the AI pentesting agent for your terminal

RedCell is a terminal-based AI security agent for authorized penetration testing, bug-bounty recon, and vulnerability discovery. Automate reconnaissance, scan for CVEs, and verify exploits - all inside a strictly authorized scope, right from your shell.

curl -fsSL https://redcell.sh/install.sh | sh

Then run redcell login and redcell.

What is RedCell?

RedCell is an AI-powered security agent that runs in your terminal. It automates the full penetration-testing workflow - reconnaissance, attack-surface mapping, vulnerability scanning, and exploit verification - and produces ready-to-deliver reports. Every engagement runs behind a scope-guard, so RedCell only tests systems you're authorized to test.

Powered by

Nvidia — supported by RedCellSupabase — supported by RedCellOpenAI — supported by RedCellTurso — supported by RedCellVercel — supported by RedCellGitHub — supported by RedCellClaude AI — supported by RedCellClerk — supported by RedCell
Nvidia — supported by RedCellSupabase — supported by RedCellOpenAI — supported by RedCellTurso — supported by RedCellVercel — supported by RedCellGitHub — supported by RedCellClaude AI — supported by RedCellClerk — supported by RedCell
Nvidia — supported by RedCellSupabase — supported by RedCellOpenAI — supported by RedCellTurso — supported by RedCellVercel — supported by RedCellGitHub — supported by RedCellClaude AI — supported by RedCellClerk — supported by RedCell
Nvidia — supported by RedCellSupabase — supported by RedCellOpenAI — supported by RedCellTurso — supported by RedCellVercel — supported by RedCellGitHub — supported by RedCellClaude AI — supported by RedCellClerk — supported by RedCell
How you can use RedCell for your own system
Terminal-based AI security agent for authorized penetration testing, bug-bounty recon, and vulnerability discovery.
redcell — bash

What RedCell automates

Automated penetration testing, dark-web OSINT, and attack surface discovery workflows.

Autonomous recon & OSINT

RedCell runs passive OSINT, subdomain enumeration, port scanning, and service fingerprinting automatically. Its structured reconnaissance methodology maps your authorized target's attack surface and tags every finding into the engagement directory.

  • Structured reconnaissance and enumeration methodology via pentest-recon skill
  • Dark-web OSINT: onion search and Tor page scraping via darkweb-osint plugin (requires local Tor daemon)
  • Subdomain discovery, port scanning, and service fingerprinting
  • Evidence collected and tagged by finding into the engagement directory
RedCell terminal running an authorized recon scan with scope-guard confirming authorization for target.com
RedCell automated vulnerability scanning and exploit verification

Automated vulnerability scanning & exploit verification

RedCell scans for known CVEs using web-nuclei templates and verifies each finding with real proof-of-concept checks - inside strict scope-guard authorization. Findings are scored, categorized, and stored locally, ready for reporting.

  • Automated CVE scanning & template-based vulnerability matching via web-nuclei
  • Real-time proof-of-concept verification with strict scope-guard authorization checks
  • Categorized findings logging (exposed API keys, recovered secrets, open ports, and subdomains)
  • Exportable markdown & JSON engagement reports for instant executive or technical delivery

What RedCell automates

RedCell equips your terminal with an intelligent AI security agent for end-to-end vulnerability discovery, recon, and exploit reporting.

Recon

Autonomous recon & OSINT

RedCell runs passive OSINT, subdomain enumeration, port scanning, and service fingerprinting automatically. Its structured reconnaissance methodology maps your authorized target's attack surface and tags every finding into the engagement directory.

CVE Scan

Automated vulnerability scanning & exploit verification

RedCell scans for known CVEs using web-nuclei templates and verifies each finding with real proof-of-concept checks — inside strict scope-guard authorization. Findings are scored, categorized, and stored locally, ready for reporting.

Verification

AI exploit verification

RedCell safely validates vulnerabilities and proof-of-concepts within strictly authorized target scopes, so you confirm what's real and cut false positives.

Tor Proxy

Dark-web OSINT

RedCell searches onion services and checks for exposed credentials tied to your authorized target, via a local Tor proxy integration.

Extensible

Extensible tools & MCP

Connect custom MCP servers, Python exploit scripts, and native security binaries to extend RedCell's workflows.

Safety

Strict scope guardrails

Hardened safety policies keep every action in scope. RedCell confirms authorization and rules of engagement before it runs, and blocks out-of-scope traffic, rate-limit violations, and unwanted impact.

Reporting

Findings & executive reports

RedCell auto-logs evidence, exposed secrets, and verified vulnerabilities into exportable Markdown and JSON — ready for executive or technical delivery.

Frequently asked questions

Find quick answers to common questions about the platform, pricing, and security.

RedCell·Support & Docs

Still have questions?

Explore the CLI guides or reach out to our team for assistance.

RedCell is a terminal-based AI security agent for authorized penetration testing, bug-bounty recon, and vulnerability discovery. It runs in your shell, automates reconnaissance and CVE scanning, and verifies exploits inside strictly authorized target scopes.

Start securing your systems today

Deploy the RedCell terminal security agent and automate authorized recon, vulnerability scanning, and exploit verification in minutes.