
kin
Semantic graph-based version control for AI-written code. Tracks entities and relations instead of file diffs, enabling blast radius analysis, shadow…

Semantic graph-based version control for AI-written code. Tracks entities and relations instead of file diffs, enabling blast radius analysis, shadow…

opensource repo for validating agentic AI applications: redteam, behavior, supply-chain, static analysis

The community's most comprehensive, continuously-updated index of research on Large Language Models for software vulnerability detection — papers…

Security Scanner for Agent Skills

A minimal, secure Python interpreter written in Rust for use by AI

The AI Security Verification Standard (AISVS) focuses on providing developers, architects, and security professionals with a structured checklist to…

Security Governance for Agentic AI

Security scanner for AI agent skills. Detect vulnerabilities, malicious patterns, security risks, prompt injection, data exfiltration, and…

A doggo that helps look for security issues in your repositories.

OWASP Secure Agent Playbook Project

agent runtime security - zero trust, zero setup, zero latency.

Security scanner for AI agents, MCP servers and agent skills.

Vigolium - High-fidelity vulnerability scanner fusing agentic AI with native speed, modularity, and precision

Pre-install security for AI agents, npm packages, and MCP servers. Zero-dep local static analysis; normal scans never execute package code.

Open-source AI penetration testing tool to find and fix your app’s vulnerabilities.

Formal inter-procedural taint analysis engine for application security. Tracks untrusted data across function boundaries, persistence layers, and…

AI-powered Docker security scanner that explains vulnerabilities in plain English. An OWASP Lab Project.

Use Garry Tan's exact Claude Code setup: 23 opinionated tools that serve as CEO, Designer, Eng Manager, Release Manager, Doc Engineer, and QA