Observed arrival · 2026-10-09
OpenCyber turns terminal audits into evidence-backed reports
An open-source terminal agent for authorized security testing that maps a target, tests security hypotheses, and writes up findings.
○Open
⊠Login
$Paid
†Ads
✦Pretty
●Pro
◎Niche
◉Human
⚑Risk
ƒJS
- For
- Developers and security testers auditing systems they own or are authorized to test
- Worth noticing
- Its shortened example session records a confirmed invoice-access flaw and a reflected-input hypothesis it discarded as non-exploitable.
Field notes
The page lays out a workflow of scoping, mapping, hypothesis testing, and reporting, with the user able to steer the run along the way. Its shortened sample maps 47 routes, 9 forms, and 3 API namespaces, then shows an invoice-access finding alongside a search-input hypothesis it marks non-exploitable. The site says it runs locally but sends audit material to the chosen model provider.
Observed signals
Read the marks
Editorial observations of this landing page, not a rating.
○OpenPublic substance visible
✦PrettyNotable craft visible
◎NicheUnusually specific use
One card from the complete issue