
c-sentinel
Semantic Observability for UNIX Systems - A lightweight C-based system prober with AI-powered analysis

Semantic Observability for UNIX Systems - A lightweight C-based system prober with AI-powered analysis

Validate environment variable usage in codebase


Curated Semgrep rule repository for GitLab SAST, providing static analysis patterns to detect security vulnerabilities across multiple programming…

Log4j 漏洞本地检测脚本。 Scan all java processes on your host to check whether it's affected by log4j2 remote code execution vulnerability (CVE-2021-45046)

This is the community edition of GitLab's protocol fuzzing framework. This framework is based on Peach Fuzzer Professional with some features removed.

Zero-touch pipeline that turns newly weaponized CVEs from the CISA Known Exploited Vulnerabilities (KEV) catalog into production-ready Sigma…

An SSH Agent that provides SSH keys stored in Bitwarden Secrets Manager

credential isolation for AI agents. Agents never see real API keys - structural guarantee, not policy.

A modern git based age-encrypted secrets manager for teams.

layerleak the Docker Hub Secret Scanner

TrustedRouter.com repo for secure LLM proxying

Portable security rules for the action boundary of AI agents

Service that scans your Infrastructure as Code for common vulnerabilities

Static config scanner that flags nginx configs vulnerable to the complex_value two-pass capture-clobbering bug (regex map + regex capture → heap…

We would like to request that all contributors please clone a *fresh copy* of this repository since the September 21st maintenance.

Runtime-aware SCA — proves which CVEs are actually reachable, not just installed.

Apache RAT (Release Audit Tool) Gradle Plugin