
grype
A vulnerability scanner for container images and filesystems

A vulnerability scanner for container images and filesystems

Zero-trust SSH bastion proxy with Vault-backed key management, RBAC policy enforcement, full session recording, and admin TUI for auditable access to…

A tool to manage vulnerable docker containers

Manage OpenClaw in your team (Enterprise) by providing it compute infrastructure, tool integration, Authentication and security primitives

Thin TypeScript + zero-dep Python client and recipes to gate high-risk actions behind a payload-bound passkey approval.

Catch what's lurking in your Kafka clusters.

The universal GraphQL API and CSPM tool for AWS, Azure, GCP, K8s, and tencent.

Nord Stream is a tool that allows you to extract secrets stored inside CI/CD environments by deploying malicious pipelines. It currently supports…

Declarative policy engine that enables authorization and policy enforcement across services, Kubernetes, Terraform, Docker, and APIs using the Rego…

KubeLinter is a static analysis tool that checks Kubernetes YAML files and Helm charts to ensure the applications represented in them adhere to best…

Certbot is EFF's tool to obtain certs from Let's Encrypt and (optionally) auto-enable HTTPS on your server. It can also act as a client for any…

API-first identity and user management system for cloud-native applications. Handles login, registration, MFA, recovery, and profile management with…

A powerful testing tool for Kubernetes clusters.

A tool for secrets management, encryption as a service, and privileged access management

Linting tool for CloudFormation templates

Protects software supply chain integrity by verifying each step is performed by authorized functionaries, using signed layout and link metadata.

Real-time cloud-native runtime security agent for Linux that monitors syscalls and container/Kubernetes metadata to detect anomalous behavior and…