
nuclei
Fast YAML-based vulnerability scanner with template-driven detection engine for automated security testing across web apps, APIs, networks, DNS, and…

Fast YAML-based vulnerability scanner with template-driven detection engine for automated security testing across web apps, APIs, networks, DNS, and…

100% Free & Open Source • Privacy-First Security Scanning and AI Code Review CLI

A static + runtime security scanner for MCP (Model Context Protocol) servers

Scan codebases and GCP projects for exposed API credentials

Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.

Find, verify, and analyze leaked credentials

Fast, open-source static analysis tool for detecting hardcoded secrets like passwords, API keys, and tokens in git repositories, files, and stdin…

Security scanner for AI agents, MCP servers and agent skills.

Code security scanning tool (SAST) to discover, filter and prioritize security and privacy risks.

Security Scanner for Agent Skills

Detect and validate 500+ types of hardcoded secrets with advanced checks. Use it as a pre-commit hook, GitHub Action, or CLI for proactive secret…

Ah shhgit! Find secrets in your code. Secrets detection for your GitHub, GitLab and Bitbucket repositories.

Fast, developer-friendly JS/TS dependency vulnerability scanner with local lockfile scanning, OSV matching, direct vs transitive visibility, --fix,…

Fast GitHub recon tool. Scans for leaked secrets across all of GitHub, not just known repos and orgs. Support for GitHub dorks.

High-performance secrets scanner. CLI, Go library, Burp Suite extension, and Chrome extension. 487 detection rules with live credential validation.

AI-first security scanner. NEW in v2026.7: Claude Code compromise detection — vet .claude/ hooks, permissions & skills before you clone — plus an…

Searches through git repositories for high entropy strings and secrets, digging deep into commit history

Jackhammer - One Security vulnerability assessment/management tool to solve all the security team problems.