
fad-checker
Buildless dependency auditor that scans 10 ecosystems offline, reporting CVEs prioritized by CISA KEV and EPSS, EOL packages, licenses, committed…

Buildless dependency auditor that scans 10 ecosystems offline, reporting CVEs prioritized by CISA KEV and EPSS, EOL packages, licenses, committed…

Prevents you from committing secrets and credentials into git repositories

CodeQL-based scanner that inventories cryptographic function calls across repositories and GitHub organizations, producing a Cryptographic Bill of…

Rule-based linter for OpenSSH client config files that detects duplicate hosts, missing identity files, weak algorithms, wildcard ordering issues,…

A macOS app to scan Xcode project files for possible security issues.

A lightweight, cross-platform CLI tool that scans your filesystem to detect exposed secrets, API keys, and tokens. Built with Go for maximum…

CVE-2026-42533 Nginx

A fast universal code security scanner, written in Rust. Batteries included: supports 14 languages, TUI for triage, secrets, post-quantum audits,…

OpenSSF Scorecard - Security health metrics for Open Source

Python Wheel File Security Scanner — scan .whl files for security issues before installation. Detects path traversal (CVE-2026-24049), RECORD…

All-in-one tool for managing vulnerability reports from AppSec pipelines

VisualCodeGrepper - Code security scanning tool.

Anteater - CI/CD Gate Check Framework

Plugin to fix security vulnerability CVE-2023-40626 in Joomla 3.10.12

Jackhammer - One Security vulnerability assessment/management tool to solve all the security team problems.

Next-generation SQL static analyzer written in Rust. 282+ rules. Zero false positives. Security, performance, reliability, cost, compliance, quality.…

Go-based CLI tool that scans codebases for launch readiness, detecting missing configuration, security hygiene issues, secret leaks, and integration…

SEDATED® Project (Sensitive Enterprise Data Analyzer To Eliminate Disclosure)