RamiBot v3.8.0 is a local-first AI security operations platform integrating multi-LLM support, a dynamic red/blue team skill pipeline, MCP tool orchestration, Docker terminal access, Tor proxy management, and an auto-integrated Kali-based tool server (rami-kali) for controlled, extensible offensive and defensive workflows
Config is the same across clients — only the file and path differ.
{
"mcpServers": {
"ramibot": {
"command": "<see-readme>",
"args": []
}
}
}Are you the author?
Add this badge to your README to show your security score and help users find safe servers.
RamiBot connects AI reasoning with real cybersecurity tools through a structured operations pipeline.
This server supports HTTP transport. Be the first to test it — help the community know if it works.
Five weighted categories — click any category to see the underlying evidence.
No known CVEs.
No package registry to scan.
Be the first to review
Have you used this server?
Share your experience — it helps other developers decide.
Sign in to write a review.
Others in security
An evil MCP server used for redteam testing
AI-powered reverse engineering assistant that bridges IDA Pro with language models through MCP.
Proof primitive for AI agents on MultiversX. Anchor file hashes on-chain as verifiable proofs.
mcpki-server is the backend infrastructure for https://www.mcpki.org, enabling secure public key management and autonomous certificate handling for large language models (LLMs).
MCP Security Weekly
Get CVE alerts and security updates for Ramibot and similar servers.
Start a conversation
Ask a question, share a tip, or report an issue.
Sign in to join the discussion.
Local-first • Red/Blue Team • MCP-Powered • Docker-Integrated
Execute. Analyze. Harden.
RamiBot connects AI reasoning with real cybersecurity tools through a structured operations pipeline.
🧠 Multi-provider LLM support
OpenAI, Anthropic, OpenRouter, LM Studio, and Ollama
🧠 Skill Pipeline
Structured methodology: Recon → Exploit → Defense → Reporting
🔐 Evidence-Locked Reporting
Prevents hallucinated CVEs, versions, or findings
🧰 Real security tool execution via MCP
Integrates pentesting tools inside controlled environments
🕵️ Rami-Kali MCP server
45+ pentesting tools available to the LLM
🐳 Docker-integrated terminal
Run commands directly inside containerized environments
🛑 Tool Approval Gate
Human approval before executing security tools
📄 One-click PDF report export
Generate structured security reports instantly
A local-first AI chat interface for security operations. Supports multiple LLM providers, real-time streaming, MCP tool integration, a dynamic security skill system, Docker terminal access, Tor transparent proxy management, a persistent findings database, one-click PDF report export, a human-in-the-loop Tool Approval Gate that pauses execution before every MCP tool call, a global Evidence-Locked Reporting system that prevents the model from fabricating versions, CVEs, severity ratings, or security properties not explicitly present in tool output, a dedicated Burp Suite web assessment skill, a response language selector, Hermes tool chaining that detects and executes <tool_call> XML emitted by Llama/Hermes fine-tuned models, zsh shell with syntax highlighting and autosuggestions in the Docker terminal, proxychains4 proxy routing with ready-made Burp and Tor profiles, Service-Bound CVE Correlation that locks every CVE to its exact detected service via CPE data, a CVE Query Lock rule that prevents semantic drift when generating NVD lookup queries after service discovery, OAuth token support for OpenAI (ChatGPT Plus/Pro subscription via Codex CLI) and Anthropic (reserved, pending re-enablement), and one-command install and start scripts (install.sh / install.bat, start.sh / start.bat) that automate the full setup from a fresh system.
AI-Assisted Pentesting Pipeline (Claude 4.5 + Rami-Kali) |