
gato
GitHub Actions Pipeline Enumeration and Attack Tool

Mitigate CVE-2018-6389 WordPress load-scripts / load-styles attacks

A static analysis tool for securing Go code

Security layer for AI coding agents. Works with Claude Code, Cursor, Windsurf, Gemini CLI, OpenCode, Pi Agent and more.

Verified tool registry manager. Manages developer toolchains from git-based registries.

Workaround for disabling the CLI to mitigate SECURITY-3314/CVE-2024-23897 and SECURITY-3315/CVE-2024-23898

Open source compliance tool for development platforms.

A service that analyzes docker images and scans for vulnerabilities

A vault for securely storing and accessing AWS credentials in development environments

Shared Go SDK defining a standard capability interface for security scanners, with multi-format finding output (terminal, JSON, NDJSON, Markdown,…