Skip to content

LLMrecon v0.13.0

Latest

Choose a tag to compare

@github-actions github-actions released this 12 Sep 19:04
· 1 commit to main since this release
f1ae1e7

What's Changed

  • v0.13.0 — six new attack modules (Mar–Sep 2026 research) + dependency/CVE pass (#400) (f1ae1e7)
  • chore: repo hygiene — gitignore build binaries + reports, drop hardcoded path (531d181)
  • deps(deps): bump github.com/klauspost/compress from 1.19.1 to 1.19.2 (#362) (c0a94d7)
  • deps(deps): bump github.com/aws/aws-sdk-go-v2 from 1.43.7 to 1.44.0 (#379) (653c5f8)
  • deps(deps): update streamlit requirement from >=1.60.0 to >=1.62.0 (#373) (60bc65c)
  • deps(deps): update transformers requirement from >=5.14.1 to >=5.15.1 (#374) (2a15072)
  • deps(deps): update python-dotenv requirement from >=1.2.2 to >=1.2.3 (#375) (f43fa33)
  • deps(deps): update mypy requirement from >=2.3.0 to >=2.3.1 (#376) (932ac7d)
  • deps(deps): bump github.com/mattn/go-sqlite3 from 1.14.49 to 1.14.50 (#380) (3bc4e96)
  • deps(deps): bump github.com/aws/aws-sdk-go-v2/config (#381) (5f12424)
  • deps(deps): bump github.com/mattn/go-sqlite3 from 1.14.48 to 1.14.49 (#356) (1460da1)
  • deps(deps): bump github.com/aws/aws-sdk-go-v2 from 1.43.0 to 1.43.2 (#355) (fe55473)
  • deps(deps): update tqdm requirement from >=4.69.1 to >=4.70.0 (#354) (71459d1)
  • deps(deps): bump github.com/klauspost/compress from 1.19.0 to 1.19.1 (#353) (03eb4d0)
  • deps(deps): bump github.com/aws/aws-sdk-go-v2/config (#352) (e7b077c)
  • deps(deps): bump github.com/aws/aws-sdk-go-v2/service/s3 (#351) (a9ef6ba)
  • deps(deps): update streamlit requirement from >=1.59.2 to >=1.60.0 (#350) (84dee64)
  • deps(deps): update pandas requirement from >=3.0.4 to >=3.0.5 (#349) (2f30aab)
  • deps(deps): update tqdm requirement from >=4.69.0 to >=4.69.1 (#348) (06da351)
  • deps(deps): update opencv-python requirement (#315) (98f5733)
  • deps(deps): bump github.com/aws/aws-sdk-go-v2/credentials (#346) (8682f49)
  • deps(deps): update numpy requirement from >=2.5.0 to >=2.5.1 (#316) (d88d7e6)
  • deps(deps): update pillow requirement from >=12.2.0 to >=12.3.0 (#318) (c58f486)
  • ci(deps): bump actions/setup-python from 5 to 7 (#338) (fd00515)
  • ci(deps): bump securego/gosec from 2.27.1 to 2.28.0 (#339) (9dd7aca)
  • ci(deps): bump actions/setup-go from 5 to 7 (#340) (e1dff95)
  • deps(deps): update transformers requirement from >=5.13.1 to >=5.14.1 (#341) (f510353)
  • deps(deps): update mypy requirement from >=2.2.0 to >=2.3.0 (#342) (d457a08)
  • deps(deps): update tqdm requirement from >=4.68.4 to >=4.69.0 (#343) (3355932)
  • deps(deps): update matplotlib requirement from >=3.11.0 to >=3.11.1 (#344) (e9d037e)
  • deps(deps): bump github.com/aws/aws-sdk-go-v2/config (#347) (32e2f5f)
  • deps(deps): bump github.com/klauspost/compress from 1.18.6 to 1.19.0 (#320) (09c0b0c)
  • deps(deps): update mypy requirement from >=2.1.0 to >=2.2.0 (#326) (c2ae7ff)
  • deps(deps): update transformers requirement from >=5.12.1 to >=5.13.1 (#327) (68d9c1a)
  • deps(deps): update tqdm requirement from >=4.68.3 to >=4.68.4 (#328) (1d3c423)
  • deps(deps): update streamlit requirement from >=1.58.0 to >=1.59.2 (#329) (dbe9293)
  • deps(deps): update torch requirement from >=2.12.1 to >=2.13.0 (#331) (f7dc68a)
  • deps(deps): bump github.com/aws/aws-sdk-go-v2/credentials (#333) (5aa00c2)
  • deps(deps): bump github.com/mattn/go-sqlite3 from 1.14.47 to 1.14.48 (#334) (b9fe131)
  • deps(deps): bump golang.org/x/crypto from 0.53.0 to 0.54.0 (#337) (123e7d5)
  • deps(deps): update pandas requirement from >=3.0.3 to >=3.0.4 (#314) (01b6f5f)
  • ci(deps): bump actions/cache from 5 to 6 (#313) (95492c0)
  • docs: cover adaptive fuzzing engines + v0.12.0 attack additions (#312) (254ed06)
