
codeql
CodeQL: the libraries and queries that power security researchers around the world, as well as code scanning in GitHub Advanced Security

CodeQL: the libraries and queries that power security researchers around the world, as well as code scanning in GitHub Advanced Security

UNIX-like reverse engineering framework and command-line toolset

Pluggable linting tool to prevent committing credential.

cryptography is a package designed to expose cryptographic primitives and recipes to Python developers.

🐍 🔍 GuardDog is a CLI tool to Identify malicious PyPI and npm packages

Community curated list of templates for the nuclei engine to find security vulnerabilities.

Security Governance for Agentic AI

Vulnerability scanner written in Go which uses the data provided by https://osv.dev

Static analysis tool for CI/CD systems that detects and fixes security issues in GitHub Actions, Dependabot, and pre-commit configurations, including…

Security Scanner for Agent Skills

Fast, developer-friendly JS/TS dependency vulnerability scanner with local lockfile scanning, OSV matching, direct vs transitive visibility, --fix,…

PHP 8.4+ security library (mirror)

The system of record for AI-written software. A persistent graph of entities, relationships, changes, and provenance, so humans and AI agents see…

Main repo for hosting release binaries

High-performance secrets scanner. CLI, Go library, Burp Suite extension, and Chrome extension. 487 detection rules with live credential validation.

Open-source AI penetration testing tool to find and fix your app’s vulnerabilities.

Code-quality and static-analysis platform with quality gates, multi-language scanning, and security-focused rules to detect vulnerabilities and…

Rule-based linter for OpenSSH client config files that detects duplicate hosts, missing identity files, weak algorithms, wildcard ordering issues,…