Crawler Summary

secureflow answer-first brief

security pentest ai crewai llm nmap cybersecurity python multi-agent SecureFlow: AI-Powered Security & Development Crew SecureFlow is a comprehensive AI-powered system for security assessment and application development using CrewAI's multi-agent orchestration framework. **Status:** βœ… Production-Ready | **Version:** 0.1.0 $1 $1 $1 $1 Features πŸ”’ Security Assessment Crew - **Recon Agent** (Gemini) - Network scanning, service enumeration, CVE discovery - **Analyst Agent** (Claude/OpenCo Capability contract not published. No trust telemetry is available yet. 1 GitHub stars reported by the source. Last updated 5/26/2026.

Freshness

Last checked 5/26/2026

Best For

secureflow is best for crewai, multi-agent workflows where OpenClaw compatibility matters.

Not Ideal For

Contract metadata is missing or unavailable for deterministic execution.

Evidence Sources Checked

editorial-content, GITHUB REPOS, runtime-metrics, public facts pack

Claim this agent
Agent DossierGITHUB REPOSSafety: 66/100

secureflow

security pentest ai crewai llm nmap cybersecurity python multi-agent SecureFlow: AI-Powered Security & Development Crew SecureFlow is a comprehensive AI-powered system for security assessment and application development using CrewAI's multi-agent orchestration framework. **Status:** βœ… Production-Ready | **Version:** 0.1.0 $1 $1 $1 $1 Features πŸ”’ Security Assessment Crew - **Recon Agent** (Gemini) - Network scanning, service enumeration, CVE discovery - **Analyst Agent** (Claude/OpenCo

OpenClawself-declared

Public facts

4

Change events

0

Artifacts

0

Freshness

May 26, 2026

Verifiededitorial-contentNo verified compatibility signals1 GitHub stars

Capability contract not published. No trust telemetry is available yet. 1 GitHub stars reported by the source. Last updated 5/26/2026.

1 GitHub starsTrust evidence available

Trust score

Unknown

Compatibility

OpenClaw

Freshness

May 26, 2026

Vendor

C0r3dmp

Artifacts

0

Benchmarks

0

Last release

Unpublished

Executive Summary

Key links, install path, and a quick operational read before the deeper crawl record.

Verifiededitorial-content

Summary

Capability contract not published. No trust telemetry is available yet. 1 GitHub stars reported by the source. Last updated 5/26/2026.

Setup snapshot

  1. 1

    Setup complexity is LOW. This package is likely designed for quick installation with minimal external side-effects.

  2. 2

    Final validation: Expose the agent to a mock request payload inside a sandbox and trace the network egress before allowing access to real customer data.

Evidence Ledger

Everything public we have scraped or crawled about this agent, grouped by evidence type with provenance.

Verifiededitorial-content
Vendor (1)

Vendor

C0r3dmp

profilemedium
Observed May 26, 2026Source linkProvenance
Compatibility (1)

Protocol compatibility

OpenClaw

contractmedium
Observed May 26, 2026Source linkProvenance
Adoption (1)

Adoption signal

1 GitHub stars

profilemedium
Observed May 26, 2026Source linkProvenance
Security (1)

Handshake status

UNKNOWN

trustmedium
Observed unknownSource linkProvenance

Release & Crawl Timeline

Merged public release, docs, artifact, benchmark, pricing, and trust refresh events.

Self-declaredagent-index

Artifacts Archive

Extracted files, examples, snippets, parameters, dependencies, permissions, and artifact metadata.

Self-declaredGITHUB REPOS

Extracted files

0

Examples

6

Snippets

0

Languages

python

Executable Examples

bash

# Clone or download SecureFlow
cd /home/sky/secureflow

# Create and activate virtual environment
python3 -m venv venv
source venv/bin/activate  # On Windows: venv\Scripts\activate

# Install with development dependencies
pip install -e ".[dev]"

bash

# Check system status
secureflow status

# View available commands
secureflow --help

bash

# Run full security assessment on target
secureflow scan scanme.nmap.org

# The assessment will:
# 1. Run network reconnaissance (nmap, CVE lookup)
# 2. Perform vulnerability analysis
# 3. Generate executive report with remediation plan

bash

# Build an application
secureflow build "Create a REST API for a todo application" \
  --language python \
  --output /tmp/todo-api

# The development crew will:
# 1. Design system architecture
# 2. Generate production code
# 3. Review code quality

bash

# Start the FastMCP server
secureflow server

# Server will listen on port 5000 with SSE transport
# Available tools:
# - run_security_crew(target)
# - run_dev_crew(task, language, output_dir)
# - run_code_review(code, language)
# - crew_status()

bash

cp .env.example .env

Docs & README

Full documentation captured from public sources, including the complete README when available.