  • docs(changelog): cut v0.12.0 release section (#311) (c41cf2e)
  • feat(adaptive): MCTS-Explore selection strategy for jbfuzz (#171) (#310) (4e39805)
  • feat(adaptive): implement embedding-fitness for jbfuzz/persona_evolve (#170) (#309) (90aea68)
  • feat(attacks): Purger interface + attack purge for memory-implant cleanup (#168) (#308) (597637d)
  • chore: attic dead core retry system; cover the real retry path (#304) (#307) (6f871d3)
  • docs: consolidate docs/ tree — attic obsolete, fold quickstarts (#232) (#306) (363b75a)
  • test(provider): document openai/anthropic HTTP error classification (#234) (#305) (6a05ada)
  • feat(cmd): add --api-key flag to attack run (#234 part 1) (#303) (079834e)
  • test: cover src/template loader / cache / format pipeline (#229) (#302) (5369b4d)
  • chore: remove committed prompt-protection report artifacts + gitignore (#301) (56a52af)
  • fix(audit): unique FileLogger rotation filenames to prevent silent merges (#300) (0e5a8ca)
  • chore: attic dead delta-bundle code + guard build-ignored cmd files (#228, #226) (#299) (3f7d66d)
  • test: cover src/bundle core round-trip + tamper paths (#230) (#298) (85d30b3)
  • deps(deps): update scipy requirement from >=1.17.1 to >=1.18.0 (#297) (ecaef56)
  • deps(deps): update torch requirement from >=2.12.0 to >=2.12.1 (#296) (c6eaacf)
  • deps(deps): update torch requirement from >=2.12.0 to >=2.12.1 (#296) (c0f33a0)
  • deps(deps): update numpy requirement from >=2.4.6 to >=2.5.0 (#295) (bc7f978)
  • deps(deps): update stable-baselines3 requirement from >=2.8.0 to >=2.9.0 (#294) (ffab93b)
  • deps(deps): update tqdm requirement from >=4.68.2 to >=4.68.3 (#293) (80e53a0)
  • deps(deps): update pytest requirement from >=9.1.0 to >=9.1.1 (#292) (a9741c8)
  • deps(deps): update transformers requirement from >=5.12.0 to >=5.12.1 (#291) (b8fb965)
  • deps(deps): bump github.com/mattn/go-sqlite3 from 1.14.45 to 1.14.47 (#290) (6790054)
  • ci(deps): bump actions/checkout from 6 to 7 (#289) (a77448a)
  • test(security): Phase 2 part 2 coverage for keystore/vault/cert_pinning/prompt + 4 fixes (#231) (#288) (9d6e5c3)
  • test(security): coverage for validation/ratelimit/security/audit (#231) — Phase 2 part 1 (#287) (4d03005)
  • ci(honesty): diff-scoped lint for TODO+return-nil regressions (#233) (#286) (d80e9dd)
  • chore: v0.11.0 Phase 1 honesty cleanup — attic orphans, fix stale help, drop dead stub (#285) (fbe57b5)
  • fix(update): real checksum verification in VerifyPackage (#224) — v0.11.0 Phase 1 (#284) (f7365e9)
  • feat: v0.12.0 — new attack modules (MemMorph, Sleeper, IterInject, SymJack, TrustFall) (#282) (3c2739c)
  • fix(security): triage gosec 2.27.1 baseline (real TLS fix + justified suppressions) (#283) (ed5ff64)
  • deps(deps): bump github.com/aws/aws-sdk-go-v2/config (#276) (3400662)
  • deps(deps): bump github.com/aws/aws-sdk-go-v2/service/s3 (#278) (ae003ca)
  • deps(deps): update plotly requirement from >=6.7.0 to >=6.8.0 (#265) (3c7dbe9)
  • deps(deps): bump github.com/go-playground/validator/v10 (#257) (14cb11c)
  • deps(deps): bump github.com/mattn/go-sqlite3 from 1.14.44 to 1.14.45 (#268) (864a52d)
  • deps(deps): bump github.com/aws/aws-sdk-go-v2/credentials (#279) (b0e88a5)
  • deps(deps): update streamlit requirement from >=1.57.0 to >=1.58.0 (#258) (733c8a0)
  • deps(deps): update scikit-learn requirement from >=1.8.0 to >=1.9.0 (#264) (ef9d3b4)
  • deps(deps): update matplotlib requirement from >=3.10.9 to >=3.11.0 (#272) (c040c8a)
  • deps(deps): update tqdm requirement from >=4.67.3 to >=4.68.2 (#273) (9846719)
  • deps(deps): update transformers requirement from >=5.9.0 to >=5.12.0 (#274) (0314e69)
  • deps(deps): bump golang.org/x/crypto from 0.52.0 to 0.53.0 (#280) (d3d1f00)
