PenPeeper is an open source pentesting engagement management system for security professionals. It is built around a workflow that runs from reconnaissance to final report delivery, and its page describes it as a way to simplify pentesting and make report generation easier.
Its feature set centers on vulnerability hunting, automated scanning, and reporting. PenPeeper combines local and external LLM integrations for automated vulnerability hunting, evidence gathering, and generating professional recommendations. It supports LM Studio, Ollama, OpenRouter, Claude, Gemini, ChatGPT, and custom providers. Built-in automation covers Nmap, Nikto, SearchSploit, WhatWeb, Enum4Linux, FFUF, and SNMP, with scans parsed and summarized automatically. It also connects directly to the National Vulnerability Database to pull CVE information and populate vulnerability details for confirmed findings. For organization, it offers filtering across devices, device tagging for custom grouping, import of scans from other tools, quick keyword search, and the ability to assign vulnerability categories and subcategories. Reporting features include polished PDF reports, AI-assisted executive summaries, a built-in rich text editor, custom vulnerability classifications, and multiple graphic templates. It also supports managing multiple engagements and clients at the same time, with export and import of encrypted projects for sharing with team members.
The workflow is described as left to right and divided into Gather, Search, Findings, and Reports tabs. In the Gather tab, users can add devices or networks and trigger built-in scans, while the Search tab is used to look for more issues by vendor, banner, service, protocol, or FFUF findings. The Findings tab is used to review incomplete findings and complete missing information, and the Report tab generates reports from completed findings only.
PenPeeper is available for Windows, Mac, and Linux. The page identifies it as open source and as a pentesting engagement manager.
PenPeeper is a Security & compliance platforms project. It focuses on streamlining penetration testing workflows with automation and AI-powered vulnerability analysis. PenPeeper is an open-source project aimed at security professionals and pentesters. The project is open source (Open Source). PenPeeper is available on the web, Windows, macOS, and Linux.
PenPeeper first shipped in 2026. The project is developed in the open on GitHub with 17 stars. Among its 8 catalogued features are engagement management, AI vulnerability analysis, and automated scanning. It exposes integrations via a public API.
Summary written by a language model from the project’s public pages.
What PulseGate has recorded for this listing
Closest matches by what these projects do