
GitMonitor
One way to continuously monitor sensitive information that could be exposed on Github

One way to continuously monitor sensitive information that could be exposed on Github

Mobile app security auditing tool focused on automating SAST analysis, identifying underlying technologies (React Native, Flutter, Xamarin, native),…

Android Security Suite for in-depth reconnaissance and static bytecode analysis based on Ghera benchmarks.

A secure persistent personal agent server in Rust. One binary, sandboxed execution, multi-provider LLMs, voice, memory, Telegram, WhatsApp, Discord,…

SecretFinder - A python script for find sensitive data (apikeys, accesstoken,jwt,..) and search anything on javascript files

Tool for advanced mining for content on Github

Semi-automated, feedback-driven tool to rapidly search through troves of public data on GitHub for sensitive secrets.

A collection of tools to perform searches on GitHub.

Python source code auditing and static analysis on a large scale

Find exposed API keys based on RegEx and get exploitation methods for some of keys that are found

AI-native code security auditor on AgentField that proves exploitability with verdicts, traces, and actionable evidence.

You can read the writeup on this script here

Access control for AI agents. Set what Claude Code, Codex, Gemini, Cursor and any MCP server are allowed to do, review risky actions before they run,…

Find the plaintext secrets on your Mac and move them behind Touch ID, injected just in time without breaking the tools that read them. Free and…

A security testing Slackbot built with a Kubernetes backend on the Google Cloud Platform

Canary Hunter aims to be a quick PowerShell script to check for Common Canaries in various formats generated for free on canarytokens.org

A python3 script searching for secret on swaggerhub

MSSQL client for SCCM environments, enabling reconnaissance, remote PowerShell execution on managed clients, and extraction of sensitive secrets such…