

Xalgorix
Xalgorix is an Apache-2.0 open-source autonomous AI pentester for web applications and source repositories. It runs a structured 22-phase methodology, orchestrates security tools and browser-assisted testing, then sends candidate findings to an independent verifier that attempts...
Cost / License
- Freemium (Subscription)
- Open Source (Apache-2.0)
Application types
Platforms
- Online
- Self-Hosted
- Software as a Service (SaaS)
- Docker
Features
- Command line interface
- Penetration Testing
- Security Testing
Xalgorix News & Activities
Recent activities
- Krishna-Kumar added Xalgorix
- POX updated Xalgorix
Krishna-Kumar added Xalgorix as alternative to Zed Attack Proxy (ZAP), Burp Suite, Lonkero and Novee Security
Xalgorix information
What is Xalgorix?
Xalgorix is an Apache-2.0 open-source autonomous AI pentester for web applications and source repositories. It runs a structured 22-phase methodology, orchestrates security tools and browser-assisted testing, then sends candidate findings to an independent verifier that attempts to re-exploit them before reporting. The self-hosted CLI and local dashboard support bring-your-own LLM providers, live scan visibility, evidence-backed remediation, and PDF reports. An optional hosted service adds managed scans, schedules, CI gating, shared workspaces, and GitHub pull-request reviews.