  • deps(deps): update pytest requirement from >=9.0.3 to >=9.1.0 (#275) (5a663c4)
  • deps(deps): bump github.com/aws/aws-sdk-go-v2 from 1.41.7 to 1.42.0 (#281) (b3bd06f)
  • ci(deps): bump securego/gosec from 2.23.0 to 2.27.1 (#256) (84afcab)
  • deps(deps): bump github.com/aws/aws-sdk-go-v2/config (#255) (7a1b1d9)
  • deps(deps): bump golang.org/x/crypto from 0.51.0 to 0.52.0 (#254) (98e8ea4)
  • deps(deps): bump github.com/aws/aws-sdk-go-v2/credentials (#253) (37a4b16)
  • deps(deps): update transformers requirement from >=5.8.1 to >=5.9.0 (#252) (1da83a4)
  • deps(deps): update numpy requirement from >=2.4.5 to >=2.4.6 (#251) (7738d4b)
  • deps(deps): update black requirement from >=26.3.1 to >=26.5.1 (#250) (b57d3b4)
  • deps(deps): update pandas requirement from >=3.0.2 to >=3.0.3 (#248) (3a1cc12)
  • deps(deps): update torch requirement from >=2.11.0 to >=2.12.0 (#249) (8262c42)
  • deps(deps): update mypy requirement from >=1.20.2 to >=2.1.0 (#247) (f3a2eff)
  • deps(deps): update transformers requirement from >=5.7.0 to >=5.8.1 (#246) (9e503ed)
  • deps(deps): update numpy requirement from >=2.4.4 to >=2.4.5 (#245) (04f5a4d)
  • deps(deps): bump github.com/aws/aws-sdk-go-v2/service/s3 (#243) (7455e72)
  • deps(deps): update pytest requirement from >=7.4.0 to >=9.0.3 (#242) (3f59289)
  • deps(deps): update matplotlib requirement from >=3.7.0 to >=3.10.9 (#240) (459c333)
  • deps(deps): update gym requirement from >=0.26.0 to >=0.26.2 (#238) (b0aa687)
  • deps(deps): update flake8 requirement from >=6.0.0 to >=7.3.0 (#237) (41c5a1b)
  • deps(deps): update black requirement from >=23.0.0 to >=26.3.1 (#236) (67b5526)
  • deps(deps): bump golang.org/x/crypto from 0.50.0 to 0.51.0 (#235) (0dff16e)
  • docs(plans): v0.11.0 — the stabilization release brainstorm + plan (#223) (82f8935)
  • deps(deps): update plotly requirement from >=5.15.0 to >=6.7.0 (#213) (890287c)
  • deps(deps): update scikit-learn requirement from >=1.3.0 to >=1.8.0 (#212) (a91b3d9)
  • deps(deps): bump github.com/aws/aws-sdk-go-v2/service/s3 (#220) (603c91d)
  • deps(deps): update numpy requirement from >=1.24.0 to >=2.4.4 (#214) (a6f1bd9)
  • deps(deps): update streamlit requirement from >=1.56.0 to >=1.57.0 (#211) (4c09076)
  • deps(deps): update pyyaml requirement from >=6.0 to >=6.0.3 (#210) (4d386a4)
  • deps(deps): update transformers requirement from >=4.30.0 to >=5.7.0 (#209) (696d8b7)
  • deps(deps): update tqdm requirement from >=4.65.0 to >=4.67.3 (#208) (640d1a1)
  • deps(deps): update stable-baselines3 requirement from >=2.0.0 to >=2.8.0 (#207) (ab0d2fb)
  • deps(deps): update tensorflow requirement from >=2.13.0 to >=2.21.0 (#206) (9636387)
  • deps(deps): update scipy requirement from >=1.11.0 to >=1.17.1 (#202) (a1bc8e4)
  • deps(deps): bump github.com/Masterminds/semver/v3 from 3.4.0 to 3.5.0 (#217) (0d2f3c0)
  • deps(deps): bump github.com/aws/aws-sdk-go-v2/config (#216) (099efec)
  • deps(deps): bump github.com/go-sql-driver/mysql from 1.9.3 to 1.10.0 (#204) (3bc6bec)
  • deps(deps): bump github.com/mattn/go-sqlite3 from 1.14.37 to 1.14.44 (#219) (e92b44e)
  • deps(deps): bump golang.org/x/crypto from 0.49.0 to 0.50.0 (#218) (1c344cc)
  • deps(deps): bump github.com/go-playground/validator/v10 (#221) (95a5a77)
  • deps(deps): bump github.com/aws/aws-sdk-go-v2/credentials (#215) (09ee16e)
  • ci(deps): bump actions/upload-pages-artifact from 4 to 5 (#205) (baa46fc)
  • deps(deps): bump github.com/klauspost/compress from 1.18.5 to 1.18.6 (#201) (08d5e12)
  • deps(deps): bump github.com/rs/zerolog from 1.34.0 to 1.35.1 (#200) (eca302f)
  • ci(deps): bump aquasecurity/trivy-action from 0.35.0 to 0.36.0 (#199) (766beaa)
  • chore: v0.10.0 release notes + CHANGELOG entry (#197) (a7095b0)
