Shannon AI Pentester is an autonomous tool that finds and exploits security holes in web applications and APIs. It reads your source code to identify weak points, then runs real attacks like SQL injection and cross-site scripting. Only confirmed vulnerabilities with a working proof-of-concept are reported.
You can run it with Docker and a few commands. It works with popular AI providers like Anthropic and AWS Bedrock. The tool scans your app, tests for flaws, and gives you a clear report of what to fix.
This helps developers catch serious security issues before attackers do. It automates the hard work of pentesting so you can focus on building.
Global
mkdir -p ~/.claude/skills/shannon-ai-pentesterProject
mkdir -p .claude/skills/shannon-ai-pentesterSource Repository
Azure Compliancemicrosoft/azure-skills
Audit Azure compliance and Key Vault expiration with azqr scans
Firebase Security Rules Auditorfirebase/agent-skills
Find weak spots in Firestore rules and get clear fixes
Golang Securitysamber/cc-skills-golang
Find and fix security flaws in Go code using expert guidance and automated tools
Firestore Security Rules Auditorfirebase/agent-skills
Audit your Firestore security rules and get a detailed vulnerability score from 1 to 5
Skill Vetteruseai-pro/openclaw-skills-security
Manual skill vetting with security checks before any install
Two Factor Authentication Best Practicesbetter-auth/skills
Secure user logins with two-factor authentication using Better Auth
Clerk Nextjs Patternsclerk/skills
Secure your Next.js app with Clerk middleware, server actions, and caching
Persona It Admingoogleworkspace/cli
Keep your digital workspace safe with IT admin security workflows