| 08/21 | 9 |
Let's Encrypt client and ACME library written in Go.
|
| 08/26 | 8 |
Secret management platform for syncing secrets and configurations across teams and infrastructure while preventing leaks.
|
| 08/26 | 8 |
Secure self-hosted home server solution for managing applications with built-in security and ease of use.
|
| 08/26 | 8 |
Secret management platform for syncing secrets and configurations across teams and infrastructure while preventing leaks.
|
| 08/26 | 8 |
Inspects Go source code for security issues by scanning the AST and SSA representations.
|
| 08/25 | 8 |
High-performance authorization engine for modeling and enforcing fine-grained access control inspired by Google Zanzibar.
|
| 08/25 | 8 |
Cloud-native policy-as-code engine that scans infrastructure, containers, Kubernetes, cloud services, and code for vulnerabilities and misconfigurations.
|
| 08/24 | 8 |
Powerful tool for discovering, classifying, validating, and analyzing leaked credentials.
|
| 08/24 | 8 |
Kubernetes-native toolkit that continuously scans clusters and generates vulnerability, configuration, secrets, RBAC, compliance, and SBOM reports.
|
| 08/23 | 8 |
Autonomous AI pentesting platform that runs an end-to-end methodology and uses independent re-exploitation to verify and prove vulnerabilities.
|
| 08/20 | 8 |
Cloud-native graph-based query language for querying and discovering infrastructure assets across clouds, containers, and services.
|
| 08/20 | 8 |
Policy engine for managing security, compliance, and governance in cloud native environments using policy-as-code.
|
| 08/27 | 7 |
Secret management platform for syncing secrets and configurations across teams and infrastructure while preventing leaks.
|
| 08/26 | 7 |
Proxy that secures and simplifies access to infrastructure with outbound-only connections and integrated SSO.
|
| 08/26 | 7 |
Privacy-first hybrid static-analysis tool for Python, TypeScript, and Go that detects dead code, secrets, and security vulnerabilities.
|
| 08/26 | 7 |
Desktop proxy enabling scalable tool discovery, major token savings, and quarantine of malicious upstream servers for AI agents.
|
| 08/25 | 7 |
Proxy that secures and simplifies access to infrastructure with outbound-only connections and integrated SSO.
|
| 08/25 | 7 |
A garbage-collected programming language focused on compile-time and runtime security via encrypted bytecode.
|
| 08/24 | 7 |
Sandbox for running untrusted code with controlled access to Node.js built-in modules and secure context isolation.
|
| 08/24 | 7 |
Go library exposing Linux Landlock sandboxing to restrict process file, network, and some IPC access.
|
| 08/24 | 7 |
Platform for managing, structuring, visualizing, and sharing cyber threat intelligence using a STIX2-based knowledge schema.
|
| 08/24 | 7 |
Community curated templates for the nuclei engine to identify security vulnerabilities in applications.
|
| 08/24 | 7 |
Static application security testing tool that analyzes source code and data flows to find, filter, and prioritize security and privacy risks.
|
| 08/24 | 7 |
Embeddable Go library or standalone auth server with plugin-based, composable authentication and extensible hooks.
|
| 08/24 | 7 |
Embeddable Go library or standalone auth server with plugin-based, composable authentication and extensible hooks.
|
| 08/23 | 7 |
CLI tool that scans workflows and updates GitHub Actions, pinning them to exact commit SHAs.
|
| 08/23 | 7 |
Privacy-first hybrid static-analysis tool for Python, TypeScript, and Go that detects dead code, secrets, and security vulnerabilities.
|
| 08/22 | 7 |
Desktop proxy enabling scalable tool discovery, major token savings, and quarantine of malicious upstream servers for AI agents.
|
| 08/22 | 7 |
Zero-knowledge credential infrastructure that stores and injects credentials for AI agents without ever entering agent context, enabling enforcement, auditing, and redacted responses.
|
| 08/21 | 7 |
Proxy that secures and simplifies access to infrastructure with outbound-only connections and integrated SSO.
|
| 08/21 | 7 |
Database for storing and querying fine-grained authorization data at scale.
|
| 08/27 | 6 |
Autonomous AI pentesting platform that runs an end-to-end methodology and uses independent re-exploitation to verify and prove vulnerabilities.
|
| 08/26 | 6 |
Autonomous AI pentesting platform that runs an end-to-end methodology and uses independent re-exploitation to verify and prove vulnerabilities.
