VulnHunter is an open-source CLI tool that scans software dependencies for vulnerabilities and secrets, providing AI-powered triage to help DevSecOps teams prioritize issues. It supports offline operation, SARIF output, and SBOM integration, making it suitable for secure environments.
In the Application security & vulnerability scanning space, VulnHunter takes a focused approach. It focuses on detecting and triaging vulnerabilities and secrets in software dependencies offline. It is built as an open-source project for devsecops engineers. VulnHunter is open source under the MIT license. It ships for the command line.
It is developed by DevGreick, and it first shipped in 2025. Development happens publicly on GitHub with 49 commits in the last 90 days. Key capabilities include offline scanning, AI triage, and dependency analysis.
Summary written by a language model from the project’s public pages.
What PulseGate has recorded for this listing
Closest matches by what these projects do