
teller
Cloud native secrets management for developers - never leave your command line for secrets.

Cloud native secrets management for developers - never leave your command line for secrets.

SAST CLI for scanning Java, JavaScript, and .NET applications plus AWS Lambda functions, detecting code vulnerabilities and over-permissive IAM…

Curated directory of static analysis (SAST) tools and linters for programming languages, configs, build tools, and CI, focused on improving code…

Static analysis security rules for vulnerability detection and audit-focused code review across Java, Go, Python, C#, Kotlin, PHP, Kubernetes, and…

Macro-header for compile-time C obfuscation (tcc, win x86/x64)

AI-first security scanner. NEW in v2026.7: Claude Code compromise detection — vet .claude/ hooks, permissions & skills before you clone — plus an…

The community's most comprehensive, continuously-updated index of research on Large Language Models for software vulnerability detection — papers…

Isolated JavaScript sandbox for Node.js that runs untrusted code with restricted access to built-in modules and host resources via Proxy-based…

Nuclio Dashboard (NOP mode) accepts unauthenticated POST /api/functions. The spec.handler field isn't path-validated, so…

Scans Infrastructure as Code files for security misconfigurations and vulnerabilities using KICS, with Bitbucket Code Insights reporting.

AI-powered Docker security scanner that explains vulnerabilities in plain English. An OWASP Lab Project.

Runs Trivy as GitHub action to scan your Docker container image for vulnerabilities

Sandboxed devcontainer for running Claude Code in bypass mode safely. Built for security audits and untrusted code review.

ecurity patch for CVE-2023-26136 in tough-cookie 2.5.0 - Prototype pollution vulnerability fix with backward compatibility

Log4j 漏洞本地检测脚本。 Scan all java processes on your host to check whether it's affected by log4j2 remote code execution vulnerability (CVE-2021-45046)

The code for personally reproducing the corresponding vulnerability

Kernel-level eBPF sandbox for securing LLM agent tool calls made through the Model Context Protocol (MCP)

Open-source secret scanner in Rust