bitf4rmer/TurboPentest AI Pentest

Run an automated AI penetration test against your web application

View on GitHub

Trust Signals

Scorecard Score
not yet scored
Maintenance Recency
Activelast commit Mar 9, 2026
License
MIT

Pinned Snippet

workflow.ymlSHA-pinned
uses: bitf4rmer/turbopentest-action@69f5c8e8ffb8e0d6172d8c8bdd6adb18ad358617 # v1.0.2

tags can be moved; commit SHAs can't. why a SHA?

namedescriptionrequireddefault
target-urlThe URL to pentest (e.g. https://your-app.com)yes
api-keyYour TurboPentest API keyyes
repo-urlOptional GitHub repo URL for white box pentestingno
wait-for-resultsWait for scan to complete and output results (true/false)nofalse
max-waitMaximum time in seconds to wait for results (default: 7200)no7200
api-base-urlTurboPentest API base URL (override for testing)nohttps://turbopentest.com
namedescription
pentest-idThe ID of the created pentest
pentest-urlURL to view the pentest results
statusFinal pentest status (if wait-for-results is true)