Alternatives

Burpa alternatives for AI agents.

Compare similar skills by workflow fit, trust score, quality, GitHub adoption, maintenance, and install readiness.

Current skill

Burpa

Burp-Automator: A Burp Suite Automation Tool with Slack Integration. It can be used with Jenkins and Selenium to automate Dynamic Application Security Testing (DAST).

54
Quality
76
Trust
535
Stars
#1

Bandit

Similarity 139Trust 94Excellent 100

Bandit is a tool designed to find common security issues in Python code.

8.1K starsMay 25, 2026 pushsecurityPythonSecurity
$ npx skills add PyCQA/bandit
#2

Artemis

Similarity 136Trust 92Excellent 100

A modular vulnerability scanner with automatic report generation capabilities.

1.2K starsJun 13, 2026 pushsecurityPythonSecurity
$ npx skills add CERT-Polska/Artemis
#3

Changeme

Similarity 132Trust 84Excellent 85

A default credential scanner.

1.5K starsJul 8, 2025 pushsecurityPythonSecurity
$ npx skills add ztgrace/changeme
#4

Oxo

Similarity 130Trust 86Excellent 85

OXO is a security scanning orchestrator for the modern age.

574 starsJun 12, 2026 pushsecurityPythonSecurity
$ npx skills add Ostorlab/oxo
#5

Doublepulsar Detection Script

Similarity 128Trust 85Strong 70

A python2 script for sweeping a network to find windows systems compromised with the DOUBLEPULSAR implant.

1.0K starsFeb 3, 2020 pushsecurityPythonSecurity
$ npx skills add WithSecureLabs/doublepulsar-detection-script
#6

Caringcaribou

Similarity 124Trust 86Excellent 87

A friendly car security exploration tool for the CAN bus

918 starsJun 12, 2026 pushsecurityPythonSecurity
$ npx skills add CaringCaribou/caringcaribou
#7

MetaRadar

Similarity 120Trust 91Excellent 93

A tool for BLE environment monitoring. Find and track Bluetooth devices around, and get notified when the target device is detected.

1.4K starsJan 22, 2026 pushsecurityKotlinSecurity
$ npx skills add BLE-Research-Group/MetaRadar
#8

Nuclei

Similarity 120Trust 98Excellent 100

Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling collaboration to tackle trending vulnerabilities on the internet. It helps you find vulnerabilities in your applications, APIs, networks, DNS, and cloud configurations.

29K starsJun 13, 2026 pushsecurityGoSecurity
$ npx skills add projectdiscovery/nuclei
#9

PentestER Fully Automatic Scanner

Similarity 119Trust 69Needs review 47

DNS Subdomain● Brute force ● Web Spider ● Nmap Scan ● etc

375 starsMay 15, 2023 pushsecurityPythonSecurity
$ npx skills add RASSec/pentestER-Fully-automatic-scanner
#10

Zaproxy

Similarity 119Trust 95Excellent 100

The ZAP by Checkmarx Core project

15K starsJun 11, 2026 pushsecurityJavaSecurity
$ npx skills add zaproxy/zaproxy
#11

Lynis

Similarity 118Trust 94Excellent 100

Lynis - Security auditing tool for Linux, macOS, and UNIX-based systems. Assists with compliance testing (HIPAA/ISO27001/PCI DSS) and system hardening. Agentless, and installation optional.

16K starsMay 11, 2026 pushsecurityShellSecurity
$ npx skills add CISOfy/lynis
#12

Vuls

Similarity 118Trust 96Excellent 100

Agent-less vulnerability scanner for Linux, FreeBSD, Container, WordPress, Programming language libraries, Network devices

12K starsJun 12, 2026 pushsecurityGoSecurity
$ npx skills add future-architect/vuls
#13

Wpscan

Similarity 117Trust 93Excellent 100

WPScan WordPress security scanner. Written for security professionals and blog maintainers to test the security of their WordPress websites. Contact us via contact@wpscan.com

9.6K starsJun 12, 2026 pushsecurityRubySecurity
$ npx skills add wpscanteam/wpscan
#14

Kube Score

Similarity 116Trust 94Excellent 100

Kubernetes object analysis with recommendations for improved reliability and security. kube-score actively prevents downtime and bugs in your Kubernetes YAML and Charts. Static code analysis for Kubernetes.

3.1K starsMay 20, 2026 pushsecurityGoSecurity
$ npx skills add zegl/kube-score
#15

Authz0

Similarity 115Trust 85Strong 84

🔑 Authz0 is an automated authorization test tool. Unauthorized access can be identified based on URLs and Roles & Credentials.

428 starsJun 8, 2026 pushsecurityGoSecurity
$ npx skills add hahwul/authz0
#16

GitGraber

Similarity 115Trust 93Excellent 99

gitGraber: monitor GitHub to search and find sensitive data in real time for different online services such as: Google, Amazon, Paypal, Github, Mailgun, Facebook, Twitter, Heroku, Stripe...

2.3K starsMar 26, 2026 pushsecurityPythonOSINT
$ npx skills add hisxo/gitGraber

How to choose

When should you switch?

Use an alternative when it has a clearer install path, higher trust score, fresher maintenance, or better platform fit for your current agent stack. Keep Burpa if it already passes your workflow test and repository review.

Next step

Compare top candidates side by side

Open the compare page, test the install commands in a sandbox, and check each repository before using a skill in production.