  • docs: #175 — README pass to canonical CLI surface (#196) (9f04821)
  • feat(cmd/bundle): #177 — bundle verify + import round-trip (#195) (3e2529a)
  • feat(update): #174 Tier 2 — atomic-replace template/module update (#194) (1ab4f07)
  • feat(provider/anthropic): #166 (Tier B) ImageProvider + ReasoningProvider wiring (#193) (f5dbdc1)
  • feat(provider): #166 (Tier A) OpenAI ImageProvider + ReasoningProvider wiring (#192) (6e324c6)
  • feat(attacks): #176 capability gates for agentic/audio modules (#191) (7a65a87)
  • feat: #181 — Python ↔ Go JSONL bridge (#190) (240f004)
  • refactor: #180 — delete dead RBAC framework + dependent unreachable code (#189) (29e2305)
  • feat(compliance): #179 — OWASP YAML ↔ code id-resolution drift test (#188) (d6aa632)
  • fix(cmd/update): #174 Tier 1 — stop fake-success in update apply (#187) (9af4520)
  • feat(provider/bridge): #167 common.Provider shim around core.Provider (#186) (8961b16)
  • feat(cmd): #173 attack registry CLI — barrel + attack list + attack run (#185) (6ab9bba)
  • feat(ci): #169 drift-detection (compliance codegen + Go-version pins) (#184) (94ccad9)
  • docs(plans): backfill v0.9.0 plan + brainstorm + Feb 2026 project-health plan (#183) (b144847)
  • docs(plans): v0.10.0 — the honesty release plan (#182) (6380ed0)
  • fix(ci): align Go version pins to 1.25 (matches go.mod) (#172) (8e0cc6e)
  • feat: v0.9.0 Phase 6 — CHANGELOG, CLAUDE.md, integration smoke tests (#165) (e45d94c)
  • fix(provider/core): retry loop must surface ctx cancellation, not lastErr (#164) (088e6b7)
  • feat: v0.9.0 Phase 5 — compliance YAML + ML pipeline migration (#163) (9b86529)
  • feat: v0.9.0 Phase 3 — H-CoT, SIVA, VSH attack modules (#162) (9b418bb)
  • feat: v0.9.0 Phase 4b — persona_evolve genetic-algorithm modulation engine (#161) (2351537)
  • feat: v0.9.0 Phase 4a — JBFuzz black-box fuzzer + 10 psychological-theme seeds (#160) (e79decf)
  • feat(attacks/memory): add parameterized memory-poisoning module (minja/graft/injec) (#159) (bf2e03d)
  • feat: v0.9.0 Phase 2 — 5 attack templates with placeholder substitution loader (#158) (f829876)
  • feat: v0.9.0 Phase 1 foundation (outcome taxonomy, capabilities, retry, codegen) (#157) (36a98f7)
  • ci(deps): bump softprops/action-gh-release from 2 to 3 (#146) (16f7052)
  • deps(deps): bump github.com/aws/aws-sdk-go-v2/credentials (#136) (3fcec40)
  • deps(deps): update qrcode requirement from >=7.4.0 to >=8.2 (#151) (1ef3e41)
  • deps(deps): update pillow requirement from >=10.0.0 to >=12.2.0 (#147) (3d38945)
  • deps(deps): bump github.com/lib/pq from 1.11.2 to 1.12.3 (#141) (e912e23)
  • deps(deps): bump github.com/fatih/color from 1.18.0 to 1.19.0 (#139) (b3ee9d2)
  • deps(deps): bump github.com/aws/aws-sdk-go-v2/service/s3 (#135) (b82a916)
  • deps(deps): bump golang.org/x/term from 0.41.0 to 0.42.0 (#134) (8f43353)
  • ci(deps): bump actions/deploy-pages from 4 to 5 (#143) (bb6e020)
  • ci(deps): bump actions/configure-pages from 5 to 6 (#144) (2e7804b)
  • deps(deps): update python-dotenv requirement from >=1.0.0 to >=1.2.2 (#148) (42f89b9)
  • deps(deps): update seaborn requirement from >=0.12.0 to >=0.13.2 (#149) (18bc738)
  • deps(deps): update pandas requirement from >=2.0.0 to >=3.0.2 (#150) (3788986)
  • deps(deps): update opencv-python requirement from >=4.8.0 to >=4.13.0.92 (#152) (38695e6)
  • deps(deps): update torch requirement from >=2.0.0 to >=2.11.0 (#153) (ecf9262)
  • deps(deps): update streamlit requirement from >=1.25.0 to >=1.56.0 (#154) (67e7a7d)
  • deps(deps): update mypy requirement from >=1.4.0 to >=1.20.2 (#155) (9b14353)
  • deps(deps): update networkx requirement from >=3.1 to >=3.6.1 (#156) (b5ef01d)
  • deps(deps): bump github.com/aws/aws-sdk-go-v2/aws/protocol/eventstream (#145) (1747d0a)
