nyxstrike — security grade SAFE, quality 63/100

Security audit verdict: SAFE · quality 63/100

No red flags found in any of the 11 categories — no credential harvesting, no data exfiltration, no curl-pipe-shell installer. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →

by CommonHuman-Lab · MCP Server · ★ 149

Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h

🔒 Is nyxstrike safe to install? View the security audit →

About nyxstrike

NyxStrike Previously: Hexstrike AI Community Edition AI-powered offensive security orchestration engine ⚡ From target → recon → exploit chain in minutes ⭐ If NyxStrike improves your workflow, consider starring the repo — it helps others discover it. What is NyxStrike? NyxStrike connects LLM agents to real offensive security tools and executes full attack chains — from recon to exploitation. 🚀 Quick Start (Installation) Get a full offensive security environment running in minutes. Full flag reference: [Wiki — Installation & Flags](https://github.com/CommonHuman-Lab/nyxstrike/wiki/

aibug-bountyctfhexstrikekalimcpnyxstrikeoffensivepentestpentesting

Quick Facts

Stars149
Forks34
LanguagePython
CategoryMCP Server
Quality Score63.2299031792207/100
Open Issues5
Last Updated2026-09-18
Created2026-02-11
Platformsmcp, python
Est. Tokens~14k

Compatible Skills

These tools work well together with nyxstrike for enhanced workflows:

  • communitytools — semantic(0.45)+complementary+rare_topics+same_lang+similar_pop+shared_platform (65%)
  • RedteamAgent — semantic(0.39)+complementary+rare_topics+same_lang+similar_pop+shared_platform (63%)
  • pentest-ai-agents — semantic(0.54)+complementary+rare_topics+similar_pop (63%)
  • EVA — semantic(0.34)+complementary+rare_topics+same_lang+similar_pop+shared_platform (61%)

nyxstrike alternative? Top 6 similar tools

Looking for a nyxstrike alternative? If you're comparing nyxstrike with other mcp server tools, these 6 projects are the closest alternatives on Agent Skills Hub — ranked by topic overlap, star count, and community traction.

  • h1-brain by PatrikFehrenbach · ⭐ 333

    MCP server that connects AI assistants to HackerOne for bug bounty hunting

  • h5i by h5i-dev · ⭐ 652

    An agent-native red-teaming workspace with a fast browser, direct HTTP traffic control, sandboxed execution, a

  • watchtower by fzn0x · ⭐ 205

    Watchtower is a simple AI-powered penetration testing automation CLI tool that leverages LLMs and LangGraph to

  • agentseal by AgentSeal · ⭐ 156

    Security toolkit for AI agents. Scan your machine for dangerous skills and MCP configs, monitor for supply cha

  • tengu by rfunix · ⭐ 58

    AI-powered penetration testing MCP server

  • awesome-mcp-security by Puliczek · ⭐ 726

    🔥🔒 Awesome MCP (Model Context Protocol) Security 🖥️

More MCP Server Tools

Explore other popular mcp server tools:

View all MCP Server tools →

Popular Python Agent Tools

Frequently Asked Questions

What is nyxstrike?

nyxstrike is AI Powered penetration testing Platform for offensive security research. It is categorized as a MCP Server with 149 GitHub stars.

What programming language is nyxstrike written in?

nyxstrike is primarily written in Python. It covers topics such as ai, bug-bounty, ctf.

How do I install or use nyxstrike?

You can find installation instructions and usage details in the nyxstrike GitHub repository at github.com/CommonHuman-Lab/nyxstrike. The project has 149 stars and 34 forks, indicating an active community.

What are the best alternatives to nyxstrike?

The top alternatives to nyxstrike on Agent Skills Hub include h1-brain, h5i, watchtower. Each offers a different approach to the same problem space — compare them side-by-side by stars, quality score, and community activity.

How this security grade is produced

Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.

The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.

Sources & who's responsible:

View on GitHub → Browse MCP Server tools