Trickest Inventory is an open source dataset and workflow collection designed to provide an extensive asset inventory for public bug bounty programs. The repository tracks and organizes security-relevant assets for more than 800 companies participating in public vulnerability disclosure and bug bounty initiatives. It collects information such as DNS records and web server data, helping security researchers better understand the attack surface of these programs. It aims to streamline reconnaissance for bug bounty hunters by providing ready-to-use asset information so researchers can quickly begin testing new targets. It also helps security teams gain clearer visibility into their exposed infrastructure and publicly reachable systems. Much of the data in the repository is generated automatically through workflows that gather, transform, and consolidate bug bounty program data from multiple sources.
Features
- Maintains an asset inventory covering more than 800 public bug bounty programs
- Collects DNS and web server data associated with bug bounty targets
- Aggregates bug bounty program information from multiple public datasets
- Performs passive and active enumeration to discover subdomains and assets
- Generates consolidated datasets such as hostnames, servers, and program metadata
- Publishes automatically generated results to reduce redundant scanning activity