Skip to main content

🛡️ AI-Hacking Self-Audit (MVP v0.1)

A non-intrusive, zero-exfiltration personal security self-audit for macOS.

Why

AI-automated attacks now hit individuals, not just enterprises. This tool shows your security score and exactly what to fix — without attacking anything and without sending a single byte off your machine.

Principles

  • Non-intrusive: reads local settings/permissions/git/network only. No exploiting.
  • Zero-exfiltration: 100% local. No network calls (no socket/urllib/requests imports — verify it yourself).
  • No value leakage: secret values are never recorded — only their location.
  • Zero dependencies: Python standard library only → easy single-binary / pip install.

Install & run

pip install ai-hacking-defense
ai-hacking-defense     # or: python3 scan.py → security_report.html

Checks: credentials · network · OS hardening · AI-agent risk · backup

License: open-core (free core, paid Pro). Zero-exfil is verifiable in source.

Docs

Feedback becomes releases

ai-hacking-defense feedback builds a masked, fully-previewed report draft — nothing is ever sent automatically; you submit it yourself on GitHub. Issues are collected into a backlog daily and shipped as releases with a public CHANGELOG, so your report visibly becomes the next version.

Platforms (honest note)

macOS: all checks verified. Windows/Linux: experimental — runs, but not yet fully verified.

What's in the package (v0.1.2)

Three stdlib-only command-line tools:

  • ahd-scan (also ai-hacking-defense) — the 5-area security self-audit + HTML report. Zero network.
  • ahd-agent-guard — prompt-injection detector (warn-only, no blocking). Detects 29/30 (96.7%) of a public evasion corpus at 0 false positives in our test. Zero network. echo "<text>" | ahd-agent-guard
  • ahd-threat-feed — refreshes public vulnerability feeds (OSV, CISA KEV, EPSS) to a local cache. GET-only of public databases from a fixed allowlist — none of your data is ever sent.

"Zero-exfiltration" precisely

ahd-scan and ahd-agent-guard make no network calls at all. ahd-threat-feed only downloads public vulnerability data (GET-only, allowlisted hosts) and uploads nothing. In all cases, none of your files, secrets, or data ever leave your machine — that is what zero-exfiltration means here.

Not in the package (internal-only, not advertised)

This package detects and reports. It does not auto-block, run a background dashboard, or hook into your pipelines. "Warn-only" is literal — see each report card's limits.

Reproduce the detection rate yourself

pip install ai-hacking-defense
python3 reproduce_detection.py   # prints detection % and false-positive % on a public evasion corpus

It reports 29/30 = 96.7% detection at 0 false positives on our standard corpus (one honest miss: full letter-spacing — new evasions always exist).

Metadata

Release files for ai-hacking-defense 0.1.3

For a detailed explanation of source distributions (sdists) and built distributions (wheels), please see the package formats documentation.

Source distribution (sdist)

Source distribution for ai-hacking-defense 0.1.3
File Size Uploaded
ai_hacking_defense-0.1.3.tar.gz 44.7 kB Details

Built distribution (wheel)

Table of built distributions (wheels) for ai-hacking-defense 0.1.3
File Interpreter ABI Platform
ai_hacking_defense-0.1.3-py3-none-any.whl Python 3 none any Details

Total release size: 88.9 kB

Release files / ai_hacking_defense-0.1.3.tar.gz

Download URL ai_hacking_defense-0.1.3.tar.gz
Size 44.7 kB
Tags Source
SHA-256 checksum
How to use checksums
1b59ea5fa29eff388befdea0016908c1c588ed3a7e541d40ce8b95a6466b9cde
BLAKE2b-256 checksum
How to use checksums
076e14574f552b55859ea3227e57c51126d42e8c5c4a9e8ede50aa861077ce75
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
No
Uploaded via twine/7.0.0 CPython/3.13.2

Release files / ai_hacking_defense-0.1.3-py3-none-any.whl

Download URL ai_hacking_defense-0.1.3-py3-none-any.whl
Size 44.2 kB
Tags Python 3
SHA-256 checksum
How to use checksums
4a4b46ae0f3993560433d77de846076df46ec1aa17e5fbf81d485ba5954384b6
BLAKE2b-256 checksum
How to use checksums
e4a71701c98fc479771474d9b2c3cfe23efebaf15e5fe5cabd38ae2b56f43150
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
No
Uploaded via twine/7.0.0 CPython/3.13.2

Release history Release notifications | RSS feed

This release

0.1.3 This release

2 release files

0.1.2

2 release files

0.1.1

2 release files

0.1.0

2 release files

Anthropic, PBC Visionary sponsor Bloomberg Visionary sponsor Hudson River Trading Visionary sponsor Meta Visionary sponsor NVIDIA Visionary sponsor Microsoft Sustainability sponsor Depot Continuous Integration AWS Cloud computing and Security Sponsor Datadog Monitoring Fastly CDN Google Download Analytics Sentry Error logging StatusPage Status page