|
| 08/26 | 6 |
Proxy that secures and simplifies access to infrastructure with outbound-only connections and integrated SSO.
|
| 08/26 | 6 |
Proxy that secures and simplifies access to infrastructure with outbound-only connections and integrated SSO.
|
| 08/26 | 6 |
Extension that secures PostgreSQL in cloud environments by managing privileges without requiring superuser access.
|
| 08/25 | 6 |
Proxy that secures and simplifies access to infrastructure with outbound-only connections and integrated SSO.
|
| 08/25 | 6 |
Proxy that secures and simplifies access to infrastructure with outbound-only connections and integrated SSO.
|
| 08/24 | 6 |
Autonomous AI pentesting platform that runs an end-to-end methodology and uses independent re-exploitation to verify and prove vulnerabilities.
|
| 08/23 | 6 |
Securely share sensitive information with automatic expiration and deletion after a set number of views or duration.
|
| 08/21 | 6 |
Secret management platform for syncing secrets and configurations across teams and infrastructure while preventing leaks.
|
| 08/21 | 6 |
Secret management platform for syncing secrets and configurations across teams and infrastructure while preventing leaks.
|
| 08/21 | 6 |
Extension that secures PostgreSQL in cloud environments by managing privileges without requiring superuser access.
|
| 08/20 | 6 |
Secret management platform for syncing secrets and configurations across teams and infrastructure while preventing leaks.
|
| 08/20 | 6 |
Proxy that secures and simplifies access to infrastructure with outbound-only connections and integrated SSO.
|
| 08/20 | 6 |
Immutable tamper-resistant ledger for recording and querying signed metadata in software supply chains.
|
| 08/20 | 6 |
Securely share sensitive information with automatic expiration and deletion after a set number of views or duration.
|
| 08/26 | 5 |
CI/CD compliance scanner for GitLab pipelines
|
| 08/26 | 5 |
CI/CD compliance scanner for GitLab pipelines
|
| 08/25 | 5 |
Crowdsourced security solution for detecting and blocking malicious IPs.
|
| 08/25 | 5 |
CI/CD compliance scanner for GitLab pipelines
|
| 08/24 | 5 |
CI/CD compliance scanner for GitLab pipelines
|
| 08/24 | 5 |
Fast, efficient osquery management server implementing the osquery remote API as a TLS endpoint.
|
| 08/23 | 5 |
Autonomous AI pentesting platform that runs an end-to-end methodology and uses independent re-exploitation to verify and prove vulnerabilities.
|
| 08/23 | 5 |
Autonomous AI pentesting platform that runs an end-to-end methodology and uses independent re-exploitation to verify and prove vulnerabilities.
|
| 08/22 | 5 |
Autonomous AI pentesting platform that runs an end-to-end methodology and uses independent re-exploitation to verify and prove vulnerabilities.
|
| 08/22 | 5 |
Tool for database anonymization and synthetic data generation.
|
| 08/21 | 5 |
CI/CD compliance scanner for GitLab pipelines
|
| 08/20 | 5 |
Automatically apply security best practices to GitHub Actions workflows, Dockerfiles, and dependency configurations.
|
| 08/25 | 4 |
A network security appliance firmware and companion mobile and web apps for managing and monitoring home or small office networks.
|
| 08/25 | 4 |
Cloud-native graph-based query language for querying and discovering infrastructure assets across clouds, containers, and services.
|
| 08/25 | 4 |
Cybersecurity-focused domain-specific programming language with a dedicated virtual machine and IDE support.
|
| 08/24 | 4 |
Modern automation platform for security and IT engineers with YAML templates, no-code workflows, lookup tables, and case management.
|
| 08/21 | 4 |
Cybersecurity-focused domain-specific programming language with a dedicated virtual machine and IDE support.
|
| 08/20 | 4 |
End-to-end field-level encryption for TypeScript apps with zero-knowledge key management and searchable encrypted queries.
|
| 08/25 | 3 |
Best Practices Badge project that defines criteria and provides a BadgeApp web application for projects to self-certify compliance and display badges.
|
| 08/23 | 3 |
Local-first EDR-style monitor tracking AI agent processes, file and network activity with per-agent risk scoring.
|
| 08/22 | 3 |
Local-first EDR-style monitor tracking AI agent processes, file and network activity with per-agent risk scoring.
|
| 08/21 | 2 |
A network security appliance firmware and companion mobile and web apps for managing and monitoring home or small office networks.
|