  • deps(deps): bump github.com/mattn/go-sqlite3 from 1.14.34 to 1.14.37 (#142) (517bdbe)
  • deps(deps): bump github.com/klauspost/compress from 1.18.4 to 1.18.5 (#140) (f675f4c)
  • deps(deps): bump github.com/aws/aws-sdk-go-v2/config (#133) (fa77beb)
  • deps(deps): bump golang.org/x/crypto from 0.48.0 to 0.49.0 (#131) (bf7a8b1)
  • ci(deps): bump docker/metadata-action from 5 to 6 (#132) (2d8f444)
  • deps(deps): bump golang.org/x/time from 0.11.0 to 0.15.0 (#128) (a21b4d9)
  • deps(deps): bump github.com/aws/aws-sdk-go-v2 from 1.41.2 to 1.41.3 (#126) (27d5926)
  • ci(deps): bump aquasecurity/trivy-action from 0.34.1 to 0.35.0 (#125) (d5d0c85)
  • deps(deps): bump golang.org/x/oauth2 from 0.35.0 to 0.36.0 (#124) (b198ef6)
  • ci(deps): bump docker/setup-buildx-action from 3 to 4 (#123) (838aec8)
  • ci(deps): bump docker/build-push-action from 6 to 7 (#122) (4174abe)
  • ci(deps): bump docker/login-action from 3 to 4 (#121) (9d394c9)
  • deps(deps): bump github.com/xuri/excelize/v2 from 2.10.0 to 2.10.1 (#120) (82e1953)
  • deps(deps): bump github.com/aws/aws-sdk-go-v2/service/s3 (#119) (acddbca)
  • ci(deps): bump actions/upload-artifact from 6 to 7 (#117) (0555996)
  • ci(deps): bump actions/download-artifact from 7 to 8 (#116) (c4d44e1)
  • deps(deps): bump github.com/aws/aws-sdk-go-v2/config (#115) (f7d8b2d)
  • deps(deps): bump github.com/aws/aws-sdk-go-v2/credentials (#114) (f4b77e8)
  • ci(deps): bump actions/cache from 4 to 5 (#113) (f781fed)
  • deps(deps): bump github.com/golang-jwt/jwt/v5 from 5.3.0 to 5.3.1 (#112) (748a441)
  • deps(deps): bump github.com/xuri/excelize/v2 from 2.9.1 to 2.10.0 (#111) (944aecf)
  • ci(deps): bump aquasecurity/trivy-action from 0.34.0 to 0.34.1 (#110) (92b7184)
  • deps(deps): bump github.com/schollz/progressbar/v3 from 3.18.0 to 3.19.0 (#109) (94d4097)
  • deps(deps): bump filippo.io/edwards25519 (#108) (894c1c8)
  • fix: remove duplicate glob in release workflow (#107) (c0bdb04)
  • fix: exclude G115 and G302 from gosec scan (false positives) (#106) (12bad8d)
  • fix: resolve final 20 gosec findings with code changes (#105) (63e8d28)
  • fix: resolve remaining 73 gosec findings (#104) (65912ff)
  • fix: project health phase 1 — resolve CI failures, security findings, and code quality (#103) (7f0aedf)
  • deps: update all Go dependencies and GitHub Actions (#102) (f771516)
  • fix: resolve CI failures, security alerts, and review comments (#101) (d7faded)
  • fix: Project health Phase 1 — critical fixes for CI, security, and code quality (#85) (3b0510a)
  • fix: add workflow_dispatch trigger to Pages deploy workflow (#84) (3b5c1cd)
  • docs: Update research year references to include 2026 (#83) (ddd9e5e)
  • chore: Remove 130+ unnecessary files from repository (#82) (c646dfc)
  • feat: llmrecon.com landing page with 3 toggleable themes (#81) (076c02d)
  • fix: Fix Docker build and security scan in release workflow (#80) (e22897b)
  • fix: Fix Windows build failures for release workflow (#79) (100118c)
  • fix: Remediate Tier 1 code scanning security alerts (#78) (b10bd60)
  • docs: fill documentation gaps for exfiltration, CaMeL bypass, and salt resistance attacks (#77) (9f75bfd)
  • feat: Add 45+ LLM attack techniques (2025-2026 research) with OWASP Agentic 2026 compliance (#76) (7e30e14)
  • deps(deps): Bump github.com/aws/aws-sdk-go-v2/config (#29) (d96eed7)
  • build(deps): Bump tj-actions/changed-files (#34) (488b125)
  • security: Fix 988 security issues from Code Scanning (#33) (219f566)
  • deps(deps): Bump github.com/go-sql-driver/mysql from 1.9.2 to 1.9.3 (#26) (a96187c)
  • deps(deps): Bump github.com/mattn/go-sqlite3 from 1.14.28 to 1.14.32 (#27) (9873600)
  • ci(deps): Bump tj-actions/changed-files from 44 to 46 (#20) (aa1011a)
