
vpod
Lightweight, secure Linux sandboxes for untrusted processes. Runs in the browser and on the server.

Lightweight, secure Linux sandboxes for untrusted processes. Runs in the browser and on the server.

Branchable computing by using a portable, lightweight, self-contained virtual machine

JIT-based userspace Linux kernel that runs containers natively on Apple Silicon macOS without a VM. Drop-in Docker Engine API replacement with…

Sandboxes containers via a userspace application kernel that intercepts system calls, limits host kernel access, and integrates with…

AI-powered Docker security scanner that explains vulnerabilities in plain English. An OWASP Lab Project.

High-performance secrets scanner. CLI, Go library, Burp Suite extension, and Chrome extension. 487 detection rules with live credential validation.

Rootless container runtime and sandbox that launches kernel-enforced OCI images in milliseconds with no daemon, featuring resource profiles, seccomp…

A security-focused library OS supporting kernel- and user-mode execution

a guard that blocks catastrophic agent actions

Low-level unprivileged sandboxing tool used by Flatpak and similar projects

Proper sandboxing for agentic coding and web browsing

Kata Containers is an open source project and community working to build a standard implementation of lightweight Virtual Machines (VMs) that feel…

A secure low code deception runtime framework, leveraging AI for System Virtualization.

Shell script to detect TanStack npm supply chain attack indicators (CVE-2026-45321 / GHSA-g7cv-rxg3-hmpx)

The independent security agent for AI-written software. Finds issues, investigates whether they are real, and shows you the evidence. Deterministic…

PMG protects developers, AI agents from malicious open source packages using proxy, sandbox and SafeDep's threat intelligence feed.

Open-source XDR and SIEM platform for threat detection, log analysis, file integrity monitoring, vulnerability assessment, and compliance management…

Immutable Linux OS image optimized for running Incus containers and virtual machines, with UEFI Secure Boot, TPM 2.0 disk encryption, and automated…