Introduction
GITEST is an autonomous pentest orchestration framework built on top of the OpenCode agent architecture. With 251+ playbooks, 18 intelligence layers, 109 integrated tools, and the GiDom domain recon companion, it enables security researchers to conduct structured, automated penetration testing.
Why GITEST?
- Multi-Phase Pipeline — 15+ automated phases from reconnaissance to post-exploitation and reporting
- 251+ Skill Playbooks — Targeted playbooks for every vulnerability class, framework, protocol, and CTF category
- 18 Intelligence Layers — JSON-based runtime knowledge base for CVE correlation, WAF signatures, and attack chains
- 109 Tools Catalog — From subfinder to Sliver C2, everything integrated into a single framework
- GiDom Bridge — Fast domain recon + auth engine that feeds pre-discovered targets and auth sessions into GITEST
- CVSS v3.1 Scoring — Every finding scored with industry-standard metrics
- OpenCode Native — Built specifically for the OpenCode agent architecture
Who Is GITEST For?
| Segment | Benefit |
|---|---|
| Pentesters & Security Researchers | Automate pentest workflows with AI/agent orchestration |
| CTF Players | Dedicated playbooks for every CTF category |
| Red Team Practitioners | Orchestration layer for red teaming engagements |
| Security Students | Structured playbook references for learning |
| OpenCode Users | Extend OpenCode capability to penetration testing |
License
GITEST is released under the GPL-3.0 license.