  • ci(deps): Bump actions/checkout from 4 to 5 (#21) (94ef05d)
  • deps(deps): Bump github.com/Masterminds/semver/v3 from 3.3.1 to 3.4.0 (#23) (f705492)
  • deps(deps): Bump golang.org/x/oauth2 from 0.27.0 to 0.30.0 (#25) (29c9cc3)
  • deps(deps): Bump github.com/aws/aws-sdk-go-v2/service/s3 (#30) (5a22e0d)
  • deps(deps): Bump github.com/aws/aws-sdk-go-v2 from 1.38.0 to 1.38.1 (#32) (8b777fa)
  • deps(deps): Bump github.com/fatih/color from 1.16.0 to 1.18.0 (#22) (6d4f3a2)
  • docs: Add contribution guidelines and branch protection (#19) (53f35e0)
  • security: Complete remaining security finding resolutions (6f4af1b)
  • security: Fix remaining high-priority security findings (non-G104) (ad54a98)
  • security: Fix additional 30+ G104 unhandled error findings (f658026)
  • security: Fix 33 security findings across multiple categories (02ff263)
  • fix: Resolve extensive Go syntax errors across the codebase (0701e6c)
  • fix: Resolve all workflow security findings (fb12c3b)
  • cleanup: Remove temporary fix scripts (bbb4e6b)
  • fix: Resolve Go compilation errors and CodeQL security issues (681bdef)
  • deps(deps): Bump golang.org/x/crypto from 0.38.0 to 0.41.0 (#10) (48b1ba7)
  • deps(deps): Bump github.com/aws/aws-sdk-go-v2/service/s3 (#12) (af6ce22)
  • ci(deps): Bump docker/build-push-action from 5 to 6 (#4) (42d9b21)
  • ci(deps): Bump peter-evans/create-pull-request from 5 to 7 (#7) (b34fd3c)
  • deps(deps): Bump github.com/spf13/cobra from 1.8.0 to 1.9.1 (#14) (50504c7)
  • deps(deps): Bump github.com/golang-jwt/jwt/v5 from 5.2.2 to 5.3.0 (#15) (8d625bb)
  • deps(deps): Bump golang.org/x/term from 0.32.0 to 0.34.0 (#16) (2a916d2)
  • deps(deps): Bump github.com/aws/aws-sdk-go-v2/credentials (#17) (76b8eb2)
  • deps(deps): Bump github.com/go-playground/validator/v10 (#18) (912489e)
  • fix: Replace all failing CI workflows with passing stubs (c040478)
  • fix: Make minimal CI even more permissive (b6c4636)
  • Merge pull request #6 from perplext/dependabot/github_actions/actions/download-artifact-5 (fca61c4)
  • ci(deps): Bump actions/download-artifact from 4 to 5 (89e51c2)
  • fix: Temporarily simplify CI to allow dependency updates (5a616df)
  • Merge pull request #5 from perplext/dependabot/github_actions/actions/checkout-5 (8d93119)
  • ci(deps): Bump actions/checkout from 4 to 5 (d9c6093)
  • fix: Resolve CodeQL Go build errors with improved workflow (528c7ed)
  • fix: Resolve CodeQL security scanning issues and add security enhancements (2374ae6)
  • feat: Add comprehensive 5-model security testing results (8c891e0)
  • fix: Remove estimates, show only verified and research-backed data (7ef2c48)
  • fix: Simplify GitHub Pages setup with root index.html (567fc6d)
  • feat: Add GitHub Pages site with modern landing page (1800453)
  • docs: Add comprehensive modern documentation and GitHub page (578d816)
  • fix: Security patch for CVE-2025-22868 in golang.org/x/oauth2 (64f6bb0)
  • Merge upstream changes for v0.7.0 release (311c941)
  • Remove embedded repository (c91b550)
  • Initial commit with v0.7.0 features (65ad48b)
  • feat: Add comprehensive security analysis for all Ollama models (fd1a945)
  • Release v0.6.1: Comprehensive testing suite and validation (8a765ab)
  • Merge pull request #2 from perplext/feature/v0.6.0-documentation-and-testing (32b38d1)
  • Address all PR review recommendations for production readiness (2a5395d)
  • Address critical issues identified in PR review (558d41c)
  • Add comprehensive testing documentation and examples for LLMrecon v0.6.0 (b89b6c1)
  • Merge pull request #1 from perplext/add-claude-github-actions-1750437514779 (7610a70)
  • Claude Code Review workflow (c6fd325)
  • Claude PR Assistant workflow (22b6493)

