
mcp-xray
Unified security scanner for MCP servers with config, pentest, and repo-scan modes. Generates SARIF reports for CI/CD integration, detects secrets,…

Unified security scanner for MCP servers with config, pentest, and repo-scan modes. Generates SARIF reports for CI/CD integration, detects secrets,…

opensource repo for validating agentic AI applications: redteam, behavior, supply-chain, static analysis

OpenSSF Scorecard - Security health metrics for Open Source

Open source vulnerability DB and triage service.

Open source solutions for SOC2, GDPR, and ISO27001

Computes a criticality score for open source projects from repository, contributor, and dependency metrics to prioritize security improvements.

OpenAnt from Knostic is the leading open source LLM-based vulnerability discovery product, helping defenders proactively find verified security flaws…

Protect against malicious open source packages 🤖

An open source tool focused on software supply chain security. 墨菲安全专注于软件供应链安全,具备专业的软件成分分析(SCA)、漏洞检测、专业漏洞库。

PMG protects developers, AI agents from malicious open source packages using proxy, sandbox and SafeDep's threat intelligence feed.

Analyze any snippet, file, or repository to detect possible security flaws such as secret in code, open source vulnerability, code security,…

100% Free & Open Source • Privacy-First Security Scanning and AI Code Review CLI

Fix open source package uses tough-cookie 2.5.0 - CVE-2023-26136,

OpenClarity is an open source platform built to enhance security and observability of cloud native applications and infrastructure

Open source compliance tool for development platforms.

Hardened, Azure-optimized Linux distribution built from Fedora sources with RPM packaging, supply chain security, and declarative configuration for…

A collection of awesome resources related AI security

Open-source AI agent firewall that scans HTTP, MCP, A2A, and WebSocket traffic for exfiltration, SSRF, and prompt injection, emitting verifiable…