. It employs specialized methodology agents and integrated offensive security too
Google Gemini 3.8 Flash is a fast, lower-cost model for developers building autonomous agents and handling long-horizon coding tasks. A variant called Gemini 3.
Hacktron detects hidden security vulnerabilities with validated findings and concrete, actionable fixes, reducing false positives and delivering clear, evidence
8 more in the kit for members.
Get the full kit3 apps to build for penetration testers
Picked from our 2,000+ apps to build. Small tools for your job that your AI builds for you with our step-by-step instructions. No code.
Validate each finding with evidence and a human decision, cutting unverified findings from your client report.
Test web app bugs with each result linked to source, so developers can fix fast and stay in control.
Turn written permissions into allowed and denied test cases you can trace and reuse.
12 Grok Bots for penetration testers
Picked from our 1,800+ Grok Bots. Ready-made helpers on Grok Bot that sort files, rename documents and keep folders tidy while you work.
Conduct authorized penetration tests to identify and validate exploitable vulnerabilities.
Guide users through security scanning with Nmap, Nessus, Burp Suite, Aircrack-ng, and Prowler.
Guide structured OWASP Top 10 web application security assessments step by step.
Guide systematic Windows privilege escalation enumeration and exploitation.
8 more in the kit for members.
Get the full kitAdd the kit to your AI
Install instructions are for members
Install the kit as a plugin, or connect it through the AI Coach. Both come with every click shown, so you don't have to work anything out.
Get my AI kit