
airflowscan
Checklist and tools for increasing security of Apache Airflow

Checklist and tools for increasing security of Apache Airflow

The OWASP DevSecOps Guideline can help us to embedding security as a part of the development pipeline.

Horusec is an open source tool that improves identification of vulnerabilities in your project with just one command.

A list of awesome penetration testing tools and resources.

"Sucosh" is an automated Source Code vulnerability scanner and assessment framework for Python(Flask-Django) & NodeJs capable of performing code…

Detect compliance and security violations across Infrastructure as Code to mitigate risk before provisioning cloud native infrastructure.

KubeLinter is a static analysis tool that checks Kubernetes YAML files and Helm charts to ensure the applications represented in them adhere to best…

Kubernetes object analysis with recommendations for improved reliability and security. kube-score actively prevents downtime and bugs in your…

This skill helps Claude write secure code and prevent common vulnerabilities.

Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.

AI-powered bug bounty hunting toolkit that works with or without subscription.

Vulnerability Assessment Scanner with Report Generation

MCP server that runs SAST scans on local codebases and returns findings with severity and fixes, enabling AI assistants to perform security analysis…

GitHub Action: Offensive360 SAST scan with SARIF output for code scanning. 60+ languages. Free for open source.

AWS Serverless Security

SAST CLI for scanning Java, JavaScript, and .NET applications plus AWS Lambda functions, detecting code vulnerabilities and over-permissive IAM…

Static analysis tool for infrastructure as code that detects cloud misconfigurations, vulnerabilities, and secrets across Terraform, Kubernetes,…

Linting tool for CloudFormation templates