Browse
→ Code & Dev
→ HuntX
HuntX
Personal FastMCP security-testing server for authorized bug bounty workflows, with tools for recon output, HTTP replay, IDOR and BOLA fuzzing, SQLi, XSS, SSTI, SSRF probes, JWT and OAuth checks, secrets scanning, exposure checks and persistent hunt memory. Scope and rate limits are enforced in code and findings are confidence scored for human review. Public GitHub repository created August 19, 2026.
MCP unverified
Integration
| Transport | stdio |
| Auth | none |
| Endpoint | https://github.com/IAZENT/HuntX |
| Install | git clone https://github.com/IAZENT/HuntX && cd HuntX && uv sync && uv run huntx |
Use Cases
| 01 | Give a local assistant bounded security-testing primitives for an authorized target scope |
| 02 | Replay HTTP requests and fuzz access-control patterns while preserving rate limits and audit context |
| 03 | Store confidence-scored bug bounty findings across sessions for later human triage |
Tags
security bug-bounty recon idor xss sqli secrets-scanning python
Machine-readable: /api/servers.json
· JSON-LD schema embedded in <head>