
sast-scan-action
GitHub Action for Offensive360 SAST scans and SARIF results. See the open-source program for eligibility and setup.

GitHub Action for Offensive360 SAST scans and SARIF results. See the open-source program for eligibility and setup.


Policy-governed LLMSecOps framework providing AST-based SAST, secret scanning, supply-chain and multi-cloud CSPM checks, AI-BoM generation, and CI/CD…

The OWASP Cheat Sheet Series was created to provide a concise collection of high value information on specific application security topics.


A command line CWE discovery tool based on OWASP / CAPSEC database of Common Weakness Enumeration.

The Secure Coding Practices Quick-reference Guide from OWASP

The Secure Coding Dojo is a platform for delivering secure coding knowledge.

Executable security regression testing for agentic applications and MCP-integrated systems.

A Common Weakness Enumeration (CWE) Node.js SDK compliant with MITRE / CAPEC

Vulnerability Patterns Detector for C# and VB.NET

Silent dependency injection through AI documentation pipelines. 240 isolated Docker runs proving Context Hub's zero-sanitization MCP server lets…

OWASP Secure Agent Playbook Project

OWASP Certified Secure-Software Developer

OWASP Smart Contract Security (SCS) Project

Source code for the Binaries of OWASP WrongSecrets

The OWASP Benchmark GitHub repo has moved to: https://github.com/OWASP-Benchmark/BenchmarkJava