
npq
safely install npm packages by auditing them pre-install stage

safely install npm packages by auditing them pre-install stage

Detects and auto-fixes hardcoded secrets in Python repos — refuses when the fix could break your code

Vigolium - High-fidelity vulnerability scanner fusing agentic AI with native speed, modularity, and precision

Fast, developer-friendly JS/TS dependency vulnerability scanner with local lockfile scanning, OSV matching, direct vs transitive visibility, --fix,…

Searches through git repositories for high entropy strings and secrets, digging deep into commit history

Validate environment variable usage in codebase

Scans selected files for patterns stated in rules. This is used in order to find secrets you may have accidentally written to a file. This scanner is…

Scan a repo's .claude/ config (settings.json hooks, MCP servers, env, allowed-tools) for the RCE & API-key-exfiltration footguns (CVE-2025-59536,…

Analyze any GitHub repo (URL or local path) → architecture map, verified run commands, risks, and actionable issues - in minutes.

CVE-2025-55182 Detector. Find which of your GitHub repositories are exposed to the critical React/Next.js RCE vulnerability and generate a clean…

Checks your files for existence of Unicode BIDI characters which can be misused for supply chain attacks. See CVE-2021-42574

AI-native code security auditor on AgentField that proves exploitability with verdicts, traces, and actionable evidence.

Next-generation SQL static analyzer written in Rust. 282+ rules. Zero false positives. Security, performance, reliability, cost, compliance, quality.…

Incredibly fast crawler designed for OSINT.

Security scanner for AI agent skills. Detect vulnerabilities, malicious patterns, security risks, prompt injection, data exfiltration, and…

Agent-powered vulnerability scanner for large-scale codebases. Uses LLMs to find hard-to-detect security issues via regex matchers and AI…

OpenSSF Scorecard - Security health metrics for Open Source

Performing security tests inside your CI