bughunter) or as skills and commands inside agent harnesses such as Claude Code, OpenCode, Pi, and Codex. An MCP server exposes the same research engine to AI agents.
What it does
- Recon — map subdomains, live hosts, URLs, and attack surface
- Hunt — test vulnerability classes against in-scope assets
- Validate — run the 7-Question Gate before you write a report
- Report — draft platform-ready write-ups (HackerOne, Bugcrowd, Intigriti, Immunefi)
- Memory — keep patterns and session context for the next hunt