Strix

Open source penetration testing agent that attacks a running application instead of reading its code. It explores, forms attack hypotheses, executes them in a sandbox, and reports only what it managed to exploit. It also installs as a skill set readable by Claude Code, so you can run a scan then have the fix written in the same session.

Strengths

Limitations

Best for

Official site

View on Coeurdar