GitHub Release Tracker
All JS React Ruby Go Postgres Frontend Node

devsecops

Past 30d, sorted by best first, all versions
42 results Markdown version
08/13 9
trufflesecurity/TruffleHog v3.97.0
Powerful tool for discovering, classifying, validating, and analyzing leaked credentials.
Go 27603☆ 3526d old #golang #security #go #secret #trufflehog
08/27 8
safedep/vet v1.19.0
Enterprise-grade software supply chain security tool with real-time malicious package detection and policy as code support.
08/24 8
trufflesecurity/TruffleHog v3.97.1
Powerful tool for discovering, classifying, validating, and analyzing leaked credentials.
Go 27603☆ 3526d old #golang #security #go #secret #trufflehog
08/11 8
ajinabraham/njsscan 1.0.0
Static application testing tool that uses semantic-aware pattern matching to find insecure code patterns in Node.js applications.
JavaScript 436☆ 2311d old #javascript #nodejs #node #expressjs #sast
08/26 7
chainloop-dev/Chainloop v1.107.0
Evidence store and policy engine for Software Supply Chain attestations, SBOMs, VEX, SARIF, and QA reports.
08/26 7
duriantaco/Skylos v4.35.0
Privacy-first hybrid static-analysis tool for Python, TypeScript, and Go that detects dead code, secrets, and security vulnerabilities.
08/25 7
MustacheCase/Zanadir 0.3.0
A GitHub repository CI/CD analyzer that scans for security and best-practice gaps and suggests relevant tools across multiple CI providers and output formats.
Go 165☆ 557d old #golang #cli #go #ci-cd #devops
08/25 7
safedep/Package Manager Guard (PMG) v0.27.0
Tool that blocks malicious packages during installation by wrapping existing package managers.
Go 504☆ 525d old #golang #npm #go #open-source #devsecops
08/24 7
Bearer/Bearer v2.1.1
Static application security testing tool that analyzes source code and data flows to find, filter, and prioritize security and privacy risks.
Go 2734☆ 1427d old #golang #security #go #devsecops #compliance
08/23 7
MustacheCase/Zanadir 0.2.0
A GitHub repository CI/CD analyzer that scans for security and best-practice gaps and suggests relevant tools across multiple CI providers and output formats.
Go 165☆ 557d old #golang #cli #go #ci-cd #devops
08/23 7
duriantaco/Skylos v4.34.0
Privacy-first hybrid static-analysis tool for Python, TypeScript, and Go that detects dead code, secrets, and security vulnerabilities.
08/18 7
pii-shield/PII-Shield v2.2.0
Zero-code Kubernetes sidecar that redacts PII from logs pre-egress using entropy analysis and deterministic hashing.
Go 164☆ 206d old #golang #go #json #devsecops #gdpr
08/15 7
safedep/Package Manager Guard (PMG) v0.26.0
Tool that blocks malicious packages during installation by wrapping existing package managers.
Go 504☆ 525d old #golang #npm #go #open-source #devsecops
08/14 7
chainloop-dev/Chainloop v1.106.0
Evidence store and policy engine for Software Supply Chain attestations, SBOMs, VEX, SARIF, and QA reports.
08/07 7
gensecaihq/Shai-Hulud 2.0 Detector v2.2.0
Detects compromised npm packages and suspicious activities related to the Shai-Hulud 2.0 supply chain attack.
08/05 7
duriantaco/Skylos v4.33.0
Privacy-first hybrid static-analysis tool for Python, TypeScript, and Go that detects dead code, secrets, and security vulnerabilities.
07/31 7
0hardik1/Kubesplaining v1.2.0
Kubernetes security assessment CLI that builds multi-hop RBAC privilege-escalation graphs from live clusters or snapshots and outputs risk-prioritized reports with remediation paths.
07/30 7
duriantaco/Skylos v4.32.0
Privacy-first hybrid static-analysis tool for Python, TypeScript, and Go that detects dead code, secrets, and security vulnerabilities.
07/29 7
safedep/vet v1.18.0
Enterprise-grade software supply chain security tool with real-time malicious package detection and policy as code support.
08/27 6
chainloop-dev/Chainloop v1.107.3
Evidence store and policy engine for Software Supply Chain attestations, SBOMs, VEX, SARIF, and QA reports.
