
CIS GitLab Benchmark Scanner
Audits GitLab projects against the CIS GitLab Benchmark via read-only API checks, generating JSON reports on compliance and hardening recommendations.

Audits GitLab projects against the CIS GitLab Benchmark via read-only API checks, generating JSON reports on compliance and hardening recommendations.

Executable security regression testing for agentic applications and MCP-integrated systems.

AI-powered Docker security scanner that explains vulnerabilities in plain English. An OWASP Lab Project.

OWASP Security Culture repository

SEDATED® Project (Sensitive Enterprise Data Analyzer To Eliminate Disclosure)

OWASP teaching modules covering application security fundamentals including risk management, secure software development, and operations security for…

🐺 Vulfy – Fast Rust based package version scanner

OPNsense GUI, API and systems backend

DSC resources to simplify administration of certificates on a Windows Server.

Apache RAT (Release Audit Tool) Gradle Plugin

Nuclear Pond is a utility leveraging Nuclei to perform internet wide scans for the cost of a cup of coffee.



Secure-by-default demo lab showing how container hardening (distroless images, non-root, read-only filesystem, runtime-injected secrets) can…

A simple project to check coverage of Log4J vuln CVE-2021-44228 (and related)

Claude Skill that audits your projects for RLS misconfigurations, exposed keys, auth bypasses, and storage vulnerabilities. 27 anti-patterns sourced…

Check with Maven on CVE-2011-1475