Talon
Description
Penetration Testing MCP for Claude Code. AI-assisted security testing with automated recon, service enumeration, and reporting.
Installation
This entry records only its repository, not the path inside it, so there is no
exact command to give. Open the source below and copy the folder into
~/.claude/skills/, or the file into ~/.claude/agents/.
README
Talon
**Penetration Testing MCP for Claude Code**
 
Talon connects Claude Code to a Kali Linux (or any pentesting) VM via SSH MCP, enabling AI-assisted penetration testing with automated recon, structured enumeration, and professional reporting — all from your terminal.
About CarbeneAI
Talon is one of four open-source AI security proofs of concept published by CarbeneAI, alongside [Harbinger](https://github.com/CarbeneAI/Harbinger) (AI threat intel), [Specter](https://github.com/CarbeneAI/Specter) (AI-assisted SIEM), and [Forge](https://github.com/CarbeneAI/Forge) (AI operations platform). They are not the product. They exist so prospects can see CarbeneAI's founder, Clint P. Garrison, understands the end-to-end strategy of AI in security operations.
CarbeneAI is a Fractional CTO + CISO + AI Strategy advisory practice for CEOs and Boards in risk-driven environments. Clint owns the strategy and risk seat at the client table; CarbeneAI's team and partner network deliver execution.
Use this repo. Fork it. Improve it. For CarbeneAI advisory engagement: [carbene.ai](https://carbene.ai)
What It Does
Talon packages the `@anthropic-ai/mcp-server-ssh` server with a complete penetration testing methodology:
- AI-directed recon — Ask Claude to run nmap, gobuster, or nikto and get structured analysis
- Automated 5-phase reconnaissance — Port discovery, service enumeration, web scanning, SMB, UDP
- 13-service enumeration guide — Comprehensive commands for every common service
- OSCP-style report template — Professional reporting structure for client and certification use
- Obsidian vault integration — Engagement and target note templates for organized documentation
The key insight: Claude can e
Related Skills
Defense in Depth
Implement multi-layered testing and security best practices.
Security SecLists Official Repository
[OWASP Testing Guide](https://owasp.org/www-project-web-security-testing-guide/)
Security Threat Hunting with Sigma Rules
Use Sigma detection rules to hunt for threats and analyze security events
Security Maintenance Walkthrough - 2026-03-29
- Re-triaged the full 2026-03-15 security finding set against current `main` and wrote a fresh current-head re
Security Google Workspace Model Armor
Filter user-generated content for safety
Security Google Workspace Alert Center
Manage security alerts
Security Related Agents
Token Auditor
Scans ui/src/ for hardcoded visual values, duplicate components, and shadcn replacement candidates; produces d
Gitnexus Security Boundary Reviewer
GitNexus security and trust-boundary reviewer. Use for auth, permissions, secrets, injection, unsafe parsing,
Accessibility Audit
| You are an accessibility expert specializing in WCAG compliance, inclusive design, and assistive tec... | -