Autonomous vulnerability research
No exploit,
no finding.
Hand Sakura a binary, a source archive, a digest-pinned container, or a public repo. It pulls the target apart in an isolated VM and tries to exploit what it finds. Nothing comes back to you as a vulnerability until a proof of concept it wrote runs again on a clean machine.
- Proof of concept included
- Replayed on a clean VM
- Negative control checked
Private beta
Your research workspace is ready.
Sign in with the Shinra ID address on your invite to queue targets and read results.
WORKSPACE
Research overview
What is running now, and what actually reproduced.
RECENT ACTIVITY
Latest audits
Submit
Upload a ZIP or binary, pin a public container digest, or point Sakura at a public GitHub or GitLab repository.
Exploit
Sakura works the target in an isolated VM and writes a proof of concept for anything it thinks it can reach.
Prove
The proof is replayed on a fresh VM against a negative control. It reproduces, or it stays a candidate.
NEW AUDIT
Submit a target
Check the target and its scope first. Start the run when the intake looks right.
TARGET
Audit details
Mobile analysis binds a package to its public Store identity. The audit stays offline.
Upload an authorized package, or acquire an Android app directly from Google Play.
GOOGLE PLAY
Package acquisition
The acquisition service installs and validates the requested package without exposing its private device session.
The same operating system is used for the research run and for the independent replay. Sakura never silently falls back to another platform.
Limit the paths in scope (optional)
AUDITS
Research history
Open an audit to watch it run and read what it proved.
SETTINGS
Account and access
Your identity, rolling credit wallet, and how to drive Sakura from a terminal.
ACCOUNT
Shinra ID
- --
- Role
- --
- Authentication
- Active
USAGE
Credit wallet
One credit is one US cent. Your subscription adds credits each month, unused credits roll over, and model requests stop when the wallet is empty.
TEAM
Workspace members
Invite colleagues to this workspace and remove them when they leave. Admins start audits and manage members; members read results only.
| Role | Status | Actions |
|---|
COMMAND LINE
Sakura CLI
Your administrator can issue an API credential for queueing and following audits from a terminal.
sakura audit list
PRIVACY
Delete Sakura data
Delete project history while keeping Sakura access, or permanently delete the Sakura account. Shinra ID itself is never modified.