
grype
A vulnerability scanner for container images and filesystems

A vulnerability scanner for container images and filesystems

A tool for secrets management, encryption as a service, and privileged access management

Static analysis tool for infrastructure as code that detects cloud misconfigurations, vulnerabilities, and secrets across Terraform, Kubernetes,…

Simple and flexible tool for managing secrets

SecureAI-Scan is a CLI tool that scans TypeScript and JavaScript codebases for security issues specific to AI-powered apps — prompt injection, MCP…

Infisical is the open-source platform for secrets, certificates, and privileged access management.

Local-first password manager with direct device-to-device sync

Static analysis tool for CI/CD systems that detects and fixes security issues in GitHub Actions, Dependabot, and pre-commit configurations, including…

Self-hosted runtime control plane for AI agents. Observe or HITL approve or Block rogue tool calls before it executes: secret leaks, prompt…

Tool to detect and monitor GitHub org users' public repositories for secrets and sensitive files

Go-based CLI tool that scans codebases for launch readiness, detecting missing configuration, security hygiene issues, secret leaks, and integration…

A modern git based age-encrypted secrets manager for teams.

Secure agents in seconds with permissions enforced at runtime.

Code security scanning tool (SAST) to discover, filter and prioritize security and privacy risks.

Pluggable linting tool to prevent committing credential.

Invisible infrastructure for Dracon developer workspaces: git sync, system guard, and warden encryption utilities.

Find and redact secrets in AI coding agent histories (Claude Code, and more).

Audits Python environments, requirements files and dependency trees for known security vulnerabilities, and can automatically fix them