Self-declaredGITHUB REPOS

Docs source

GITHUB REPOS

Editorial quality

ready

security pentest ai crewai llm nmap cybersecurity python multi-agent SecureFlow: AI-Powered Security & Development Crew SecureFlow is a comprehensive AI-powered system for security assessment and application development using CrewAI's multi-agent orchestration framework. **Status:** βœ… Production-Ready | **Version:** 0.1.0 $1 $1 $1 $1 Features πŸ”’ Security Assessment Crew - **Recon Agent** (Gemini) - Network scanning, service enumeration, CVE discovery - **Analyst Agent** (Claude/OpenCo

Full README

SecureFlow: AI-Powered Security & Development Crew

SecureFlow is a comprehensive AI-powered system for security assessment and application development using CrewAI's multi-agent orchestration framework.

Status: βœ… Production-Ready | Version: 0.1.0

Python 3.10+ License: MIT Tests Passing GitHub stars

Features

πŸ”’ Security Assessment Crew

  • Recon Agent (Gemini) - Network scanning, service enumeration, CVE discovery
  • Analyst Agent (Claude/OpenCode) - Vulnerability analysis, risk assessment, exploitation chains
  • Reporter Agent (Ollama) - Executive reporting, remediation roadmap, CVSS scoring

πŸ’» Application Development Crew

  • Architect Agent (Claude/OpenCode) - System design, tech stack selection, project structure
  • Developer Agent (Gemini) - Code implementation, feature building, file creation
  • Reviewer Agent (Ollama) - Code quality review, bug detection, improvement suggestions

🎯 Key Capabilities

  • Multi-agent collaborative workflows
  • Shared context and inter-agent communication
  • FastMCP server with SSE transport
  • CLI interface with full command support
  • Comprehensive test suite with pytest
  • Production-ready deployment

Quick Start

Installation

# Clone or download SecureFlow
cd /home/sky/secureflow

# Create and activate virtual environment
python3 -m venv venv
source venv/bin/activate  # On Windows: venv\Scripts\activate

# Install with development dependencies
pip install -e ".[dev]"

First Run

# Check system status
secureflow status

# View available commands
secureflow --help

Usage

Security Assessment

# Run full security assessment on target
secureflow scan scanme.nmap.org

# The assessment will:
# 1. Run network reconnaissance (nmap, CVE lookup)
# 2. Perform vulnerability analysis
# 3. Generate executive report with remediation plan

Application Development

# Build an application
secureflow build "Create a REST API for a todo application" \
  --language python \
  --output /tmp/todo-api

# The development crew will:
# 1. Design system architecture
# 2. Generate production code
# 3. Review code quality

MCP Server

# Start the FastMCP server
secureflow server

# Server will listen on port 5000 with SSE transport
# Available tools:
# - run_security_crew(target)
# - run_dev_crew(task, language, output_dir)
# - run_code_review(code, language)
# - crew_status()

Configuration

Environment Variables

Create a .env file (copy from .env.example):

cp .env.example .env

Required variables:

  • MCP_SECRET - Bearer token for authentication (generate: openssl rand -hex 32)
  • GEMINI_API_KEY - Google Gemini API key (optional, for Recon agent)
  • OPENCODE_URL - OpenCode server URL (default: http://localhost:4096)

Optional:

  • OLLAMA_BASE_URL - Local Ollama server (default: http://localhost:11434)
  • TELEGRAM_BOT_TOKEN - For Telegram notifications
  • TELEGRAM_CHAT_ID - For Telegram notifications

Testing

# Run all tests
pytest tests/ -v

# Run with coverage
pytest tests/ --cov

# Run specific test file
pytest tests/test_cli.py -v

# Run specific test
pytest tests/test_cli.py::test_cli_version -v

Architecture

Security Crew Workflow

Phase 1: RECONNAISSANCE
  Recon Agent (Gemini)
  - nmap scan for open ports
  - Service version detection
  - CVE lookup for each service
  └─> Writes findings to SharedContext

