
iron-proxy
An egress firewall for untrusted workloads.

An egress firewall for untrusted workloads.

Detect and validate 500+ types of hardcoded secrets with advanced checks. Use it as a pre-commit hook, GitHub Action, or CLI for proactive secret…

An extensible, deterministic static‑analysis engine that extracts high‑signal IOCs from PE binaries and text, built for SOC automation and modern…

Find, verify, and analyze leaked credentials

Agent-powered vulnerability scanner for large-scale codebases. Uses LLMs to find hard-to-detect security issues via regex matchers and AI…

safe execution paths for agents - zero trust, zero setup, zero latency.

Autonomous AI pentesting agents — real-time reconnaissance, vulnerability detection, and exploitation orchestration. Go + TypeScript.

Static and dynamic analysis tool that audits open-source packages for malicious, vulnerable, and risky attributes, with sandboxed installation to…

AI-native code security auditor on AgentField that proves exploitability with verdicts, traces, and actionable evidence.

Security tools report parsers for Faradaysec.com

CLI tool for the Horizon3.ai API

Static analysis tool that scans Dockerfiles for insecure commands and configuration issues, providing actionable security notifications to harden…


Certbot is EFF's tool to obtain certs from Let's Encrypt and (optionally) auto-enable HTTPS on your server. It can also act as a client for any…

A lightweight alternative to OpenClaw that runs in containers for security. Connects to WhatsApp, Telegram, Slack, Discord, Gmail and other messaging…

Simple and flexible tool for managing secrets

Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.

Open-source alerting engine for time-series monitoring data. Connects to Prometheus, VictoriaMetrics, ElasticSearch, and other data sources. Supports…