wgpsec/cloudsword

一款帮助云租户发现和测试云上风险、增强云上防护能力的综合性开源工具

53
/ 100
Established

Implements a modular architecture with 40+ discovery and exploitation modules across Alibaba Cloud, Tencent Cloud, Huawei Cloud, and other Chinese cloud providers, covering assets, storage buckets, compute instances, and IAM operations. Credentials are kept in-memory via environment variables to prevent persistence-based leaks, and the tool supports MCP protocol integration (SSE and STDIO modes) for use with AI assistants. Built in Go with a Metasploit-like command interface for rapid enumeration and security testing workflows.

595 stars.

No Package No Dependents
Maintenance 10 / 25
Adoption 10 / 25
Maturity 16 / 25
Community 17 / 25

How are scores calculated?

Stars

595

Forks

56

Language

Go

License

Apache-2.0

Last pushed

Feb 03, 2026

Commits (30d)

0

Get this data via API

curl "https://pt-edge.onrender.com/api/v1/quality/mcp/wgpsec/cloudsword"

Open to everyone — 100 requests/day, no key needed. Get a free key for 1,000/day.