
ci-supplychain-guard
Static analysis tool that detects malicious dependencies in CI/CD pipelines using pattern matching and AST analysis, with a traffic-light risk…

Static analysis tool that detects malicious dependencies in CI/CD pipelines using pattern matching and AST analysis, with a traffic-light risk…

Invisible infrastructure for Dracon developer workspaces: git sync, system guard, and warden encryption utilities.

Simple and flexible tool for managing secrets

OpenSSF Scorecard - Security health metrics for Open Source

Prevents you from committing secrets and credentials into git repositories

agent runtime security - zero trust, zero setup, zero latency agent sandbox

Open Source Cloud Native Application Protection Platform (CNAPP)

The Most Comprehensive Docker Security Scanner

Open-source antivirus for AI agents: block risky tools, secret access, prompt injection, malicious packages, MCP servers, plugins, and skills at…

ElectricEye is a multi-cloud, multi-SaaS Python CLI tool for Asset Management, Security Posture Management & Attack Surface Monitoring supporting…

Linting tool for CloudFormation templates

Software Supply Chain Security Platform

AI-first security scanner. NEW in v2026.7: Claude Code compromise detection — vet .claude/ hooks, permissions & skills before you clone — plus an…

Operator to streamline renovate executions in Kubernetes

Scan is a free & Open Source DevSecOps tool for performing static analysis based security testing of your applications and its dependencies. CI and…

Jackhammer - One Security vulnerability assessment/management tool to solve all the security team problems.

🔐 Secure, real-time monitoring dashboard for OpenClaw AI agents. Auth, TOTP MFA, cost tracking, live feed, memory browser and more.

a guard that blocks catastrophic agent actions