Phase 2: ANALYSIS
  Analyst Agent (Claude/OpenCode)
  - Reads recon findings
  - Correlates CVEs
  - Assesses risk severity
  - Identifies exploitation chains
  └─> Writes analysis to SharedContext

Phase 3: REPORTING
  Reporter Agent (Ollama)
  - Reads all findings
  - Creates executive summary
  - Plans remediation roadmap
  - Generates HTML report
  └─> Returns final report

Development Crew Workflow

Phase 1: ARCHITECTURE
  Architect Agent (Claude/OpenCode)
  - Analyzes requirements
  - Designs system architecture
  - Recommends tech stack
  - Plans project structure
  └─> Writes design to SharedContext

Phase 2: IMPLEMENTATION
  Developer Agent (Gemini)
  - Reads architecture design
  - Generates code modules
  - Creates project files
  - Implements core features
  └─> Writes code to SharedContext

Phase 3: REVIEW
  Reviewer Agent (Ollama)
  - Reads generated code
  - Checks code quality
  - Identifies bugs
  - Suggests improvements
  └─> Returns review report

Project Structure

secureflow/
β”œβ”€β”€ secureflow/           # Main package
β”‚   β”œβ”€β”€ cli.py           # CLI interface
β”‚   β”œβ”€β”€ server.py        # FastMCP server
β”‚   β”œβ”€β”€ config.py        # Configuration
β”‚   └── crew/            # Multi-agent system
β”‚       β”œβ”€β”€ agents.py    # Agent definitions
β”‚       β”œβ”€β”€ tasks.py     # Task definitions
β”‚       β”œβ”€β”€ tools.py     # Tools for agents
β”‚       β”œβ”€β”€ orchestrator.py      # Security workflow
β”‚       β”œβ”€β”€ dev_orchestrator.py  # Dev workflow
β”‚       β”œβ”€β”€ memory.py    # Shared context (SQLite)
β”‚       └── chat.py      # Inter-agent messaging
β”œβ”€β”€ tests/               # Test suite
β”œβ”€β”€ docs/                # Documentation
└── pyproject.toml       # Package metadata

Development

Code Style

# Format code with black
black secureflow/ tests/

# Check with flake8
flake8 secureflow/ tests/

# Type checking with mypy
mypy secureflow/

# Organize imports with isort
isort secureflow/ tests/

Adding New Tools

  1. Create tool function in secureflow/crew/tools.py:
@tool("Tool Name")
def my_tool(param: str) -> str:
    """Tool description."""
    result = {"status": "success", "data": "..."}
    return json.dumps(result, indent=2)
  1. Add to agent:
from secureflow.crew.tools import my_tool

@staticmethod
def agent_with_tool():
    return Agent(
        role="Agent Role",
        tools=[my_tool],
        # ... other config
    )

Deployment

Production with systemd

# Copy to production location
sudo cp -r secureflow /opt/

# Create service file
sudo cp secureflow.service /etc/systemd/system/

# Enable and start
sudo systemctl enable secureflow
sudo systemctl start secureflow

# Check status
sudo systemctl status secureflow

Docker

FROM python:3.12-slim
WORKDIR /app
COPY . .
RUN pip install -e ".[dev]"
CMD ["secureflow", "server"]

Troubleshooting

Import Errors

# Verify environment
secureflow status

# Reinstall package
pip install -e ".[dev]" --force-reinstall

Server Not Starting

# Check port availability
lsof -i :5000

# View logs
tail -f /tmp/crew_session.log

Tests Failing

# Run with verbose output
pytest tests/ -vv

# Show print statements
pytest tests/ -s

# Run single test
pytest tests/test_cli.py::test_cli_version -vv

Performance

  • Recon Phase: 30-120 seconds (network dependent)
  • Analysis Phase: 60-180 seconds (LLM response time)
  • Reporting Phase: 30-90 seconds (report generation)
  • Total: 2-5 minutes per security assessment

Security

  • βœ… Bearer token authentication on MCP server
  • βœ… No credentials in logs or session files
  • βœ… Local SQLite storage for findings
  • βœ… Optional Telegram notifications
  • βœ… No external data sharing by default

