Paravizor turns reconnaissance from a fragile chain of one-off shell scripts into a structured, reproducible, and resumable process. It's a terminal-native "recon copilot" for bug bounty hunters and pentesters: you define a scope and a pipeline, and Paravizor orchestrates your existing tools, normalizes their wildly different outputs into one coherent datastore, and surfaces the high-value attack surface — while you stay in control of every decision.

It's built in Go as a single portable binary, with both a scriptable CLI and an interactive Bubble Tea TUI.


The problem it solves

Anyone who has done real recon knows the pain: a dozen tools (subfinder, httpx, nuclei, and friends), each with its own output format, glued together with brittle bash. When a scan crashes three hours in, you restart from scratch. Context is lost between steps. Results pile up as unsorted text files, and the signal drowns in noise. Nothing is reproducible across projects.

Paravizor replaces that with a unified orchestrator sitting on a coherent data model. The design rests on three principles:


How it works

  project.yaml ──▶ pipeline.yaml ──▶  ┌──────────────────────┐
  (scope,             (nodes +        │   Pipeline engine    │
   constraints)        routing)       │  DAG · batches ·     │
                                      │  scope gate · resume │
                                      └──────────┬───────────┘
                                                 │  runs external tools
                          ┌──────────────────────┼──────────────────────┐
                          ▼                       ▼                       ▼
                    subdomains              URLs / IPs / ports        findings
                          └───────────── normalized into ───────────────┘
                                                 │
                                        SQLite datastore
                                          (crash-safe)
                                                 │
                                    ┌────────────┴────────────┐
                                    ▼                         ▼
                            CLI  /  Bubble Tea TUI      Markdown + data exports

Why it's a strong project


🛠️ Stack & Techniques