Hermes Atlas
Automations & use cases · works with Hermes Agent

Hermes OSINT CTF Agent

yassirboudda/hermes-osint-ctf-agent

OSINT CTF agent template with username pivots, Reddit archives and swappable LLM providers

In short

Hermes OSINT CTF Agent is an open-source template for an OSINT capture-the-flag agent that bundles username pivot tools, Reddit archive lookups and CTFd hooks, and can use DeepSeek, OpenRouter or Nous Research models.

What Hermes OSINT CTF Agent does

Hermes OSINT CTF Agent is a folder of skills, a knowledge corpus and Python tools meant to be wired in as the skill or knowledge root of a Hermes, Cursor or custom agent runtime. The corpus covers OSINT CTF methodology, write-up digests and challenge patterns. The username workflow runs Instant Username, then Maigret, then a Rosint-style Reddit lookup using Arctic Shift and PullPush, then OSINT Industries if its API key is set.

Orchestrator and sub-agent roles can each use DeepSeek, OpenRouter or Nous Research Hermes models (Hermes-4.3-36B, Hermes-4-70B and Hermes-4-405B are listed), selected through ORCHESTRATOR_PROVIDER and SUBAGENT_PROVIDER in .env and defaults in config/models.yaml. Hooks cover CTFd, OSINTMapper, captcha solvers and Browser-Use or Apify, and an opsec folder sets a dedicated user agent and rules against fuzzing, brute forcing and social engineering. A bundled Maigret subset covers about 200 top sites. The repository contains placeholders only, no live secrets.

Key features

  • Username pivot chain: Instant Username, Maigret, Rosint-style Reddit lookup, OSINT Industries
  • Pluggable orchestrator and sub-agent providers: DeepSeek, OpenRouter or Nous Research
  • CTFd and OSINTMapper command-line hooks
  • OSINT CTF methodology and write-up corpus
  • Bundled Maigret subset of about 200 sites
  • OPSEC rules that exclude fuzzing, brute forcing and social engineering

When to use it

  • Working through OSINT challenges in a CTF with an agent that already knows the tooling
  • Pivoting from a username across social platforms and Reddit archives
  • Comparing DeepSeek, OpenRouter and Nous Hermes models as the orchestrator

Who it is for: CTF players and OSINT researchers who want a starting template for an agent that runs on Hermes or another runtime.

How it fits with Hermes Agent

It names Hermes as one of the runtimes to wire the folder into, and supports Nous Research Hermes models as one of three LLM providers.

How to install Hermes OSINT CTF Agent

These commands are copied from the project's README. Check the repository for the latest steps before you run them.

git clone https://github.com/yassirboudda/hermes-osint-ctf-agent.git
cd hermes-osint-ctf-agent
cp .env.example .env
pip install -r requirements.txt

Requirements: Your own API keys in .env for the LLM providers you choose, plus CTFd or OSINTMapper credentials for those hooks; an OSINT Industries key is optional

Note: It is a template whose credentials are all placeholders, so you must supply your own API keys in .env.

FAQ

What is Hermes OSINT CTF Agent?

Hermes OSINT CTF Agent is an open-source template for an OSINT capture-the-flag agent. It bundles skills, a methodology corpus, username and Reddit lookup tools and CTFd hooks.

Does Hermes OSINT CTF Agent work with Hermes Agent?

Yes, in two ways. Nous Research Hermes models are one of its three LLM providers, and the README says to wire the folder in as the skill or knowledge root of a Hermes, Cursor or custom agent runtime.

What do I need to run Hermes OSINT CTF Agent?

You need your own API keys, copied from .env.example into .env, for the LLM providers you pick. CTFd and OSINTMapper hooks need their own credentials, and the username and Reddit tools need no paid key.

Similar automations for Hermes Agent

All automations

Related guides: Build agent teams with the Hermes kanban board · How to run Hermes Agent securely