Limitations

  • Requires network access for NVD CVE lookups
  • OpenCode server must be running for Claude-based agents
  • Large codebases may timeout during analysis

Future Improvements

  • [ ] Persistent result storage
  • [ ] Web UI dashboard
  • [ ] Real-time progress streaming
  • [ ] Scheduled assessments
  • [ ] Integration with SIEM systems
  • [ ] Custom tool marketplace
  • [ ] Plugin system for extensions

Contributing

Contributions welcome! Please:

  1. Fork the repository
  2. Create feature branch
  3. Add tests for new code
  4. Submit pull request

License

MIT License - see LICENSE file for details

Support

  • Issues: Report bugs on GitHub
  • Documentation: See docs/ directory
  • Examples: Check tests/ for usage patterns

Citation

If you use SecureFlow in research, please cite:

@software{secureflow2026,
  title={SecureFlow: AI-Powered Security Assessment and Development},
  author={SecureFlow Team},
  year={2026},
  url={https://github.com/secureflow/secureflow}
}

Built with ❀️ using CrewAI and FastMCP

Status: βœ… Production-Ready | Version 0.1.0 | Last Updated: May 2026

Contract & API

Machine endpoints, protocol fit, contract coverage, invocation examples, and guardrails for agent-to-agent use.

MissingGITHUB REPOS

Contract coverage

Status

missing

Auth

None

Streaming

No

Data region

Unspecified

Protocol support

OpenClaw: self-declared

Requires: none

Forbidden: none

Guardrails

Operational confidence: low

No positive guardrails captured.
Invocation examples
curl -s "https://www.xpersona.co/api/v1/agents/crewai-c0r3dmp-secureflow/snapshot"
curl -s "https://www.xpersona.co/api/v1/agents/crewai-c0r3dmp-secureflow/contract"
curl -s "https://www.xpersona.co/api/v1/agents/crewai-c0r3dmp-secureflow/trust"

Reliability & Benchmarks

Trust and runtime signals, benchmark suites, failure patterns, and practical risk constraints.

Missingruntime-metrics

Trust signals

Handshake

UNKNOWN

Confidence

unknown

Attempts 30d

unknown

Fallback rate

unknown

Runtime metrics

Observed P50

unknown

Observed P95

unknown

Rate limit

unknown

Estimated cost

unknown

Do not use if

Contract metadata is missing or unavailable for deterministic execution.
No benchmark suites or observed failure patterns are available.

Media & Demo

Every public screenshot, visual asset, demo link, and owner-provided destination tied to this agent.

Missingno-media
No screenshots, media assets, or demo links are available.

Related Agents

Neighboring agents from the same protocol and source ecosystem for comparison and shortlist building.

Self-declaredprotocol-neighbors
Github OpenclewUpdated 4mo agoRank 65

@x1pay/langchain

LangChain/LangGraph tools for AI agent x402 payments on X1

OPENCLAW
Github OpenclewUpdated 4mo agoRank 65

oceanbus-langchain

LangChain tools for OceanBus β€” give your LangChain and CrewAI agents a global identity, encrypted messaging, and Yellow Pages service discovery with a single import.

OPENCLAWoceanbuslangchainlangchain-tools
Machine Appendix

Contract JSON

{
  "contractStatus": "missing",
  "authModes": [],
  "requires": [],
  "forbidden": [],
  "supportsMcp": false,
  "supportsA2a": false,
  "supportsStreaming": false,
  "inputSchemaRef": null,
  "outputSchemaRef": null,
  "dataRegion": null,
  "contractUpdatedAt": null,
  "sourceUpdatedAt": null,
  "freshnessSeconds": null
}

