Dark-Moon — security grade SAFE, quality 72/100

Security audit verdict: SAFE · quality 72/100

No red flags found in any of the 11 categories — no credential harvesting, no data exfiltration, no curl-pipe-shell installer. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →

by ASCIT31 · MCP Server · ★ 940

Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h

🔒 Is Dark-Moon safe to install? View the security audit →

About Dark-Moon

The Open-Source AI-Powered Autonomous Penetration Testing Platform Full Documentation · Contributing · License What is DarkMoon? DarkMoon is an automated penetration testing tool that orchestrates complete security assessments using artificial intelligence security agents. Built as an open-source cybersecurity tool, it enables organizations to run professional-grade vulnerability assessments without manual intervention. Instead of replacing the pentester, DarkMoon acts as an autonomous security testing system — it reasons, plans, and coordinates specialized agents that execute real offensive security operations through a controlled execution layer. Watch DarkMoon in action — Full autonomous penetration test demo Why DarkMoon? Traditional penetration testing is: ⏱️ Time-consuming — manual testing takes weeks 💰 Expensive — expert consultants cost thousands per day 🔄 Inconsistent — results var

active-directoryai-agentsai-red-teamai-security-toolautonomous-agentscloud-securityfirmware-securityiot-securitykubernetesllm

Quick Facts

Stars940
Forks158
LanguagePython
CategoryMCP Server
LicenseGPL-3.0
Quality Score71.5080512630968/100
Open Issues2
Last Updated2026-09-16
Created2024-11-26
Platformsbrowser, k8s, mcp, python
Est. Tokens~16k

Compatible Skills

These tools work well together with Dark-Moon for enhanced workflows:

  • red-run — semantic(0.50)+complementary+rare_topics+same_lang+similar_pop+shared_platform (72%)
  • fuzzforge_ai — semantic(0.35)+complementary+rare_topics+same_lang+similar_pop+shared_platform (71%)
  • Claude-BugHunter — semantic(0.42)+complementary+rare_topics+same_lang+similar_pop+shared_platform (69%)
  • offensive-claude — semantic(0.40)+complementary+rare_topics+same_lang+similar_pop+shared_platform (69%)
  • Z3r0 — semantic(0.40)+complementary+rare_topics+same_lang+similar_pop+shared_platform (68%)

Dark-Moon alternative? Top 6 similar tools

Looking for a Dark-Moon alternative? If you're comparing Dark-Moon with other mcp server tools, these 6 projects are the closest alternatives on Agent Skills Hub — ranked by topic overlap, star count, and community traction.

  • pentest-ai-agents by 0xSteph · ⭐ 2.1k

    Turn Claude Code into your offensive security research assistant. Specialized AI subagents for authorized pene

  • CyberStrike by CyberStrikeus · ⭐ 1.9k

    Open-source AI-augmented offensive security harness. 13+ autonomous agents, 150+ LLM providers, 5,300+ models,

  • pentestcode by s0ld13rr · ⭐ 599

    PentestCode - Multi-agent AI penetration testing system with persistent engagement state, strategic coordinati

  • AutoRedTeam-Orchestrator by Coff0xc · ⭐ 263

    MCP-native security automation workbench (SDK + CLI + MCP) — authorized testing + static AI/MCP attack-surface

  • pentest-ai by 0xSteph · ⭐ 1.7k

    Open-source AI pentester that proves every finding. Machine oracles re-run each exploit; verified bugs ship a

  • sre by SmythOS · ⭐ 1.3k

    The SmythOS Runtime Environment (SRE) is an open-source, cloud-native runtime for agentic AI. Secure, modular,

More MCP Server Tools

Explore other popular mcp server tools:

View all MCP Server tools →

Popular Python Agent Tools

Frequently Asked Questions

What is Dark-Moon?

Dark-Moon is Autonomous AI pentesting engine across web, cloud, identity, CI/CD, IaC, databases, Active Directory, Kubernetes, IoT firmware and AI/LLM endpoints (OWASP LLM Top 10). Real exploits with proof for eve. It is categorized as a MCP Server with 940 GitHub stars.

What programming language is Dark-Moon written in?

Dark-Moon is primarily written in Python. It covers topics such as active-directory, ai-agents, ai-red-team.

How do I install or use Dark-Moon?

You can find installation instructions and usage details in the Dark-Moon GitHub repository at github.com/ASCIT31/Dark-Moon. The project has 940 stars and 158 forks, indicating an active community.

What license does Dark-Moon use?

Dark-Moon is released under the GPL-3.0 license, making it free to use and modify according to the license terms.

What are the best alternatives to Dark-Moon?

The top alternatives to Dark-Moon on Agent Skills Hub include pentest-ai-agents, CyberStrike, pentestcode. Each offers a different approach to the same problem space — compare them side-by-side by stars, quality score, and community activity.

How this security grade is produced

Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.

The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.

Sources & who's responsible:

View on GitHub → Browse MCP Server tools