
grype
A vulnerability scanner for container images and filesystems

A vulnerability scanner for container images and filesystems

Zero-trust SSH bastion proxy with Vault-backed key management, RBAC policy enforcement, full session recording, and admin TUI for auditable access to…

A tool to manage vulnerable docker containers

Manage OpenClaw in your team (Enterprise) by providing it compute infrastructure, tool integration, Authentication and security primitives

Thin TypeScript + zero-dep Python client and recipes to gate high-risk actions behind a payload-bound passkey approval.

Catch what's lurking in your Kafka clusters.

The universal GraphQL API and CSPM tool for AWS, Azure, GCP, K8s, and tencent.

Nord Stream is a tool that allows you to extract secrets stored inside CI/CD environments by deploying malicious pipelines. It currently supports…

Certbot is EFF's tool to obtain certs from Let's Encrypt and (optionally) auto-enable HTTPS on your server. It can also act as a client for any…

Declarative policy engine that enables authorization and policy enforcement across services, Kubernetes, Terraform, Docker, and APIs using the Rego…

KubeLinter is a static analysis tool that checks Kubernetes YAML files and Helm charts to ensure the applications represented in them adhere to best…

API-first identity and user management system for cloud-native applications. Handles login, registration, MFA, recovery, and profile management with…

A powerful testing tool for Kubernetes clusters.

A tool for secrets management, encryption as a service, and privileged access management

Linting tool for CloudFormation templates

Protects software supply chain integrity by verifying each step is performed by authorized functionaries, using signed layout and link metadata.

Real-time cloud-native runtime security agent for Linux that monitors syscalls and container/Kubernetes metadata to detect anomalous behavior and…