


Spelling checker action to check spelling in repositories / pull requests / commits

Formal inter-procedural taint analysis engine for application security. Tracks untrusted data across function boundaries, persistence layers, and…


Repo to hold mapping of user-security-stories

pytest for AI agents - Autonomous red-teaming, behavioral monitoring & security testing for LLM agents

Skillscript — a small declarative language for authoring agent workflows. Runtime, compiler, and CLI.


Curated Semgrep rule repository for GitLab SAST, providing static analysis patterns to detect security vulnerabilities across multiple programming…


Detects GlassWorm supply chain attack payloads by scanning VS Code extensions, npm/PyPI packages, and git repos for invisible Unicode payloads,…


Accompanying PowerShell Modules for DevSec Defense Presentation

Centralized DevSecOps platform for vulnerability management, CI/CD security integration, automated security assessment aggregation, and fostering…

SecureAI-Scan is a CLI tool that scans TypeScript and JavaScript codebases for security issues specific to AI-powered apps — prompt injection, MCP…