
bunkerweb
🛡️ Open-source and cloud-native Web Application Firewall (WAF)

🛡️ Open-source and cloud-native Web Application Firewall (WAF)

Application scanning component of purpleteam

Stage two containers

CLI component of purpleteam

Server scanning component of purpleteam

TLS checking component of purpleteam

Orchestration component of purpleteam

Unified application gateway providing reverse proxy, WAF, CC defense, OAuth2 authentication, ACME certificate automation, and GSLB for secure,…

Permission Manager is a project that brings sanity to Kubernetes RBAC and Users management, Web UI FTW

Local web app for conducting a Check Point Trusted Access Review. This scanner is built specifically to look for configuration issues around…

Multi-cloud security posture scanner that audits AWS, Azure, GCP, and OCI for misconfigurations, compliance violations (HIPAA, PCI, CIS), and…

AI-first security scanner. NEW in v2026.7: Claude Code compromise detection — vet .claude/ hooks, permissions & skills before you clone — plus an…

An AWS CloudFormation template used to provision and manage AWS WAFv2 resources, including a Web ACL, managed rule groups, a custom regex pattern…

Agent-less vulnerability scanner for Linux, FreeBSD, Container, WordPress, Programming language libraries, Network devices

Open Source Cloud Native Application Protection Platform (CNAPP)

Weave GitOps is transitioning to a community driven project! It provides insights into your application deployments, and makes continuous delivery…

OWASP ServerlessGoat: a serverless application demonstrating common serverless security flaws

Gixy-Next: NGINX Configuration Security Scanner & Performance Checker