🛡️ AI-Hacking Auto-Defense Scanner (MVP v0.1)
A non-intrusive, zero-exfiltration personal security self-audit for macOS.
Why
AI-automated attacks now hit individuals, not just enterprises. This tool shows your security score and exactly what to fix — without attacking anything and without sending a single byte off your machine.
Principles
- Non-intrusive: reads local settings/permissions/git/network only. No exploiting.
- Zero-exfiltration: 100% local. No network calls (no socket/urllib/requests imports — verify it yourself).
- No value leakage: secret values are never recorded — only their location.
- Zero dependencies: Python standard library only → easy single-binary / pip install.
Install & run
pip install ai-hacking-defense
ai-hacking-defense # or: python3 scan.py → security_report.html
Checks: credentials · network · OS hardening · AI-agent risk · backup
License: open-core (free core, paid Pro). Zero-exfil is verifiable in source.
Docs
Feedback becomes releases
ai-hacking-defense feedback builds a masked, fully-previewed report draft — nothing is ever sent automatically; you submit it yourself on GitHub. Issues are collected into a backlog daily and shipped as releases with a public CHANGELOG, so your report visibly becomes the next version.
Platforms (honest note)
macOS: all checks verified. Windows/Linux: experimental — runs, but not yet fully verified.
What's in the package (v0.1.2)
Three stdlib-only command-line tools:
ahd-scan(alsoai-hacking-defense) — the 5-area security self-audit + HTML report. Zero network.ahd-agent-guard— prompt-injection detector (warn-only, no blocking). Detects 29/30 (96.7%) of a public evasion corpus at 0 false positives in our test. Zero network.echo "<text>" | ahd-agent-guardahd-threat-feed— refreshes public vulnerability feeds (OSV, CISA KEV, EPSS) to a local cache. GET-only of public databases from a fixed allowlist — none of your data is ever sent.
"Zero-exfiltration" precisely
ahd-scan and ahd-agent-guard make no network calls at all. ahd-threat-feed only downloads public vulnerability data (GET-only, allowlisted hosts) and uploads nothing. In all cases, none of your files, secrets, or data ever leave your machine — that is what zero-exfiltration means here.
Not in the package (internal-only, not advertised)
This package detects and reports. It does not auto-block, run a background dashboard, or hook into your pipelines. "Warn-only" is literal — see each report card's limits.
Metadata
Release files for ai-hacking-defense 0.1.2
For a detailed explanation of source distributions (sdists) and built distributions (wheels), please see the package formats documentation.
Source distribution (sdist)
| File | Size | Uploaded | |
|---|---|---|---|
| ai_hacking_defense-0.1.2.tar.gz | 44.4 kB | Details |
Built distribution (wheel)
| File | Interpreter | ABI | Platform | Reset |
|---|---|---|---|---|
| ai_hacking_defense-0.1.2-py3-none-any.whl | Python 3 | none | any | Details |
Total release size: 88.3 kB
Release files / ai_hacking_defense-0.1.2.tar.gz
| Download URL | ai_hacking_defense-0.1.2.tar.gz |
|---|---|
| Size | 44.4 kB |
| Tags | Source |
|
SHA-256 checksum How to use checksums |
110085470ca58f94f96e3fce2942102aad832161606efda65f2bff5cde094ef1
|
|
BLAKE2b-256 checksum How to use checksums |
1b38617bc66bad89c5a12f390c165fd81671ec2ca87db887ced891d7c0d36860
|
| Upload date | |
|
Uploaded using Trusted Publishing? What is trusted publishing? |
No |
| Uploaded via |
twine/7.0.0 CPython/3.13.2
|
Release files / ai_hacking_defense-0.1.2-py3-none-any.whl
| Download URL | ai_hacking_defense-0.1.2-py3-none-any.whl |
|---|---|
| Size | 44.0 kB |
| Tags | Python 3 |
|
SHA-256 checksum How to use checksums |
9074ca59beba763ce10ff3f32a306bde8a6d5b33c04f6e7c053e9567e7b93a3f
|
|
BLAKE2b-256 checksum How to use checksums |
c8403c1c9a6d1c2be1fbaba6493f678a09e00b3d0fc90c3a05170a63dd46e990
|
| Upload date | |
|
Uploaded using Trusted Publishing? What is trusted publishing? |
No |
| Uploaded via |
twine/7.0.0 CPython/3.13.2
|