Portfolio

damn-vulnerable-ai-agent

opena2a-org

GitHub

A deliberately vulnerable AI agent platform for security testing and education. Like DVWA but for AI agents.

Last commit
2w ago
Branch
fix/dvaa-readme-docker-tag-and-7014-mapping
Language
JavaScript
Stars
47
Commits (30d)
21
Open issues
0
Open PRs
0
Working tree
clean

Linked todos (0)

No todos linked to this repo.

Recent commits

docs: wire attack-to-defense funnel + add real RAGBot-AIM A/B demo GIF
2w ago
fix(docs,test): correct docker tag, expose 7014-7016, reconcile 17-agent count
2w ago
ci: opt release.yml into Node 24 for v4-line actions (#50)
3w ago
Merge pull request #49 from opena2a-org/fix/dvaa-0.9.1-papercuts
3w ago
Merge pull request #48 from opena2a-org/chore/release-0.9.0
3w ago
chore(release): 0.9.1 — drain 0.9.0 known-issues
3w ago
chore(release): 0.9.0
3w ago
Merge pull request #47 from opena2a-org/feat/research-agent-llm-mode
3w ago
Merge pull request #46 from opena2a-org/docs/demo-build-agnostic-language
3w ago
fix(chat,narration): harden --llm override + surface LLM fallback errors
3w ago
feat: LLM-mode narration for the research agents (dvaa chat --llm)
3w ago
fix(chat): refuse --llm against non-loopback host without explicit opt-in
3w ago
docs: agnostic language in DEMO_BUILD.md
3w ago
feat: interactive research-agent demo (dvaa chat) + SSRF guard (#45)
3w ago
Update AIM enforcement details in DEMO_BUILD.md
3w ago
feat: add cloud-mode AIM reporter for live dashboard view (#44)
3w ago
docs: add STATUS.md (reference-only) and status badge (#43)
3w ago
Add AIM-secured 15th agent and dvaa demo aim-ab runner (#42)
3w ago
fix(cli): resolve hackmyagent across all npm install layouts (#41)
1mo ago
chore(release): bump version to 0.8.3 (#40)
1mo ago
fix(telemetry): treat exit 1 as success (attack demo ran ≠ failure) (#39)
1mo ago
fix(telemetry): await flush() before process.exit so subcommand events land (#38)
1mo ago
feat(0.8.1): wire @opena2a/telemetry — first canary integration (#37)
1mo ago
fix(ux): retired Claude model, kill-chain offline mode, disabled textarea, tutor markdown, + release-smoke checklist (#36)
1mo ago
feat(v0.8.0)!: port move 3000→7000, dashboard-initiated HMA scans, dvaa CLI (#35)
1mo ago