Top AI Repos — open-source AI, indexed and scored
Top AI Repos tracks AI repositories on GitHub and answers two different questions about each one: is it moving right now, and would you bet a product on it.
Top AI Repos tracks AI repositories on GitHub and answers two different questions about each one: is it moving right now, and would you bet a product on it.
VULNRΞPO - Free vulnerability report generator and repository, end-to-end encrypted! Templates of issues, CWE,CVE,MITRE ATT&CK,PCI DSS, import Nmap/Nessus/Burp/OpenVAS/Bugcrowd/Trivy, Jira export, TXT/JSON/MARKDOWN/HTML/DOCX, attachments, automatic changelog, stats, vulnerability management, bugbounty, local ai/llm, super fast pentest reporting!
| Date | Stars |
|---|---|
| 2026-07-31 | 569 |
| 2026-08-06 | 571 |
Today
+2 stars today
This week
— stars this week
This month
— stars this month
Momentum
8.0
growth rate 0.00%/day
<div align="center"><img src="/src/assets/logo/vulnrepo_logo.png" width="300"></div> # VULNRΞPO - Vulnerability Report Generator & Repository [](https://www.apache.org/licenses/LICENSE-2.0) [](https://angular.io/) [](https://vulnrepo.com/) [](https://hub.docker.com/r/kac89/vulnrepo) A client-side, privacy-first vulnerability report manager for security professionals. All data is encrypted and stored locally in your browser — nothing is sent to any server by default. **Live app:** https://vulnrepo.com/ | **Dev branch:** https://dev.vulnrepo.com/ **Video walkthrough / Tutorial:** [](https://www.youtube.com/watch?v=cW_kVPtUJbU) --- ## Table of Contents - [Features](#features) - [Security Model](#security-model) - [Supported Import Sources](#supported-import-sources) - [Report Export Formats](#report-export-formats) - [Methodology Tools](#methodology-tools) - [AI / LLM Integration](#ai--llm-integration) - [Getting Started](#getting-started) - [Prerequisites](#prerequisites) - [Development Server](#development-server) - [Production Build](#production-build) - [Docker](#docker) - [Project Structure](#project-structure) - [API Integration](#api-integration) - [Browser Support](#browser-support) - [Contributing](#contributing) - [License](#license) --- ## Features - **Client-side encryption** — reports are encrypted in the browser before storage; no backend required - **Issue templates** — create and reuse custom vulnerability templates; import from CVE, CWE, MITRE ATT&CK, and PCI DSS - **Scanner imports** — import findings directly from popular security tools (see [Supported Import Sources](#supported-import-sources)) - **Multiple export formats** — TXT, HTML, DOCX; generate PDF via browser print - **Encrypted HTML export** — share an AES-encrypted, self-contained HTML report - **File attachments** — attach screenshots, tool output, or any file; SHA-256 checksum is computed automatically - **Changelog** — all significant report changes are versioned and logged automatically - **Issue export** — export issues to SARIF 2.1.0, Atlassian Jira, or as a portable encrypted file - **Report sharing** — share a full encrypted report with collaborators - **Report profiles** — save reusable report configurations (logo, researcher info, theme, CSS) - **Template customization** — edit the HTML report template and CSS directly in the app - **Methodology tools** — built-in checklists for OWASP ASVS 4, PCI DSS 4, and The Bug Hunter's Methodology (TBHM) - **CVE search** — query the NIST NVD database and pull CVE details into your report - **Report history** — automatic versioned snapshots of every save - **Issue merge** — merge duplicate or related issues - **Advanced filter** — filter and search issues by severity, status, tags, CVE, CVSS, and more - **Bug bounty list** — reference list of bug bounty programs - **AI / LLM integration** — connect a local Ollama model for AI-assisted report writing (see [AI / LLM Integration](#ai--llm-integration)) - **Optional backend** — store encrypted reports on your own server via the REST API (see [API Integration](#api-integration)) --- ## Security Model VULNRΞPO uses **browser-native cryptography exclusively**: | Property | Value | |---|---| | Key derivation | PBKDF2-SHA-256, 600,000 iterations | | Encryption | AES-256-GCM (authenticated encryption) | | Salt | 16 bytes, random per encryption | | IV | 12 bytes, random per encryption | | Encrypted data storage | Browser IndexedDB (local machine only by default) | | Decryption key storage | In-memory only — never written to sessionStorage, localStorage, or any persistent medium | | Network | No data leaves the browser unless
Excerpt of 10,527 characters
Read on GitHub940
2
1
1
Would you bet a product on this? Bounded 0–100 and slow moving.
matched fp:d8a60656bb06cc9d, llm:description: 'Free vulnerability report generator and repository, end-to-end encrypted... import Nmap/Nessus/Burp/OpenVAS/... vulnerability management, bugbounty, local ai/llm, pentest reporting'; topics include 'pentesting', 'security', 'vulnerabilities', 'reporting-tool', 'bugbounty', 'owasp', 'nessus', 'trivy'
matched fp:d8a60656bb06cc9d, llm:description: 'Free vulnerability report generator and repository, end-to-end encrypted... import Nmap/Nessus/Burp/OpenVAS/... vulnerability management, bugbounty, local ai/llm, pentest reporting'; topics include 'pentesting', 'security', 'vulnerabilities', 'reporting-tool', 'bugbounty', 'owasp', 'nessus', 'trivy'