PHAGE is a multi-agent AI extension that monitors every page you visit, detects cyberattacks in real time, and deploys autonomous countermeasures — all inside your browser.
Each layer of the mesh has a specialized role. Together they form an autonomous defense pipeline.
Monitors network traffic, DOM mutations, script injections, and file system events to detect suspicious activity across multiple surfaces.
Maps threat events to MITRE ATT&CK techniques, builds a kill-chain narrative, and predicts the attacker's next moves.
Simulates the attacker's perspective to find exploitable gaps and stress-test defenses before the threat fully materialises.
Generates prioritised countermeasures — blocking rules, isolation commands, patch recommendations — tailored to the specific attack.
Deploys dynamic honeypots and fake assets to lure, mislead, and gather intelligence on the attacker.
Extracts a Threat DNA fingerprint from every incident and stores it locally so PHAGE gets smarter with every attack it sees.
PHAGE combines cutting-edge AI with browser-native power to give you enterprise-grade security as a lightweight extension.
Identifies ransomware, APT intrusions, cryptominers, and more within seconds of the first suspicious signal.
No manual intervention required. The AI mesh deploys countermeasures automatically based on the attack's severity and type.
Every scan produces a professional incident report you can download — covering kill-chain stage, countermeasures, and Threat DNA.
Your browsing data never leaves your machine. All analysis runs via a local server you control, with no cloud data collection.
PHAGE builds a fingerprint of every attack it encounters, growing more effective over time without requiring model retraining.
Watch each of the six AI agents work in real time with a sleek, dark-themed popup dashboard that updates via WebSocket.
PHAGE runs locally — no account, no cloud, no subscription required.
Download the PHAGE package below and extract the folder to a permanent location on your machine.
Inside the project folder, run pip install -r requirements.txt to install all required libraries.
Copy .env.example → .env and paste your OpenRouter or LLMs Factory API key.
Run python server.py to start the API server on localhost:8765.
Open chrome://extensions, enable Developer Mode, click Load unpacked, and select the extension/ folder.
Navigate to any website, open the PHAGE popup, and click Scan Current Page — the AI mesh will do the rest.
Open source, free forever. Built for security researchers, developers, and anyone who values their privacy online.