ARTEX is a Go‑based single‑binary penetration‑testing platform that embeds a Next.js frontend and relies on PostgreSQL for storage. Its core architecture consists of two interconnected graphs: a global Asset Graph that stores deduplicated nodes such as root domains, subdomains, services and endpoints, and a per‑task Exploration Graph that records goals, intents, facts, findings and hints linked by edges like spawns, yields, derived_from and proves. Agents built with the norma SDK (agentcore, tool, permission, harness, memory, transcript) are split into a planner that maintains a shared todolist for serial exploit chains, N worker goroutines that execute real‑world tools (Bash, HTTP, Kali, etc.) under a MITM proxy that logs full traffic and CA validation, and a main‑agent for human‑in‑the‑loop interaction. The planner wakes on graph changes, consults the todispatch list, assigns intents to workers, who then write back assets, facts or findings; the resulting graph updates trigger the next planner cycle, enabling steady multi‑step attack chains without stateful sessions. Installation options include Docker (docker compose up -d) or a local build (go build -tags embedui) with automatic schema migrations on each start. The system defaults to three concurrent workers, listens on :8787 for the API/frontend and :8788 for traffic recording, and supports LLM configuration via ANTHROPIC_API_KEY or OPENAI_API_KEY. Release builds produce compressed binaries for Linux, macOS and Windows, with an automated update mechanism that validates SHA256 checksums, runs a smoke test, and rolls back after three consecutive start‑up failures while preserving Postgres data, the ./data directory and skill sets.

Read original