Skip to content

roeyk/Bywaf

Offensive & Pentesting

A Python‑based interactive commandlet framework for auditable web application and network testing workflows

Python Latest v0.12.2 · 7d ago Security brief →

Features

  • Interactive shell with pipeline‑style commandlets
  • SQLite‑backed durable event, artifact, note, and metadata store
  • Plugin system via @commandlet API with manifest (bywaf.plugin.toml)
  • Chain‑of‑custody evidence handling with SHA‑256 provenance
  • Report‑oriented finding workflows

Recent releases

View all 5 releases →
Review required
v0.11.0 New feature
Auth Dependencies

Internal refactor + plugin security

Weekly OSS security release digest.

The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.

No spam, unsubscribe anytime.

About

Stars
4
Forks
0
Languages
Python Shell

Install & Platforms

Install via
pip

Alternative to

Bash Metasploit Airflow Custom Python scripts

Beta — feedback welcome: [email protected]