
depsguard
Harden your package manager configs against supply chain attacks.

Harden your package manager configs against supply chain attacks.

Lan Tian's NixOS Configuration

Regex-based scanner for detecting hard-coded credentials in codebases, designed for CI/CD integration with suppression comment support and low…

credential isolation for AI agents. Agents never see real API keys - structural guarantee, not policy.

Pre-execution intent verification for AI agents. Audits what your AI is about to do, not what it says. Zero dependencies, deterministic, hash-sealed.

AWS Testing and Reporting Management Tool

Secure CLI tool for managing environment secrets using native OS credential stores (macOS Keychain, Linux Secret Service, Windows Credential Manager)

Static web application for viewing SBOMs and performing on-demand vulnerability scanning with osv.dev. Easily deployable to GitHub/GitLab Pages.

Citrix NetScaler CVE Preconditions Checker as per CTX696604 | Supported CVE : CVE-2026-8451, CVE-2026-8452, CVE-2026-8655, CVE-2026-10816,…

Secure, ephemeral secret sharing for developers.

OPA Gatekeeper-based policy templates to mitigate CVE-2020-8554 by restricting Kubernetes Service external IPs to an allow list, preventing traffic…

An Inspec profile to check for Log4j CVE-2021-44228 and CVE-2021-45046

Scans Git repositories for hardcoded secrets, keys, and passwords using Gitleaks, integrating security into Bitbucket Pipelines with Code Insights…

log4j mitigation work

Mitigate CVE-2018-6389 WordPress load-scripts / load-styles attacks