Go to Apify Store
User picture

jordan ks

jokeso

Security researcher. Bug bounty hunter. I automate everything twice — once to learn it, once to never do it manually again.

ACTOR STATS

2 public Actors

4 total users

1 monthly user

52.9% runs succeeded

What I build Recon and attack-surface tooling that I actually use on live engagements. Every actor here gets tested against real targets before it's published — if it can't survive a bug bounty workflow, it doesn't ship.

Currently publishing:

Recon Toolkit — subdomain enumeration, live host detection, tech fingerprinting, optional port scanning. One input, clean JSON out. How I work Evidence-first — output you can act on, not noise Passive by default — polite probing, rate-limited, nothing aggressive unless you ask Boring on purpose — tools that run the same way every time Background Active on bug bounty programs (Bugcrowd, HackerOne, Mozilla 0DIN). Web app security, API security, and increasingly agentic/AI security — testing how LLM-powered tools handle untrusted input.

Scope note All actors are for authorized security testing only. Scan what you own or have permission to test.

Issues, feature requests, or a target that needs tooling the Store doesn't have yet — open an issue on the actor page.

Skipped: links to Bugcrowd/H1 profiles — add them if you want them public; they're tied to your real handle.

Public Actors