Start a pentest
Kick off a pentest and follow it live
Ask for a pentest on any verified scope. The AI app confirms the credit cost, starts the run and reports back as it moves through recon, exploitation and reporting.
Start pentests, triage exploit-proven findings and check fixes in plain language, from Claude, ChatGPT, Cursor or any MCP client. Sign in once; nothing to install.
https://api.vulnix.dev/mcpEvery AI app signs in as a real member of your workspace, gets only the permissions you allow, and can be cut off in one click.
Start a free trialTurn AI apps on or off for the whole workspace, and set a ceiling on the permissions anyone can grant. Existing connections narrow at their next request.
Each connection is an OAuth sign-in by one member. It can't exceed their role, follows it when it changes, and shows up in the console where you can revoke it.
Starting pentests and re-testing fixes are never granted by default, apps ask before running them, and every connection has its own rate limit.
Start a pentest
Ask for a pentest on any verified scope. The AI app confirms the credit cost, starts the run and reports back as it moves through recon, exploitation and reporting.
Triage findings
Ask which critical findings are still open on a domain, read the proof and reproduction steps for each, and update their status without opening the console.
Check a fix
Have the agent replay the original exploit against your patch, then open a fix pull request on the connected repository when one is still needed.
Connect Vulnix in your AI app, then try one of these. Each opens a new chat with the prompt filled in; nothing runs until you send it.
Vulnix, which critical and high findings are still open, and what's the fastest one to fix?