- Open source. The entire platform is AGPL-3.0 licensed. Inspect it, audit it, contribute to it.
- Data sovereignty. Self-host on your own infrastructure. Your data stays on your systems.
- Hands-on testing. We go beyond automated scans with manual, creative testing by experienced security researchers.
Open-Source Security Testing.
Transparent. Yours.
GetHacked.eu is an open-source offensive security platform. We help organisations find vulnerabilities before attackers do — with tools you can inspect, audit, and self-host.
Our Mission
Security testing produces sensitive data — vulnerability details that need careful handling. We built GetHacked.eu so organisations can run their offensive security operations on infrastructure they control.
We offer penetration testing, vulnerability scanning, and attack surface mapping through a single open-source platform. Self-host it on your own infrastructure, or use our managed service.
Why Open Source Matters for Security
Every line of code is auditable. No black boxes, no hidden telemetry — you know exactly what runs on your infrastructure.
Self-host the platform and keep all vulnerability data, findings, and reports on systems you control. No vendor lock-in.
No single point of failure. Deploy anywhere — your cloud, your data centre, your jurisdiction, your rules.
How We Build the Platform
Security is a priority in how we build and operate.
Strict Tenant Isolation
Data access is scoped to the authenticated user's organisation and role. The platform is designed to keep each client's data separate.
Least Privilege by Design
Three distinct roles (Client, Pentester, Administrator) with scoped permissions. Pentesters see only their assigned engagements.
Internal Security Reviews
We regularly review our own platform for common vulnerability classes including injection, broken access control, and data leakage.
Complete Audit Trail
Key actions are logged within the platform, including scope submissions, finding additions, and report access.