
trivy-action
Runs Trivy as GitHub action to scan your Docker container image for vulnerabilities

Runs Trivy as GitHub action to scan your Docker container image for vulnerabilities

The OWASP DevSecOps Guideline can help us to embedding security as a part of the development pipeline.

Protect against malicious code installed via npm, yarn, pnpm, npx, pnpx, pip, uv and poetry with Aikido Safe Chain. Free to use, no tokens required.

GitHub App to set and enforce security policies

Terraform module to set up your AWS account with the secure baseline configuration based on CIS Amazon Web Services Foundations and AWS Foundational…

Pluggable linting tool to prevent committing credential.

Git hook-based secret scanner that detects tokens, passwords, and private keys in outgoing changesets, preventing sensitive data from being committed…

A tool to capture all the git secrets by leveraging multiple open source git searching tools

AI-first security scanner. NEW in v2026.7: Claude Code compromise detection — vet .claude/ hooks, permissions & skills before you clone — plus an…

ElectricEye is a multi-cloud, multi-SaaS Python CLI tool for Asset Management, Security Posture Management & Attack Surface Monitoring supporting…

The StackRox Kubernetes Security Platform performs a risk analysis of the container environment, delivers visibility and runtime alerts, and provides…

SécurixOS is a NixOS-based secure operating system tailored for small to medium-sized teams. It provides a minimal, hardened environment with strong…

A repo to automatically generate and keep updated a series of Docker images through GitHub Actions.

An active monitoring software to detect failures before your customers do.

An AWS tool to help you create a point in time assessment of your AWS account using Prowler.

Weave GitOps is transitioning to a community driven project! It provides insights into your application deployments, and makes continuous delivery…

System utility that identifies and restarts daemons using outdated libraries after package upgrades to maintain security. Supports containers and…

Operator to streamline renovate executions in Kubernetes