
actions-secrets
Adding this GitHub Action will scan your repository for sensitive data in your source code. We find things like passwords, server host strings, API…

Adding this GitHub Action will scan your repository for sensitive data in your source code. We find things like passwords, server host strings, API…


Static and dynamic analysis tool for detecting malicious code, suspicious binaries, and privacy violations

Orbit Tracer Security Agent for intelligent security remediation. Traces vulnerability blast radius using Orbit's knowledge graph, scores risk,…

Agent-powered vulnerability scanner for large-scale codebases. Uses LLMs to find hard-to-detect security issues via regex matchers and AI…

Runs Trivy as GitHub action to scan your Docker container image for vulnerabilities

🐍 🔍 GuardDog is a CLI tool to Identify malicious PyPI and npm packages

A tool to capture all the git secrets by leveraging multiple open source git searching tools

AI-first security scanner. NEW in v2026.7: Claude Code compromise detection — vet .claude/ hooks, permissions & skills before you clone — plus an…

Open-source Interactive Application Security Testing (IAST) tool that passively instruments Java applications to detect vulnerabilities and…

Jackhammer - One Security vulnerability assessment/management tool to solve all the security team problems.

One command to fix CVE-2025-66478 (React 2 Shell RCE) in your Next.js / React RSC app.

Spelling checker action to check spelling in repositories / pull requests / commits

Formal inter-procedural taint analysis engine for application security. Tracks untrusted data across function boundaries, persistence layers, and…

Write your BPF programs in Go, not C. gobee transpiles a Go subset to BPF C and generates typed cilium/ebpf bindings.

Python script to scan Git repos for interesting strings

A simple file-based scanner to look for potential AWS access and secret keys in files

SEDATED® Project (Sensitive Enterprise Data Analyzer To Eliminate Disclosure)