GitHub Release Tracker
All JS React Ruby Go Postgres Frontend Node

devsecops

Past 30d, sorted by best first
14 results Markdown version
10/06 9
trufflesecurity/TruffleHog v3.99.0
Powerful tool for discovering, classifying, validating, and analyzing leaked credentials.
Go 28417☆ 3571d old #golang #security #go #secret #trufflehog
10/07 8
duriantaco/Skylos v4.47.0
Privacy-first hybrid static-analysis tool for Python, TypeScript, and Go that detects dead code, secrets, and security vulnerabilities.
10/07 8
safedep/vet v1.20.0
Enterprise-grade software supply chain security tool with real-time malicious package detection and policy as code support.
09/29 8
betterleaks/Betterleaks v1.9.0
Detects passwords, API keys, and tokens in git repos, files, or stdin using configurable, high-performance scanning.
Go 2186☆ 250d old #golang #go #cicd #devops #credentials
10/11 7
safedep/Package Manager Guard (PMG) v0.31.0
Tool that blocks malicious packages during installation by wrapping existing package managers.
Go 545☆ 570d old #golang #npm #go #open-source #devsecops
10/10 7
MustacheCase/Zanadir 0.5.0
A GitHub repository CI/CD analyzer that scans for security and best-practice gaps and suggests relevant tools across multiple CI providers and output formats.
Go 166☆ 603d old #golang #cli #go #ci-cd #devops
10/09 7
chainloop-dev/Chainloop v1.122.0
Evidence store and policy engine for Software Supply Chain attestations, SBOMs, VEX, SARIF, and QA reports.
09/22 7
0hardik1/Kubesplaining v1.3.0
Kubernetes security assessment CLI that builds multi-hop RBAC privilege-escalation graphs from live clusters or snapshots and outputs risk-prioritized reports with remediation paths.
Go 96☆ 151d old #golang #cli #kubernetes #go #devsecops
09/20 7
mkbhardwas12/pwned-deps v0.2.0
Multi-ecosystem CLI that scans lockfiles for compromised dependency versions using OSV plus a curated, signed campaign feed with recent-release cooling-off checks and reliable exit codes.
Python 164☆ 140d old #golang #python #cli #go #devsecops
10/08 6
praetorian-inc/Titus v1.2.11
High-performance secrets scanner for source code, git history, and binary files, offering CLI, Go library, Burp and Chrome extensions, 459 detection rules, and live credential validation.
09/21 6
ajinabraham/njsscan 1.0.1
Static application testing tool that uses semantic-aware pattern matching to find insecure code patterns in Node.js applications.
JavaScript 454☆ 2352d old #javascript #nodejs #node #expressjs #sast
09/11 6
interlynk-io/sbomasm v2.1.1
Comprehensive SBOM lifecycle toolkit for assembling, editing, enriching, removing sensitive data, signing, and viewing SBOMs.
Go 129☆ 1228d old #golang #go #devsecops #cyclonedx #gomodule
10/07 5
pii-shield/PII-Shield v2.2.7
Zero-code Kubernetes sidecar that redacts PII from logs pre-egress using entropy analysis and deterministic hashing.
Go 178☆ 253d old #golang #go #json #devsecops #gdpr
09/30 5
cynative/Cynative v1.12.3
Cynative is a deep cybersecurity research agent that answers infrastructure questions by running verified, read-only sandboxed code across your cloud, code, and runtime.