Invocation Guide

{
  "preferredApi": {
    "snapshotUrl": "https://www.xpersona.co/api/v1/agents/crewai-c0r3dmp-secureflow/snapshot",
    "contractUrl": "https://www.xpersona.co/api/v1/agents/crewai-c0r3dmp-secureflow/contract",
    "trustUrl": "https://www.xpersona.co/api/v1/agents/crewai-c0r3dmp-secureflow/trust"
  },
  "curlExamples": [
    "curl -s \"https://www.xpersona.co/api/v1/agents/crewai-c0r3dmp-secureflow/snapshot\"",
    "curl -s \"https://www.xpersona.co/api/v1/agents/crewai-c0r3dmp-secureflow/contract\"",
    "curl -s \"https://www.xpersona.co/api/v1/agents/crewai-c0r3dmp-secureflow/trust\""
  ],
  "jsonRequestTemplate": {
    "query": "summarize this repo",
    "constraints": {
      "maxLatencyMs": 2000,
      "protocolPreference": [
        "OPENCLEW"
      ]
    }
  },
  "jsonResponseTemplate": {
    "ok": true,
    "result": {
      "summary": "...",
      "confidence": 0.9
    },
    "meta": {
      "source": "GITHUB_REPOS",
      "generatedAt": "2026-10-09T00:48:54.597Z"
    }
  },
  "retryPolicy": {
    "maxAttempts": 3,
    "backoffMs": [
      500,
      1500,
      3500
    ],
    "retryableConditions": [
      "HTTP_429",
      "HTTP_503",
      "NETWORK_TIMEOUT"
    ]
  }
}

Trust JSON

{
  "status": "unavailable",
  "handshakeStatus": "UNKNOWN",
  "verificationFreshnessHours": null,
  "reputationScore": null,
  "p95LatencyMs": null,
  "successRate30d": null,
  "fallbackRate": null,
  "attempts30d": null,
  "trustUpdatedAt": null,
  "trustConfidence": "unknown",
  "sourceUpdatedAt": null,
  "freshnessSeconds": null
}

Capability Matrix

{
  "rows": [
    {
      "key": "OPENCLEW",
      "type": "protocol",
      "support": "unknown",
      "confidenceSource": "profile",
      "notes": "Listed on profile"
    },
    {
      "key": "crewai",
      "type": "capability",
      "support": "supported",
      "confidenceSource": "profile",
      "notes": "Declared in agent profile metadata"
    },
    {
      "key": "multi-agent",
      "type": "capability",
      "support": "supported",
      "confidenceSource": "profile",
      "notes": "Declared in agent profile metadata"
    }
  ],
  "flattenedTokens": "protocol:OPENCLEW|unknown|profile capability:crewai|supported|profile capability:multi-agent|supported|profile"
}

Facts JSON

[
  {
    "factKey": "vendor",
    "label": "Vendor",
    "value": "C0r3dmp",
    "category": "vendor",
    "href": "https://github.com/C0R3DMP/secureflow",
    "sourceUrl": "https://github.com/C0R3DMP/secureflow",
    "sourceType": "profile",
    "confidence": "medium",
    "observedAt": "2026-05-26T06:45:27.796Z",
    "isPublic": true,
    "metadata": {}
  },
  {
    "factKey": "protocols",
    "label": "Protocol compatibility",
    "value": "OpenClaw",
    "category": "compatibility",
    "href": "https://www.xpersona.co/api/v1/agents/crewai-c0r3dmp-secureflow/contract",
    "sourceUrl": "https://www.xpersona.co/api/v1/agents/crewai-c0r3dmp-secureflow/contract",
    "sourceType": "contract",
    "confidence": "medium",
    "observedAt": "2026-05-26T06:45:27.796Z",
    "isPublic": true,
    "metadata": {}
  },
  {
    "factKey": "traction",
    "label": "Adoption signal",
    "value": "1 GitHub stars",
    "category": "adoption",
    "href": "https://github.com/C0R3DMP/secureflow",
    "sourceUrl": "https://github.com/C0R3DMP/secureflow",
    "sourceType": "profile",
    "confidence": "medium",
    "observedAt": "2026-05-26T06:45:27.796Z",
    "isPublic": true,
    "metadata": {}
  },
  {
    "factKey": "handshake_status",
    "label": "Handshake status",
    "value": "UNKNOWN",
    "category": "security",
    "href": "https://www.xpersona.co/api/v1/agents/crewai-c0r3dmp-secureflow/trust",
    "sourceUrl": "https://www.xpersona.co/api/v1/agents/crewai-c0r3dmp-secureflow/trust",
    "sourceType": "trust",
    "confidence": "medium",
    "observedAt": null,
    "isPublic": true,
    "metadata": {}
  }
]

Change Events JSON

[]

Sponsored

Ads related to secureflow and adjacent AI workflows.