QiantangCredit/heimdall-agent
An autonomous AI agent framework for authorized CTF and security labs
About the project
An autonomous AI agent framework for authorized penetration testing, combining task scheduling, a solver, an observer, and a toolkit in a self-hosted workspace with a web console. Currently demonstrated on CTF tasks.
Useful for
- Run the agent on a CTF challenge and inspect the exploration graph and logs
- Configure your model gateway URL and API key in Settings for the solver
- Deploy the self-hosted stack locally via Docker Compose
README summarized by DeepSeek V4.1 Flash. Details may be inaccurate.
Why it’s trending
- 0 stars so far today, about 1 expected by the end of the day.
- The repository is 6 days old and already has 73 stars.
Stars per day
Bars are daily stars, the line is the usual pace. Red marks spike days.
Numbers
- Total stars
- 73
- Stars in a day
- 1
- Forks
- 11
- Issues and pull requests
- 0
- Watchers
- 0
- Language
- TypeScript
- License
- MIT
- Created
- September 14, 2026
- Last push
- September 20, 2026
Star trust
Growth looks organic: forks and discussion are in line with active projects, and stars arrive unevenly, the way people give them.
These are heuristics, not a verdict: we judge by the repository’s behavior, not by a list of stargazers.
Spotted in
- September 20, 2026Top new repositories this week: #176
- September 19, 2026Top new repositories this week: #161
- September 18, 2026Top new repositories this week: #140
- September 17, 2026Top new repositories this week: #147
- September 16, 2026Top new repositories this week: #197
Similar projects
-
8.7
cloudflare/security-audit-skill
A coding-agent skill that turns the agent into a security auditor, running a multi-phase code audit with independently verified, machine-readable findings.
-
6.8
newliver666/apk-reverse
An Agent Skill for Android APK reverse engineering: unpacking, ad removal, dex patching, repacking, and runtime/server analysis. Loaded by an agent (Claude Code, Codex) while it works.
-
6.2
HyNetworks/OpenGFW
An open-source DIY Great Firewall for Linux: it reassembles IP/TCP flows, analyzes protocols (HTTP, TLS, QUIC, DNS, SSH, VPNs) and filters connections via an expr-based rule engine. Aimed at home routers and servers…
-
6.0
arvindear/wp2shell-PoC
Proof-of-concept for the wp2shell vulnerability chain in WordPress Core (CVE-2026-63030 and CVE-2026-60137) that gives an unauthenticated attacker RCE. A tool for testing and exploitation in controlled environments and…
-
5.4
ejfkdev/ddc
A Rust DEX-to-Java decompiler for Android with progressive analysis: query metadata first and decompile classes on demand instead of a full run. Its output is javac-verified across seven real-world APKs.
-
3.6
YuJunZhiXue/dsh-purge
A local DeepSeek Harness plugin that reversibly patches installed @deepseek-ai packages to strip built-in refusals and swap prompts per model. Intended for red-team research and robustness evaluation in an authorized…