strix-pentest

Orchestrate Claude CLI in a Kali Linux Docker sandbox for automated penetration testing.

23|13|Updated Jan 11, 2026
One-click install
npx skills add https://github.com/tghastings/strix-claude-code --skill strix-pentest
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: strix-pentest
Source: https://github.com/tghastings/strix-claude-code/tree/main
Command: npx skills add https://github.com/tghastings/strix-claude-code --skill strix-pentest

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

Strix Claude Code enables teams to automate AI-assisted security assessments, orchestrating Claude CLI within a Kali Linux sandbox to run penetration tests and generate structured reports.

Core Features & Use Cases

  • TUI dashboard for managing multiple scans
  • Docker/Kali sandbox integration via MCP server for tool access
  • System prompts optimized for security testing and guided sessions
  • Interactive Claude sessions to perform guided pen tests

Quick Start

Launch the TUI dashboard with strix-claude-tui to begin a guided pentest.

Frequently Asked Questions about strix-pentest

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I automate AI-powered penetration testing with Claude?

Automate AI-powered penetration testing by orchestrating Claude CLI inside a Kali Linux Docker sandbox. Strix guides security assessments through an MCP server and system prompts, running automated recon, vulnerability scanning, and reporting for web apps and APIs.

What is the best way to run guided pentests against source code repositories?

Run guided pentests against source code repositories using interactive Claude sessions. Strix launches a TUI dashboard via strix-claude-tui, orchestrating Claude CLI within an isolated Kali sandbox to perform security assessments and generate CVSS-scored vulnerability reports.

Does this automated pentesting workflow require Docker and Kali Linux?

Yes, this automated pentesting workflow requires Docker and Kali Linux. Strix relies on Docker sandbox integration via an MCP server to provide Claude with secure access to standard Kali Linux security testing tools during vulnerability scanning and recon.

Can I use Claude to generate CVSS-scored vulnerability reports for web apps?

Yes, you can use Claude to generate CVSS-scored vulnerability reports for web apps. Strix uses optimized system prompts to guide Claude CLI through security testing, producing structured reports that include CVSS scores for identified vulnerabilities.

How do I manage multiple security scans and assessments in Strix?

Manage multiple security scans and assessments using the built-in TUI dashboard. Launch the interface with strix-claude-tui to begin guided pentests, orchestrate Claude CLI sessions, and track automated recon and vulnerability scanning across different targets.

What are the limitations of using an MCP server for security testing workflows?

The MCP server limits security testing workflows to the tools available within the Kali Linux Docker sandbox. Strix assessments depend on Claude CLI orchestration and system prompts, meaning testing scope is bound by the sandbox environment and automated recon capabilities.