
purple-team-exercise-framework
Purple Team Exercise Framework

Purple Team Exercise Framework

Security scanner for AI/ML model files. Detects malicious code, backdoors, and vulnerabilities before deployment

Fast, open-source static analysis tool for detecting hardcoded secrets like passwords, API keys, and tokens in git repositories, files, and stdin…

A static analyzer for Java, C, C++, and Objective-C

Code-quality and static-analysis platform with quality gates, multi-language scanning, and security-focused rules to detect vulnerabilities and…

A static analysis security vulnerability scanner for Ruby on Rails applications

A source code analyzer built for surfacing features of interest and other characteristics to answer the question 'What's in the code?' quickly using…

An enterprise friendly way of detecting and preventing secrets in code.

Static analysis rule pack for detecting security vulnerabilities, dangerous code patterns, and configuration issues across many languages; integrates…

Git hook-based secret scanner that detects tokens, passwords, and private keys in outgoing changesets, preventing sensitive data from being committed…

Hunt every Endpoint in your code, expose Shadow APIs, map the Attack Surface.

nodejsscan is a static security code scanner for Node.js applications.

Pluggable linting tool to prevent committing credential.

safely install npm packages by auditing them pre-install stage

Performing security tests inside your CI

Reconmap is a collaboration-first security operations platform for infosec teams and MSSPs, enabling end‑to‑end engagement management, from…

CLI tool for analyzing Go package capabilities by tracing transitive calls to privileged standard library operations, enabling supply chain risk…