
MakerChecker
Open-source security gateway & static scanner for AI agents. Enforce role-based access control (RBAC), human-in-the-loop approvals, segregation of…

Open-source security gateway & static scanner for AI agents. Enforce role-based access control (RBAC), human-in-the-loop approvals, segregation of…

Scan is a free & Open Source DevSecOps tool for performing static analysis based security testing of your applications and its dependencies. CI and…

100% Free & Open Source • Privacy-First Security Scanning and AI Code Review CLI

Horusec is an open source tool that improves identification of vulnerabilities in your project with just one command.

Static analysis scanner for infrastructure-as-code that detects security vulnerabilities, compliance violations, and misconfigurations across…

Static analysis tool for CI/CD systems that detects and fixes security issues in GitHub Actions, Dependabot, and pre-commit configurations, including…

Kubernetes object analysis with recommendations for improved reliability and security. kube-score actively prevents downtime and bugs in your…

Detect compliance and security violations across Infrastructure as Code to mitigate risk before provisioning cloud native infrastructure.

The OWASP Cheat Sheet Series was created to provide a concise collection of high value information on specific application security topics.

Kubernetes RBAC static analysis & visualisation tool

Find, verify, and analyze leaked credentials

Runs Trivy as GitHub action to scan your Docker container image for vulnerabilities

Reproducer for CVE-2026-43867 — Apache Camel camel-pqc AwsSecretsManagerKeyLifecycleManager unsafe key-metadata deserialization (RCE)

AI-first security scanner. NEW in v2026.7: Claude Code compromise detection — vet .claude/ hooks, permissions & skills before you clone — plus an…


secure multiplexed execution paths for agents - zero trust, zero setup, zero latency.

Scan codebases and GCP projects for exposed API credentials