* [TruffleHog v3.99.0](https://github.com/trufflesecurity/trufflehog) – Powerful tool for discovering, classifying, validating, and analyzing leaked credentials. * [TruffleHog v3.98.0](https://github.com/trufflesecurity/trufflehog) – Powerful tool for discovering, classifying, validating, and analyzing leaked credentials. * [TruffleHog v3.99.2](https://github.com/trufflesecurity/trufflehog) – Powerful tool for discovering, classifying, validating, and analyzing leaked credentials. * [TruffleHog v3.99.1](https://github.com/trufflesecurity/trufflehog) – Powerful tool for discovering, classifying, validating, and analyzing leaked credentials. * [Skylos v4.47.0](https://github.com/duriantaco/skylos) – Privacy-first hybrid static-analysis tool for Python, TypeScript, and Go that detects dead code, secrets, and security vulnerabilities. * [Skylos v4.46.0](https://github.com/duriantaco/skylos) – Privacy-first hybrid static-analysis tool for Python, TypeScript, and Go that detects dead code, secrets, and security vulnerabilities. * [vet v1.20.0](https://github.com/safedep/vet) – Enterprise-grade software supply chain security tool with real-time malicious package detection and policy as code support. * [TruffleHog v3.98.1](https://github.com/trufflesecurity/trufflehog) – Powerful tool for discovering, classifying, validating, and analyzing leaked credentials. * [Skylos v4.45.0](https://github.com/duriantaco/skylos) – Privacy-first hybrid static-analysis tool for Python, TypeScript, and Go that detects dead code, secrets, and security vulnerabilities. * [Package Manager Guard (PMG) v0.31.0](https://github.com/safedep/pmg) – Tool that blocks malicious packages during installation by wrapping existing package managers. * [Zanadir 0.5.0](https://github.com/MustacheCase/zanadir) – A GitHub repository CI/CD analyzer that scans for security and best-practice gaps and suggests relevant tools across multiple CI providers and output formats. * [Chainloop v1.122.0](https://github.com/chainloop-dev/chainloop) – Evidence store and policy engine for Software Supply Chain attestations, SBOMs, VEX, SARIF, and QA reports. * [Chainloop v1.121.0](https://github.com/chainloop-dev/chainloop) – Evidence store and policy engine for Software Supply Chain attestations, SBOMs, VEX, SARIF, and QA reports. * [Chainloop v1.120.0](https://github.com/chainloop-dev/chainloop) – Evidence store and policy engine for Software Supply Chain attestations, SBOMs, VEX, SARIF, and QA reports. * [Chainloop v1.119.0](https://github.com/chainloop-dev/chainloop) – Evidence store and policy engine for Software Supply Chain attestations, SBOMs, VEX, SARIF, and QA reports. * [Chainloop v1.118.0](https://github.com/chainloop-dev/chainloop) – Evidence store and policy engine for Software Supply Chain attestations, SBOMs, VEX, SARIF, and QA reports. * [Chainloop v1.117.0](https://github.com/chainloop-dev/chainloop) – Evidence store and policy engine for Software Supply Chain attestations, SBOMs, VEX, SARIF, and QA reports. * [Chainloop v1.116.0](https://github.com/chainloop-dev/chainloop) – Evidence store and policy engine for Software Supply Chain attestations, SBOMs, VEX, SARIF, and QA reports. * [Titus v1.2.11](https://github.com/praetorian-inc/titus) – High-performance secrets scanner for source code, git history, and binary files, offering CLI, Go library, Burp and Chrome extensions, 459 detection rules, and live credential validation. * [Skylos v4.47.2](https://github.com/duriantaco/skylos) – Privacy-first hybrid static-analysis tool for Python, TypeScript, and Go that detects dead code, secrets, and security vulnerabilities. * [Skylos v4.47.1](https://github.com/duriantaco/skylos) – Privacy-first hybrid static-analysis tool for Python, TypeScript, and Go that detects dead code, secrets, and security vulnerabilities. * [Chainloop v1.118.1](https://github.com/chainloop-dev/chainloop) – Evidence store and policy engine for Software Supply Chain attestations, SBOMs, VEX, SARIF, and QA reports. * [PII-Shield v2.2.7](https://github.com/pii-shield/pii-shield) – Zero-code Kubernetes sidecar that redacts PII from logs pre-egress using entropy analysis and deterministic hashing. * [Package Manager Guard (PMG) v0.31.0-edge.2](https://github.com/safedep/pmg) – Tool that blocks malicious packages during installation by wrapping existing package managers. * [Betterleaks v2.0.0-rc.2](https://github.com/betterleaks/betterleaks) – Detects passwords, API keys, and tokens in git repos, files, or stdin using configurable, high-performance scanning. * [Package Manager Guard (PMG) v0.31.0-edge.3](https://github.com/safedep/pmg) – Tool that blocks malicious packages during installation by wrapping existing package managers. * [vet v2.0.0-alpha.2026101...](https://github.com/safedep/vet) – Enterprise-grade software supply chain security tool with real-time malicious package detection and policy as code support. * [vet v2.0.0-alpha.2026100...](https://github.com/safedep/vet) – Enterprise-grade software supply chain security tool with real-time malicious package detection and policy as code support. * [vet v2.0.0-alpha.2026100...](https://github.com/safedep/vet) – Enterprise-grade software supply chain security tool with real-time malicious package detection and policy as code support. * [vet v2.0.0-alpha.2026100...](https://github.com/safedep/vet) – Enterprise-grade software supply chain security tool with real-time malicious package detection and policy as code support. * [vet v2.0.0-alpha.2026100...](https://github.com/safedep/vet) – Enterprise-grade software supply chain security tool with real-time malicious package detection and policy as code support.