🛡️ AI-Hacking Self-Audit (MVP v0.1)
A non-intrusive, zero-exfiltration personal security self-audit for macOS.
Why
AI-automated attacks now hit individuals, not just enterprises. This tool shows your security score and exactly what to fix — without attacking anything and without sending a single byte off your machine.
Principles
- Non-intrusive: reads local settings/permissions/git/network only. No exploiting.
- Zero-exfiltration: 100% local. No network calls (no socket/urllib/requests imports — verify it yourself).
- No value leakage: secret values are never recorded — only their location.
- Zero dependencies: Python standard library only → easy single-binary / pip install.
Install & run
pip install ai-hacking-defense
ai-hacking-defense # or: python3 scan.py → security_report.html
Checks: credentials · network · OS hardening · AI-agent risk · backup
License: open-core (free core, paid Pro). Zero-exfil is verifiable in source.
Docs
Feedback becomes releases
ai-hacking-defense feedback builds a masked, fully-previewed report draft — nothing is ever sent automatically; you submit it yourself on GitHub. Issues are collected into a backlog daily and shipped as releases with a public CHANGELOG, so your report visibly becomes the next version.
Platforms (honest note)
macOS: all checks verified. Windows/Linux: experimental — runs, but not yet fully verified.
What's in the package (v0.1.4)
Three stdlib-only command-line tools:
ahd-scan(alsoai-hacking-defense) — the 5-area security self-audit + HTML report. Zero network.ahd-agent-guard— prompt-injection detector (warn-only, no blocking). On a public prompt-injection evasion corpus it detects 29/30 (96.7%) at 0 false positives in our test. This 96.7% is the injection detector's rate on that one corpus — not an overall "defense rate" across every attack type. Zero network.echo "<text>" | ahd-agent-guardahd-threat-feed— refreshes public vulnerability feeds (OSV, CISA KEV, EPSS) to a local cache. GET-only of public databases from a fixed allowlist — none of your data is ever sent.
"Zero-exfiltration" precisely
ahd-scan and ahd-agent-guard make no network calls at all. ahd-threat-feed only downloads public vulnerability data (GET-only, allowlisted hosts) and uploads nothing. In all cases, none of your files, secrets, or data ever leave your machine — that is what zero-exfiltration means here.
Not in the package (internal-only, not advertised)
This package detects and reports. It does not auto-block, run a background dashboard, or hook into your pipelines. "Warn-only" is literal — see each report card's limits.
Reproduce the detection rate yourself
pip install ai-hacking-defense
python3 reproduce_detection.py # prints detection % and false-positive % on a public evasion corpus
It reports 29/30 = 96.7% detection at 0 false positives on our standard prompt-injection corpus (one honest miss: full letter-spacing). Scope note: this measures the prompt-injection detector only; other attack types (credential, vault, network) are measured separately and are lower — not rolled into a single "defense rate."
Metadata
Release files for ai-hacking-defense 0.1.4
For a detailed explanation of source distributions (sdists) and built distributions (wheels), please see the package formats documentation.
Source distribution (sdist)
| File | Size | Uploaded | |
|---|---|---|---|
| ai_hacking_defense-0.1.4.tar.gz | 46.4 kB | Details |
Built distribution (wheel)
| File | Interpreter | ABI | Platform | Reset |
|---|---|---|---|---|
| ai_hacking_defense-0.1.4-py3-none-any.whl | Python 3 | none | any | Details |
Total release size: 91.9 kB
Release files / ai_hacking_defense-0.1.4.tar.gz
| Download URL | ai_hacking_defense-0.1.4.tar.gz |
|---|---|
| Size | 46.4 kB |
| Tags | Source |
|
SHA-256 checksum How to use checksums |
c2604ba413f4c2a0137ae918869413b3016ec4cc43d9479185a5ab871036272f
|
|
BLAKE2b-256 checksum How to use checksums |
74cc876f3d897592ea60c8dbe85290000b44bc5f7499e8dad5b4a6c41dbb3a98
|
| Upload date | |
|
Uploaded using Trusted Publishing? What is trusted publishing? |
No |
| Uploaded via |
twine/7.0.0 CPython/3.13.2
|
Release files / ai_hacking_defense-0.1.4-py3-none-any.whl
| Download URL | ai_hacking_defense-0.1.4-py3-none-any.whl |
|---|---|
| Size | 45.6 kB |
| Tags | Python 3 |
|
SHA-256 checksum How to use checksums |
7e7e479944df08623bb216d4971c4bddae8a82845131291fe9b71186815f8ecc
|
|
BLAKE2b-256 checksum How to use checksums |
327412a907d9ab353f16b33531aac5e585eb6d2f856fe9042cb06510ad37d756
|
| Upload date | |
|
Uploaded using Trusted Publishing? What is trusted publishing? |
No |
| Uploaded via |
twine/7.0.0 CPython/3.13.2
|