Agents
Every entry is scored on five trust-gap dimensions and carries a source document for each field. Where a developer does not disclose something, we publish that rather than estimating it.
1714 entries
TOUGH LOVE SECURITY (marketed at agentshield.win) runs a 13-agent autonomous pentesting pipeline covering recon, attack-surface mapping, parallel vulnerability analysis, conditional exploitation, and reporting, with a senior security engineer reviewing every finding before delivery. It targets web applications and REST/GraphQL APIs, deploys locally across x86, ARM64, Android, macOS, and Linux without Docker or a cloud VM, and is sold in flat-fee tiers (Free to $10K+ Enterprise) plus a $29/mo GitHub Action integration, aimed at SaaS, fintech, healthtech, and medical/dental/behavioral-health practices needing HIPAA-related evaluations. Assessments require signed client authorization and are scoped to a written testing agreement; the vendor carries professional liability insurance capped at the engagement fee and retains assessment data for 90 days before deletion. The vendor also discloses a live AI honeypot used to harden its own classifier against adversarial prompts.
gptme is a free, open-source, terminal-based AI agent that runs anywhere a terminal runs, from a laptop to SSH sessions, tmux, headless servers, and CI pipelines. It ships with built-in tools for shell/Python execution, file editing, web browsing, and vision, supports multiple LLM providers (Anthropic, OpenAI, Google, xAI, DeepSeek, OpenRouter, or fully local via llama.cpp) with a swappable -m/--model flag, and has built-in MCP support plus multi-agent/concurrent-agent capability. It can run interactively with per-action confirmation prompts or in a fully non-interactive/autonomous mode (-n flag), and is deployable via pipx/uv, a self-hosted server+web UI, or a desktop app, with community support via Discord.