
njsscan
Semantic-aware SAST scanner for Node.js applications that detects insecure code patterns using libsast pattern matching and semgrep syntax-aware…

Semantic-aware SAST scanner for Node.js applications that detects insecure code patterns using libsast pattern matching and semgrep syntax-aware…

Nosey Parker is a command-line tool that finds secrets and sensitive information in textual data and Git history.

A lightweight, cross-platform CLI tool that scans your filesystem to detect exposed secrets, API keys, and tokens. Built with Go for maximum…

Alat ini mendeteksi potensi kerentanan React2Shell (CVE-2025-55182) dalam proyek React dengan memeriksa: - File `package.json` dan file lock untuk…

Git hook-based secret scanner that detects tokens, passwords, and private keys in outgoing changesets, preventing sensitive data from being committed…

Open-source, cross-platform, multi-purpose security auditing tool

Static and dynamic analysis tool for detecting malicious code, suspicious binaries, and privacy violations

Automate PowerShell script source code obfuscation & virtualization with a flexible Web API for Python (pip package).

A security focused static analysis tool for Android and Java applications.

Kernel-level eBPF sandbox for securing LLM agent tool calls made through the Model Context Protocol (MCP)

Automated static code analysis framework integrated with SonarQube for early vulnerability detection in source code by scanning Git repositories…

Tool for reverse engineering of Angular applications

Static code analysis tool for Android apps based on OWASP MASVS, detecting security vulnerabilities in APK files with low false-positive rates and…

Defense-in-depth bundle for MCP stdio servers: drop-in guardExec/guardSpawn wrappers, AST audit CLI, reference MCP server. Closes the Ox-Security…

APKinspector is a powerful GUI tool for analysts to analyze the Android applications.

Scan is a free & Open Source DevSecOps tool for performing static analysis based security testing of your applications and its dependencies. CI and…

Are you get Tanstack Supply chain attack attack of 5/11? CVE-2026-45321 / GHSA-g7cv-rxg3-hmpx

Detect and fix log4j log4shell vulnerability (CVE-2021-44228)