Skip to content

Agentic Bug Hunter

$BUG

AI Agents · Utility

Verified Builder
Development
ShippingLast ship 13h ago
Token market
Active market$4.2K fully diluted
Token
Token verified
What HEY checked
Shipping.
Shipped something meaningful in the last 7 days.
Active market.
The tracked token has liquidity and traded in the last 24 hours.
Token verified.
The project itself ties this contract to the project: its site names the contract, or the owner proved control of the deployer.
Market figures are context only and never change activity status. Methodology

official coin for Agentic-Bug-Hunter. all fees go to supporting the funding and building of Agentic-Bug-Hunter. Top 10 Github REpo Today!

Latest ship

Active development: 92 commits in the last 90 days across 19 contributors

Code ActivitySource linked

23 active day(s) in awarexone/agentic-bug-hunter.

Builder activity

Meaningful, source-backed updates per week. Commits are aggregated, not counted individually.

Build timeline

  1. v6.0.0 — Provider Freedom

    Github ReleaseSource verified

    BugHunter v6.0.0 gives you the freedom to run on whatever AI you want — free, local, or cloud — and adds a sponsor-ready polish across the board. Highlights 🔌 More providers, more freedom - OpenRouter provider — set OPENROUTERAPIKEY, pick option 7 in bughunter setup, or BRAINPROVIDER=openrouter. OpenAI-compatible gateway with a short curated model list. - **OrcaRouter provider** — set ORCAROUTERAPIKEY, pick option 8 in bughunter setup, or BRAINPROVIDER=orcarouter. OpenAI-compatible gateway with a short curated model list. - Smarter Ollama model selection — `bu

    View evidence
  2. v5.0.0 — False Positive Reduction + Repository Polish

    Github ReleaseSource verified

    False Positive Reduction The biggest complaint from the community was that almost every result came back N/A. This release fixes that at every layer. Root Cause The scanner was logging every hit as a finding without requiring proof of impact. Dalfox alert(1) was logged as XSS. Nuclei version-detection templates were logged as vulnerabilities. IDOR on your own data was logged as IDOR. None of these should have made it past the scanner. 4-Layer Fix Layer 1 — Scanner Confidence States Every finding is now tagged before it leaves the scanner: | State | Meaning | |:---|:---| | `[CO

    View evidence
  3. v4.0.0 — Meme Coin Security Module

    Github ReleaseSource verified

    Meme Coin Security Module New /token-scan command and full meme coin rug pull detection for EVM and Solana tokens. New Files (8) | Component | What It Does | |---|---| | skills/meme-coin-audit/SKILL.md | New skill — rug pull detection, token authority checks, bonding curve exploits | | tools/token_scanner.py | Automated red flag scanner — hidden mint, honeypot, fee traps, LP drain, fake renounce | | agents/token-auditor.md | Fast token audit agent (8-class protocol) | | commands/token-scan.md | /token-scan — instant rug pull analysis | | `web3/10-meme-coin-bugs.md

    View evidence
  4. v3.0.0 — Bionic Hunter: Autonomous Mode + MCP Integrations

    Github ReleaseSource verified

    Bionic Hunter Release Transforms Claude Bug Bounty from a knowledge-only tool into a bionic hacker -- AI that sees your traffic, remembers past hunts, fetches real-time intel, and runs autonomous hunt loops. New Features Autonomous Hunt Loop (/autopilot) - 7-step loop: scope, recon, rank, hunt, validate, report, checkpoint - 3 modes: --paranoid (stop per finding), --normal (batch), --yolo (minimal checkpoints) - Circuit breaker stops hammering hosts after consecutive failures - Per-host rate limiting (1 req/sec testing, 10 req/sec recon) - Every outbound request logged t

    View evidence
  5. v1.0.0 — Claude Bug Bounty Hunter

    Github ReleaseSource verified

    Initial Release AI-assisted bug bounty hunting with Claude Code — point it at any target and Claude maps the attack surface, runs scanners, validates findings, and writes the HackerOne or Bugcrowd report. What's included - Full recon pipeline — subdomain enum, DNS resolution, live host detection, URL crawling - Vulnerability scanners — IDOR, SSRF, XSS, SQLi, OAuth, GraphQL, LLM injection, race conditions - AI/LLM testing — prompt injection, chatbot IDOR, system prompt extraction - Web3 support — reentrancy, flash loans, access control, signature replay - Claude prompts — ready-to-use pr

    View evidence

Research notes

Written by HEY researchers and reviewed before publishing. Commentary with sources — not the project's own claims, and not evidence of shipping.

No published notes on Agentic Bug Hunter yet.

    Know something about Agentic Bug Hunter? Sign in with GitHub to submit a research note. Notes are reviewed before they appear here.

    Sources

    Contract
    0xfc75…1b360xfc75c2651f96594e458a8ffe34a38fe2c3451b36