Features

  • OWASP LLM Top 10 compliance testing
  • Advanced prompt injection and jailbreak techniques
  • Multi-provider LLM testing support
  • Enterprise security features (RBAC, MFA, audit logging)
  • Template-based security testing framework
  • Comprehensive reporting and compliance documentation

Installation

Download Pre-built Binaries

Choose the appropriate binary for your platform:

  • Linux (x64): llmrecon-v0.13.0-linux-amd64
  • Linux (ARM64): llmrecon-v0.13.0-linux-arm64
  • macOS (Intel): llmrecon-v0.13.0-darwin-amd64
  • macOS (Apple Silicon): llmrecon-v0.13.0-darwin-arm64
  • Windows (x64): llmrecon-v0.13.0-windows-amd64.exe

Verify Downloads

Each binary includes a SHA256 checksum file for verification:

# Linux/macOS
sha256sum -c llmrecon-v0.13.0-linux-amd64.sha256

# macOS alternative
shasum -a 256 -c llmrecon-v0.13.0-darwin-amd64.sha256

Quick Start

# Make binary executable (Linux/macOS)
chmod +x llmrecon-v0.13.0-linux-amd64

# Run help
./llmrecon-v0.13.0-linux-amd64 --help

⚠️ Security Note: This tool is designed for authorized security testing only. Ensure you have proper permissions before testing any systems.