08/26 6
chainloop-dev/Chainloop v1.107.1
Evidence store and policy engine for Software Supply Chain attestations, SBOMs, VEX, SARIF, and QA reports.
08/25 6
praetorian-inc/Titus v1.2.8
High-performance secrets scanner for source code, git history, and binary files, offering CLI, Go library, Burp and Chrome extensions, 459 detection rules, and live credential validation.
08/25 6
chainloop-dev/Chainloop v1.106.2
Evidence store and policy engine for Software Supply Chain attestations, SBOMs, VEX, SARIF, and QA reports.
08/21 6
chainloop-dev/Chainloop v1.106.1
Evidence store and policy engine for Software Supply Chain attestations, SBOMs, VEX, SARIF, and QA reports.
08/18 6
betterleaks/Betterleaks v1.8.1
Detects passwords, API keys, and tokens in git repos, files, or stdin using configurable, high-performance scanning.
Go 1773☆ 202d old #golang #go #cicd #devops #credentials
08/13 6
safedep/vet v1.18.2
Enterprise-grade software supply chain security tool with real-time malicious package detection and policy as code support.
08/11 6
chainloop-dev/Chainloop v1.105.9
Evidence store and policy engine for Software Supply Chain attestations, SBOMs, VEX, SARIF, and QA reports.
08/10 6
chainloop-dev/Chainloop v1.105.8
Evidence store and policy engine for Software Supply Chain attestations, SBOMs, VEX, SARIF, and QA reports.
08/09 6
duriantaco/Skylos v4.33.2
Privacy-first hybrid static-analysis tool for Python, TypeScript, and Go that detects dead code, secrets, and security vulnerabilities.
08/07 6
interlynk-io/sbomasm v2.0.10
Comprehensive SBOM lifecycle toolkit for assembling, editing, enriching, removing sensitive data, signing, and viewing SBOMs.
Go 123☆ 1193d old #golang #go #devsecops #cyclonedx #gomodule
08/07 6
chainloop-dev/Chainloop v1.105.7
Evidence store and policy engine for Software Supply Chain attestations, SBOMs, VEX, SARIF, and QA reports.
08/07 6
duriantaco/Skylos v4.33.1
Privacy-first hybrid static-analysis tool for Python, TypeScript, and Go that detects dead code, secrets, and security vulnerabilities.
08/06 6
chainloop-dev/Chainloop v1.105.6
Evidence store and policy engine for Software Supply Chain attestations, SBOMs, VEX, SARIF, and QA reports.
08/06 6
chainloop-dev/Chainloop v1.105.5
Evidence store and policy engine for Software Supply Chain attestations, SBOMs, VEX, SARIF, and QA reports.
08/04 6
chainloop-dev/Chainloop v1.105.4
Evidence store and policy engine for Software Supply Chain attestations, SBOMs, VEX, SARIF, and QA reports.
08/02 6
chainloop-dev/Chainloop v1.105.3
Evidence store and policy engine for Software Supply Chain attestations, SBOMs, VEX, SARIF, and QA reports.
07/31 6
chainloop-dev/Chainloop v1.105.2
Evidence store and policy engine for Software Supply Chain attestations, SBOMs, VEX, SARIF, and QA reports.
07/30 6
safedep/vet v1.18.1
Enterprise-grade software supply chain security tool with real-time malicious package detection and policy as code support.
07/30 6
chainloop-dev/Chainloop v1.105.1
Evidence store and policy engine for Software Supply Chain attestations, SBOMs, VEX, SARIF, and QA reports.
07/29 6
duriantaco/Skylos v4.31.1
Privacy-first hybrid static-analysis tool for Python, TypeScript, and Go that detects dead code, secrets, and security vulnerabilities.
08/24 5
MustacheCase/Zanadir 0.2.2
A GitHub repository CI/CD analyzer that scans for security and best-practice gaps and suggests relevant tools across multiple CI providers and output formats.
Go 165☆ 557d old #golang #cli #go #ci-cd #devops
08/22 5
MustacheCase/Zanadir 0.1.4
A GitHub repository CI/CD analyzer that scans for security and best-practice gaps and suggests relevant tools across multiple CI providers and output formats.
Go 165☆ 557d old #golang #cli #go #ci-cd #devops