
jsecret
Fast Go-based static scanner for detecting sensitive data (API keys, tokens, passwords) in JavaScript files and source code using regex patterns.

Fast Go-based static scanner for detecting sensitive data (API keys, tokens, passwords) in JavaScript files and source code using regex patterns.

Simple and flexible tool for managing secrets

ElectricEye is a multi-cloud, multi-SaaS Python CLI tool for Asset Management, Security Posture Management & Attack Surface Monitoring supporting…

A simple file-based scanner to look for potential AWS access and secret keys in files

Simple Secure Keeper for Secrets

Detects GlassWorm supply chain attack payloads by scanning VS Code extensions, npm/PyPI packages, and git repos for invisible Unicode payloads,…

The simple PoC of CVE-2023-27587

Recursively searches files for sensitive information using customizable regex patterns, designed for penetration testers to rapidly discover secrets…

Pillage filesystems for sensitive information with Go 🔍

Canary Hunter aims to be a quick PowerShell script to check for Common Canaries in various formats generated for free on canarytokens.org

Zero-Knowledge Credential Sharing

Security control plane for LLM agents: allowlists, owner kill switch, PIN sessions, rate limits, prompt-injection detection, and output scrubbing to…

CVE-2025-14847 PoC exploit for MongoDB heap memory disclosure

a guard that blocks catastrophic agent actions

A CI/CD Red Team Framework for demonstrating Build Pipeline security risks.

The Execution Security Layer for the Agentic Era. Providing deterministic "Sudo" governance and audit logs for autonomous AI agents.

Static security scanner for AI agent skill packages. Detects malicious SKILL.md files and bundled scripts before they run.

Checklist of the most important security countermeasures when designing, testing, and releasing your API