Agent Plugins Marketplace
← All plugins

darkmoon

v0.1.0

Drive a self-hosted Darkmoon Pro instance over MCP: start an authorized autonomous AI pentest run, poll its status, list campaigns and read findings. Requires your own Darkmoon Pro dashboard; run_pentest is not read only.

Codex1 MCP serverstdio

By ASC-ITLicense: GPL-3.0-only1.2k GitHub starsUpdated 16 hours ago

Directory evidence

Runtimes
Codex
Parsed components
1 skill or MCP entry
Source updated
Oct 6, 2026
Manifest status
Canonical path parsed

The directory validates manifest shape and source location. It does not execute the plugin or provide a security endorsement. Review the indexing methodology →

Install darkmoon for Codex

Installs for the current user
codex plugin marketplace add hashgraph-online/awesome-codex-plugins
codex plugin marketplace upgrade awesome-codex-plugins
codex plugin add darkmoon@awesome-codex-plugins

Paste and run these commands in a terminal with Codex. They add and refresh the awesome-codex-plugins catalog, then install this plugin.

Compatibility: the page URL and API slug “darkmoon” remain stable.

  • Codex: darkmoon@agent-plugin-marketplace → darkmoon@awesome-codex-plugins

The installer fetches third-party code from the source repository shown on this page. This directory validates manifest structure and source location, but does not perform a security audit; review the manifest, components, and source before installing.

Get the source manually
git clone https://github.com/hashgraph-online/awesome-codex-plugins

Clone the source repository, then follow its setup instructions to add the plugin to a compatible client. The plugin root is plugins/ASCIT31/darkmoon-mcp-server/.

Plugin files

plugins/ASCIT31/darkmoon-mcp-server/
├── .codex-plugin/plugin.json
└── .mcp.json

MCP servers1

darkmoonstdio
command
npx
args
-y @darkmoon_ai/mcp-server
env.DARKMOON_BASE_URL
${DARKMOON_BASE_URL}
env.DARKMOON_USERNAME
${DARKMOON_USERNAME}
env.DARKMOON_PASSWORD
${DARKMOON_PASSWORD}

Plugin manifests1

plugins/ASCIT31/darkmoon-mcp-server/.codex-plugin/plugin.json
{
  "name": "darkmoon",
  "version": "0.1.0",
  "description": "Drive a self-hosted Darkmoon Pro instance over MCP: start an authorized autonomous AI pentest run, poll its status, list campaigns and read findings. Requires your own Darkmoon Pro dashboard; run_pentest is not read only.",
  "author": {
    "name": "ASC-IT",
    "url": "https://github.com/ASCIT31"
  },
  "homepage": "https://github.com/ASCIT31/Dark-Moon",
  "repository": "https://github.com/ASCIT31/darkmoon-mcp-server",
  "license": "GPL-3.0-only",
  "keywords": [
    "darkmoon",
    "mcp",
    "pentest",
    "security",
    "vulnerability-scanner",
    "ai-agent",
    "codex"
  ],
  "skills": "./plugins/darkmoon/skills/",
  "mcpServers": "./.mcp.json",
  "interface": {
    "displayName": "Darkmoon",
    "shortDescription": "Run authorized autonomous AI pentests on your self-hosted Darkmoon Pro",
    "longDescription": "Darkmoon is an open source (GPL-3.0) autonomous AI penetration testing platform. This plugin exposes four MCP tools (run_pentest, get_run_status, list_campaigns, get_findings) that talk to the Dashboard API of your own self-hosted Darkmoon Pro instance. There is no public hosted endpoint: you supply DARKMOON_BASE_URL and dashboard credentials. run_pentest starts a real assessment and is not read only; only target systems you own or are explicitly authorized in writing to test. Findings can include false positives and must be reviewed by a qualified human.",
    "developerName": "ASC-IT",
    "category": "Security",
    "capabilities": [
      "Interactive",
      "Read",
      "Write"
    ],
    "websiteURL": "https://dark-moon.org",
    "privacyPolicyURL": "https://github.com/ASCIT31/darkmoon-mcp-server/blob/main/SECURITY.md",
    "termsOfServiceURL": "https://github.com/ASCIT31/darkmoon-mcp-server/blob/main/LICENSE",
    "defaultPrompt": [
      "Start an authorized Darkmoon pentest on my staging host",
      "Show the status of my latest Darkmoon run",
      "List the high severity findings of my Darkmoon campaign"
    ],
    "brandColor": "#4F46E5",
    "composerIcon": "./assets/icon.svg",
    "logo": "./assets/icon.svg"
  }
}

If you maintain this plugin, link to this source-backed listing from your README so users can review its manifest and indexed components.

[darkmoon on Agent Plugins Marketplace](https://pluginsmp.com/plugins/darkmoon)