
minimal
Minimal CVE Hardened container image collection

Minimal CVE Hardened container image collection

Open security scanner and self-hosted control plane for AI, MCP, and cloud. One evidence model — run scans in your environment, centralize findings,…

A lightweight caching proxy for package registries.

Open-source AI agent firewall that scans HTTP, MCP, A2A, and WebSocket traffic for exfiltration, SSRF, and prompt injection, emitting verifiable…

Cryptographically signed delegation receipts for AI agents. Define exactly what an AI can and can't do — signed, verifiable, tamper-proof.

The wolfSSL library is a small, fast, portable implementation of TLS/SSL for embedded devices to the cloud. wolfSSL supports up to TLS 1.3 and DTLS…

Software Supply Chain Security Platform

A multi-platform CI/CD vulnerability detection and attack automation tool for identifying security weaknesses in pipeline configurations.

Trail of Bits Claude Code skills for security research, vulnerability detection, and audit workflows

Find, verify, and analyze leaked credentials

Powerful protection for AI agents - Open-source security and cost tracking for AI applications

opensource repo for validating agentic AI applications: redteam, behavior, supply-chain, static analysis

A vulnerability scanner for container images and filesystems

Access control for AI agents. Set what Claude Code, Codex, Gemini, Cursor and any MCP server are allowed to do, review risky actions before they run,…

CLI and MCP server that checks package versions for known vulnerabilities across 14+ ecosystems including npm, PyPI, crates.io, Go modules, and…

The Most Comprehensive Docker Security Scanner

CLI tool and library for generating a Software Bill of Materials from container images and filesystems

Operator to streamline renovate executions in Kubernetes