Finding a threat is only the beginning. Takedown Orchestrator connects discovery, inspection, reporting, and verification in one auditable workflow.
The pipeline ingests target URLs, scans their content with Semgrep, and produces structured findings with confidence scores and code-level evidence. An autonomous coordinator submits reports, saves receipts, and rechecks target availability. A persistent ledger prevents duplicate submissions across restarts.
Our live dashboard shows scan evidence, recorded progress, action receipts, and verification results. Its animated evidence replay explains a completed run without triggering new actions.
We integrated three sponsor technologies:
ClickHouse: stores and queries threat events and action records.Semgrep: performs actual content scanning and produces actionable evidence.Akash Network: hosts the containerized worker and live dashboard.Our controlled demonstration uses a harmless team-owned target and a private mock registrar. It completes ingestion → actual scan → report submission → confirmed suspension autonomously, with a recorded run of 15.054 seconds. External reporting is disabled during this demonstration.
All 78 tests pass. The complete ClickHouse pipeline also passes container tests covering restart, database outage recovery, and worker failure. The hosted controlled demo currently uses file-backed storage; ClickHouse execution is verified separately in CI.