AI copilot · powered by Claude
A copilot for bug bounty hunters.
Read program scope, write submission-ready reports, check drafts before you submit, and sharpen your skills — all in one place. For hunters working lawfully.
Authorized testing only — targets you own or that are in a program / permitted. We never touch a target.
How it works
A simple flow that stays within the lawful lane.
- 01
Paste text
A program policy, finding notes, or a draft report — paste it as text. We don't fetch or scan anything online.
- 02
Claude processes it
The model produces structured output: scope analysis, a tidy report, or scores & fixes.
- 03
You verify & submit
Every output is a draft for you to check. Reproduce, verify the CVSS, then submit through a lawful program.
Four tools
Each focuses on one part of a hunter's workflow.
Scope Reader
Paste a program's policy/scope; get in-scope & out-of-scope assets, prohibited actions, reward info (if present), and red flags. Plus an 'is this target in scope?' checker.
Report Writer
Paste rough finding notes; Claude drafts a platform-style report: title, summary, asset, weakness (CWE), steps to reproduce, impact, remediation, and a draft CVSS 3.1 vector.
Report Check
Score your draft report on clarity, completeness, reproducibility, and impact clarity — plus warnings for findings commonly considered low value.
Learn
Short lessons: methodology & recon for authorized targets, the OWASP Top 10, writing reports, and legal/ethics — with an AI tutor to ask questions.
Who it's for
Built for people who test security with permission.
Bug bounty hunters
Save time reading policies and writing reports that pass triage.
Security researchers & pentesters
Turn findings from authorized testing into clear reports.
Learners
Understand vulnerability classes, methodology, and ethics through lessons + a tutor.
Powered by Claude, honest by default
With an ANTHROPIC_API_KEY, Claude generates the answers. Without a key, the site still runs in sample mode (clearly labeled illustrative answers). A deep model (e.g. Opus) is used for scope analysis, report writing & checking; a fast model for the tutor.
What we don't do
- No invented statistics, users, testimonials, or payout figures.
- No claimed affiliation with any platform (HackerOne/Bugcrowd/Intigriti are named only as examples).
- No touching, fetching, or scanning targets. We only process text you paste.
- No help with unauthorized attacks, data theft, malware, phishing, or DoS.
FAQ
Does it hack things for me?+
No. Dellivers never touches a target. It helps you understand scope and write/check reports for findings on targets you're authorized to test.
Is my data stored?+
No. No account; the app doesn't store text — it's only forwarded to the Claude API to produce an answer. Typed phones/emails are auto-redacted.
Can I submit the output as-is?+
Treat every output as a draft. Reproduce the finding, verify the CVSS vector, and follow the program's rules before submitting.
Is this legal?+
Security testing is only lawful with explicit permission or within a bug bounty program. In Indonesia, unauthorized access is covered broadly by the ITE Law. Follow applicable law.
Ready to try?
Start by reading a program's scope, or turn your notes into a report.
Open Scope Reader18+ · dellivers.com