
scorecard
OpenSSF Scorecard - Security health metrics for Open Source

OpenSSF Scorecard - Security health metrics for Open Source

Open source vulnerability DB and triage service.

Computes a criticality score for open source projects from repository, contributor, and dependency metrics to prioritize security improvements.

Open source solutions for SOC2, GDPR, and ISO27001

OpenAnt from Knostic is the leading open source LLM-based vulnerability discovery product, helping defenders proactively find verified security flaws…

Protect against malicious open source packages 🤖

An open source tool focused on software supply chain security. 墨菲安全专注于软件供应链安全,具备专业的软件成分分析(SCA)、漏洞检测、专业漏洞库。

PMG protects developers, AI agents from malicious open source packages using proxy, sandbox and SafeDep's threat intelligence feed.

Analyze any snippet, file, or repository to detect possible security flaws such as secret in code, open source vulnerability, code security,…

100% Free & Open Source • Privacy-First Security Scanning and AI Code Review CLI

Fix open source package uses tough-cookie 2.5.0 - CVE-2023-26136,

OpenClarity is an open source platform built to enhance security and observability of cloud native applications and infrastructure

Open source compliance tool for development platforms.

Hardened, Azure-optimized Linux distribution built from Fedora sources with RPM packaging, supply chain security, and declarative configuration for…

A collection of awesome resources related AI security

Weave GitOps is transitioning to a community driven project! It provides insights into your application deployments, and makes continuous delivery…

Open-source AI agent firewall that scans HTTP, MCP, A2A, and WebSocket traffic for exfiltration, SSRF, and prompt injection, emitting verifiable…

LunaSec - Dependency Security Scanner that automatically notifies you about vulnerabilities like Log4Shell or node-ipc in your Pull Requests and…