
grype
A vulnerability scanner for container images and filesystems

A vulnerability scanner for container images and filesystems

Vulnerability scanner written in Go which uses the data provided by https://osv.dev

Fast, developer-friendly JS/TS dependency vulnerability scanner with local lockfile scanning, OSV matching, direct vs transitive visibility, --fix,…

Octoscan is a static vulnerability scanner for GitHub action workflows.

Web-based Source Code Vulnerability Scanner

Fast YAML-based vulnerability scanner with template-driven detection engine for automated security testing across web apps, APIs, networks, DNS, and…

Agent-powered vulnerability scanner for large-scale codebases. Uses LLMs to find hard-to-detect security issues via regex matchers and AI…

Vigolium - High-fidelity vulnerability scanner fusing agentic AI with native speed, modularity, and precision

Tree-sitter based static vulnerability scanner with pattern matching and taint-flow analysis for multi-language source code. Outputs findings as…

"Sucosh" is an automated Source Code vulnerability scanner and assessment framework for Python(Flask-Django) & NodeJs capable of performing code…

Vulnerability Assessment Scanner with Report Generation

Scans selected files for patterns stated in rules. This is used in order to find secrets you may have accidentally written to a file. This scanner is…

A CVE-2025-55183 secret miner

Security scanner for MCP servers. Grades auth, permissions, injection risks, and tool safety. The Lighthouse of agent security.

LunaSec - Dependency Security Scanner that automatically notifies you about vulnerabilities like Log4Shell or node-ipc in your Pull Requests and…

Analyze any snippet, file, or repository to detect possible security flaws such as secret in code, open source vulnerability, code security,…

Runs Trivy as GitHub action to scan your Docker container image for vulnerabilities

Zed Attack Proxy Scripts for finding CVEs and Secrets.