Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
safety — Safety checks Python dependencies for known security vulnerabilities and suggests the proper remediations for vulnerabilities detected. | Kitploit
Tools/GitHubGitHub/pyupio/safety
Vulnerability ScannersCode AnalysisDevSecOpsSupply Chain Security
GitHubpyupio/safety

safety

Safety checks Python dependencies for known security vulnerabilities and suggests the proper remediations for vulnerabilities detected.

View Repository
2.0k2015627 days agoReviewed by Kitploit
Website

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

safety

Downloads CI Status License PyPI Version Python Versions Coverage

[!NOTE] Come and join us at SafetyCLI. We are hiring for various roles.

Table of Contents

  • Table of Contents
  • Introduction
  • Key Features
  • Getting Started
    • GitHub Action
    • Command Line Interface
      • 1. Installation
      • 2. Log In or Register
      • 3. Running Your First Scan
    • Basic Commands
  • Service-Level Agreement (SLA)
  • Detailed Documentation
  • License
  • Supported Python Versions
  • Resources

Introduction

Safety CLI is a Python dependency vulnerability scanner designed to enhance software supply chain security by detecting packages with known vulnerabilities and malicious packages in local development environments, CI/CD, and production systems. Safety CLI can be deployed in minutes and provides clear, actionable recommendations for remediation of detected vulnerabilities.

Leveraging the industry's most comprehensive database of vulnerabilities and malicious packages, Safety CLI Scanner allows teams to detect vulnerabilities at every stage of the software development lifecycle.

Key Features

  • Versatile, comprehensive dependency security scanning for Python packages.
  • Leverages Safety DB, the most comprehensive vulnerability data available for Python.
  • Clear output with detailed recommendations for vulnerability remediation.
  • Automatically updates requirements files to secure versions of dependencies where available, guided by your project's policy settings.
  • Scanning of individual requirements files and project directories or system-wide scans on developer machines, CI/CD pipelines, and Production systems to detect vulnerable or malicious dependencies.
  • JSON, SBOM, HTML and text output.
  • Easy integration with CI/CD pipelines, including GitHub Actions.
  • Enterprise Ready: Safety CLI can be deployed to large teams with complex project setups with ease, on-premise or as a SaaS product.

Getting Started

GitHub Action

  • Test Safety CLI in CI/CD using our GitHub Action.
  • Full documentation on the GitHub Action is available on our Documentation Hub.

Command Line Interface

1. Installation

  • Install Safety on your development machine.
  • Run pip install safety.

2. Log In or Register

  • Run your first scan using safety scan.
  • If not authenticated, Safety will prompt for account creation or login.
  • Use safety auth to check authentication status.

3. Running Your First Scan

  • Navigate to a project directory and run safety scan.
  • Safety will perform a scan and present results in the Terminal.

Basic Commands

  • safety --help: Access help and display all available commands.
  • safety auth: Start authentication flow or display status.
  • safety scan: Perform a vulnerability scan in the current directory.
  • safety system-scan: Discover supply-chain assets on your development machine — AI assistants (e.g. Claude Code, Claude Desktop), dependencies, runtimes, environments, and developer tools. Available as part of the Safety commercial product — see https://getsafety.com/.
  • safety scan --apply-fixes: Update vulnerable dependencies.

Service-Level Agreement (SLA)

We are committed to maintaining a high level of responsiveness and transparency in managing issues reported in our codebases. This SLA outlines our policies and procedures for handling issues to ensure timely resolutions and effective communication with our community.

  • Read our full SLA

Detailed Documentation

Full documentation is available at https://docs.safetycli.com.

Included in the documentation are the following key topics:

Safety CLI 3

  • Introduction to Safety CLI 3
  • Quick Start Guide
  • Installation and Authentication
  • Scanning for Vulnerable and Malicious Packages
  • Viewing Scan Results
  • Available Commands and Inputs
  • Scanning in CI/CD
  • License Scanning
  • Exit Codes

Vulnerability Remediation

  • Applying Fixes

Integration

  • Securing Git Repositories
  • GitHub
  • GitHub Actions
  • GitLab
  • Git Post-Commit Hooks
  • BitBucket
  • Pipenv
  • Docker Containers

Administration

  • Policy Management

Output

  • Output Options and Recommendations
  • JSON Output
  • SBOM Output
  • HTML Output

Miscellaneous

  • Release Notes
  • Breaking Changes in Safety 3
  • Safety 2.x Documentation
  • Support

System status is available at https://status.safetycli.com

Further support is available by emailing [email protected].

License

Safety is released under the MIT License.

Upon creating an account, a 7-day free trial of our Team plan is offered to new users, after which they will be downgraded to our Free plan. This plan is limited to a single user and is not recommended for commercial purposes.

Download Tool