
sast-scan
Scan is a free & Open Source DevSecOps tool for performing static analysis based security testing of your applications and its dependencies. CI and…

Scan is a free & Open Source DevSecOps tool for performing static analysis based security testing of your applications and its dependencies. CI and…

Jackhammer - One Security vulnerability assessment/management tool to solve all the security team problems.

Identify hardcoded secrets in static structured text

a guard that blocks catastrophic agent actions

Open-source, cross-platform, multi-purpose security auditing tool

Open source compliance tool for development platforms.

A multi-platform CI/CD vulnerability detection and attack automation tool for identifying security weaknesses in pipeline configurations.

WhiteBox CMS analysis

Go-based CLI tool that scans codebases for launch readiness, detecting missing configuration, security hygiene issues, secret leaks, and integration…

Apache RAT (Release Audit Tool) Gradle Plugin

A lightweight, cross-platform CLI tool that scans your filesystem to detect exposed secrets, API keys, and tokens. Built with Go for maximum…

Defensive detection & mitigation tool for CVE-2026-31431 ("Copy Fail") — Linux kernel algif_aead LPE. No exploit code included.

I have created AegisJava, a tool to fix (detect and mitigate) CVE-2025-30749.

Trigger-aware web server CVE audit for nginx and Apache. Goes beyond version matching by checking whether the vulnerable code path is actually…