This package contains the complete engineering blueprint for an AI-native web security research platform combining browser intelligence, interception, source analysis, runtime observation, security patterns, an application digital twin, knowledge graph, evidence-backed detection, agent orchestration, controlled validation, and a security IDE.
Understand the application before testing the application.
Core flow:
Observe → Normalize → Correlate → Model → Detect → Hypothesize → Validate → Evidence → Finding
- 0.1 — Security Observer: Proxy + Browser + Discovery + Traffic + Source + Runtime
- 0.5 — Security Intelligence: Source/Runtime/Traffic Graphs + Digital Twin + Detection + Evidence + Knowledge Graph
- 1.0 — Security Research OS: Agents + Hypothesis Engine + Controlled Validation + IDE + Plugins + CLI + CI/CD
Designed for authorized security testing. Enforce explicit target scope, permissions, rate limits, audit logging, and controlled validation throughout the platform.
- Foundation
- Schemas
- Event System
- Scope
- Rust Proxy
- Browser Runtime
- Discovery
- Source Intelligence
- Correlation
- Security IR
- Pattern Engine
- Detection
- Evidence
- Digital Twin
- Knowledge Graph
- Agent Runtime
- Security Agents
- Hypothesis Engine
- Controlled Validation
- Findings Intelligence
- Security IDE
- Plugins
- CLI
- CI/CD
- Continuous Security
- Hardening