
sast-scan-action
GitHub Action: Offensive360 SAST scan with SARIF output for code scanning. 60+ languages. Free for open source.

GitHub Action: Offensive360 SAST scan with SARIF output for code scanning. 60+ languages. Free for open source.

MCP server that runs SAST scans on local codebases and returns findings with severity and fixes, enabling AI assistants to perform security analysis…

An open, local-first security testing platform for pentesters, AI agents, CI/CD pipelines, and teams.

Command-line security assessment framework for React and Next.js applications, analyzing React Server Components for misconfigurations, with…

Zero-trust SSH bastion proxy with Vault-backed key management, RBAC policy enforcement, full session recording, and admin TUI for auditable access to…

Automates static API security auditing of OpenAPI contracts in CI/CD, running 300+ checks for authentication, authorization, and data constraints,…

An egress firewall for untrusted workloads.

The independent security agent for AI-written software. Finds issues, investigates whether they are real, and shows you the evidence. Deterministic…

Rust-powered HTTP Request Smuggling Scanner.

A security tool to detect malicious Go packages by verifying checksums in go.sum against the original source code

Vulnerability Assessment Scanner with Report Generation

Modular DevSecOps toolset for REST API security testing, designed for developers, sysadmins, and penetration testers to automate security checks…

Drop-in fix for the unpatched MCP STDIO command-injection flaw (CVE-2026-30623 family)

Executable security regression testing for agentic applications and MCP-integrated systems.

Burp Extension for collaboration in Faraday

MCP server for Slither static analysis of Solidity smart contracts

OPNsense GUI, API and systems backend

Ansible role to configure redirectors for red team C2