
skill-scanner
Security Scanner for Agent Skills

Security Scanner for Agent Skills

Runs Trivy as GitHub action to scan your Docker container image for vulnerabilities

ASOC, ASPM, DevSecOps, Vulnerability Management Using ArcherySec.

nodejsscan is a static security code scanner for Node.js applications.

Pluggable linting tool to prevent committing credential.

safely install npm packages by auditing them pre-install stage

Security Governance for Agentic AI

AI-powered Docker security scanner that explains vulnerabilities in plain English. An OWASP Lab Project.

VisualCodeGrepper - Code security scanning tool.

Jackhammer - One Security vulnerability assessment/management tool to solve all the security team problems.

a static analysis tool for finding vulnerabilities in C/C++ source code

a guard that blocks catastrophic agent actions


A lightweight caching proxy for package registries.

Spelling checker action to check spelling in repositories / pull requests / commits

Static code analysis tool based on Elasticsearch

Next-generation SQL static analyzer written in Rust. 282+ rules. Zero false positives. Security, performance, reliability, cost, compliance, quality.…

A source code static analysis platform for AppSec enthusiasts.