
SkillSpector
Security scanner for AI agent skills. Detect vulnerabilities, malicious patterns, security risks, prompt injection, data exfiltration, and…

Security scanner for AI agent skills. Detect vulnerabilities, malicious patterns, security risks, prompt injection, data exfiltration, and…

Static analysis tool for infrastructure as code that detects cloud misconfigurations, vulnerabilities, and secrets across Terraform, Kubernetes,…

safe execution paths for agents - zero trust, zero setup, zero latency.

Find, verify, and analyze leaked credentials

Real-time npm/PyPI supply-chain threat detection. Behavioral chain analysis, AST scanning, IOC feeds, and compound scoring engine.

AI-powered Docker security scanner that explains vulnerabilities in plain English. An OWASP Lab Project.

Snyk CLI scans and monitors your projects for security vulnerabilities.

Detect and validate 500+ types of hardcoded secrets with advanced checks. Use it as a pre-commit hook, GitHub Action, or CLI for proactive secret…

Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more

Shannon is an autonomous, white-box AI pentester for web applications and APIs. It analyzes your source code, identifies attack vectors, and executes…

Vulnerability scanner written in Go which uses the data provided by https://osv.dev

Formal inter-procedural taint analysis engine for application security. Tracks untrusted data across function boundaries, persistence layers, and…

Open-source AI penetration testing tool to find and fix your app’s vulnerabilities.

Runtime-aware SCA — proves which CVEs are actually reachable, not just installed.

Security scanner for AI agents, MCP servers and agent skills.


🐍 🔍 GuardDog is a CLI tool to Identify malicious PyPI and npm packages

Open-source secret scanner in Rust