
gato
GitHub Actions Pipeline Enumeration and Attack Tool

Multi-threaded AWS inventory collection tool with a focus on security-relevant resources and metadata.

Nosey Parker is a command-line tool that finds secrets and sensitive information in textual data and Git history.

A static analysis tool for securing Go code

A project security/vulnerability/risk scanning tool

Verified tool registry manager. Manages developer toolchains from git-based registries.

Open-source, cross-platform, multi-purpose security auditing tool

Open source compliance tool for development platforms.


A modern git based age-encrypted secrets manager for teams.

Ed25519 signed receipts + Cedar policies for AI agents. Finance mandate gate (Legate), proof packs, 3 IETF Internet-Drafts. npx protect-mcp

⚙️ NGINX config generator on steroids 💉

A static analyzer for Java, C, C++, and Objective-C

Policy enforcement, zero-trust identity, execution sandboxing, and audit logging for autonomous AI agents. Covers 10/10 OWASP Agentic Top 10 with…


Fast and powerful SSL/TLS scanning library.

Kubernetes object analysis with recommendations for improved reliability and security. kube-score actively prevents downtime and bugs in your…

Next-generation dependency vulnerability scanner with reachability analysis, SBOM generation, license audit, and container image scanning for CI/CD…