Violin v1.0.0
·
129 commits
to master
since this release
Violin v1.0.0 — Public Release
The supervised agentic Hermes pentest profile is now public.
What's inside
- 31 pentest playbooks covering OWASP Top 10, API security, auth bypass, cloud, and more
- 0 plugins — 100% Hermes built-in tools (browser, terminal, file, delegate, web)
- 8 reference docs (standards, scope template, recon methodology)
- Guardrails-first design — every engagement runs through mandatory authorisation + scope verification
- 2 CI workflows — guard-check + YAML lint on every push/PR
- Full community setup — issue templates, PR template, CONTRIBUTING, SECURITY policy
Safety model
Violin is a defensive, authorised-engagement-only profile. It refuses to act without verified written authorisation and a scoped target list. Built for red teams operating inside the rules of engagement.
Quick start
hermes profile install Strategic-Automation/violinLinks
- README: full playbook index, Mermaid architecture diagrams, and safety layers
- License: MIT