security
| Date | Project Name | 🎉 | ? | Tags |
|---|---|---|---|---|
| 01/27 |
Cilium v1.19.0-rc.1
* [Cilium v1.19.0-rc.1](https://github.com/cilium/cilium) – Networking, observability, and security solution with an eBPF-based dataplane.
Networking, observability, and security solution with an eBPF-based dataplane.
|
5
|
Go 23547 ⭐3695 days old |
golang security kubernetes go containers bpf kubernetes-networking |
| 01/27 |
Password Pusher v1.67.0
* [Password Pusher v1.67.0](https://github.com/pglombardo/PasswordPusher) – Securely share sensitive information with automatic expiration and deletion after a set number of views or duration.
Securely share sensitive information with automatic expiration and deletion after a set number of views or duration.
|
8
|
Ruby 2837 ⭐5144 days old |
ruby security password-expiration password password-safety communicate-passwords |
| 01/27 |
Grype v0.106.0
* [Grype v0.106.0](https://github.com/anchore/grype) – Vulnerability scanner for container images and filesystems.
Vulnerability scanner for container images and filesystems.
|
8
|
Go 11437 ⭐2072 days old |
golang docker security go containers vulnerability |
| 01/27 |
Interactsh v1.3.0
* [Interactsh v1.3.0](https://github.com/projectdiscovery/interactsh) – Out-of-band interaction gathering server and client library.
Out-of-band interaction gathering server and client library.
|
8
|
Go 4153 ⭐1824 days old |
golang security http go dns appsec oast |
| 01/27 |
Powerpipe v1.5.0-rc.1
* [Powerpipe v1.5.0-rc.1](https://github.com/turbot/powerpipe) – Visualize data sources and run compliance benchmarks for effective decision-making and ongoing monitoring.
Visualize data sources and run compliance benchmarks for effective decision-making and ongoing monitoring.
|
3
|
TypeScript 472 ⭐835 days old |
javascript security typescript aws kubernetes azure cis |
| 01/27 |
cnspec v12.20.0
* [cnspec v12.20.0](https://github.com/mondoohq/cnspec) – Cloud-native policy-as-code engine that scans infrastructure, containers, Kubernetes, cloud services, and code for vulnerabilities and misconfigurations.
Cloud-native policy-as-code engine that scans infrastructure, containers, Kubernetes, cloud services, and code for vulnerabilities and misconfigurations.
|
7
|
Go 395 ⭐1224 days old |
golang security go cloud-native compliance opensource policy-as-code |
| 01/27 |
cnquery v12.20.0
* [cnquery v12.20.0](https://github.com/mondoohq/cnquery) – Cloud-native, graph-based asset inventory and discovery tool for querying infrastructure across clouds, containers, Kubernetes, and VMs.
Cloud-native, graph-based asset inventory and discovery tool for querying infrastructure across clouds, containers, Kubernetes, and VMs.
|
7
|
Go 387 ⭐1260 days old |
golang security aws go azure gcp cis |
| 01/27 |
ldap-authentication v4.0.3
* [ldap-authentication v4.0.3](https://github.com/shaozi/ldap-authentication) – Node.js async LDAP/AD authentication library supporting admin bind, self-bind, user verification, and STARTTLS.
Node.js async LDAP/AD authentication library supporting admin bind, self-bind, user verification, and STARTTLS.
|
5
|
JavaScript 125 ⭐2213 days old |
javascript authentication security nodejs node ldap ldap-search |
| 01/27 |
ldap-authentication v4.0.1
* [ldap-authentication v4.0.1](https://github.com/shaozi/ldap-authentication) – Node.js async LDAP/AD authentication library supporting admin bind, self-bind, user verification, and STARTTLS.
Node.js async LDAP/AD authentication library supporting admin bind, self-bind, user verification, and STARTTLS.
|
6
|
JavaScript 125 ⭐2213 days old |
javascript authentication security nodejs node ldap ldap-search |
| 01/27 |
GoBetterAuth v2.0.0
* [GoBetterAuth v2.0.0](https://github.com/GoBetterAuth/go-better-auth) – Scalable authentication for Go apps or standalone servers offering email/password auth, sessions, OAuth, and extensible hooks.
Scalable authentication for Go apps or standalone servers offering email/password auth, sessions, OAuth, and extensible hooks.
|
7
|
Go 70 ⭐99 days old |
golang authentication security go open-source authorization |
| 01/26 |
hoop.dev 1.49.0
* [hoop.dev 1.49.0](https://github.com/hoophq/hoop) – Proxy that secures and simplifies access to infrastructure with outbound-only connections and integrated SSO.
Proxy that secures and simplifies access to infrastructure with outbound-only connections and integrated SSO.
|
7
|
Go 546 ⭐1247 days old |
golang security go databases proxy grpc access-control |
| 01/26 |
Nuclei Templates v10.3.8
* [Nuclei Templates v10.3.8](https://github.com/projectdiscovery/nuclei-templates) – Community curated templates for the nuclei engine to identify security vulnerabilities in applications.
Community curated templates for the nuclei engine to identify security vulnerabilities in applications.
|
7
|
JavaScript 11852 ⭐2124 days old |
javascript security bugbounty nuclei-templates nuclei nuclei-checks |
| 01/26 |
go-tuf/v2 v2.4.1
* [go-tuf/v2 v2.4.1](https://github.com/theupdateframework/go-tuf) – Lightweight Go library for creating, signing, verifying, and managing secure software update metadata.
Lightweight Go library for creating, signing, verifying, and managing secure software update metadata.
|
6
|
Go 694 ⭐4065 days old |
golang security go supply-chain tuf |
| 01/26 |
js-x-ray @nodesecure/tracer@3...
* [js-x-ray @nodesecure/tracer@3...](https://github.com/NodeSecure/js-x-ray) – JavaScript AST analysis tool for identifying potentially malicious code patterns.
JavaScript AST analysis tool for identifying potentially malicious code patterns.
|
5
|
TypeScript 267 ⭐2133 days old |
javascript security typescript ast security-tools security-audit ast-analysis |
| 01/26 |
Code Pathfinder v1.3.0
* [Code Pathfinder v1.3.0](https://github.com/shivasurya/code-pathfinder) – Security suite combining graph-based structural code analysis with AI-assisted vulnerability detection and IDE/CI integrations.
Security suite combining graph-based structural code analysis with AI-assisted vulnerability detection and IDE/CI integrations.
|
7
|
Go 92 ⭐798 days old |
golang security go sast security-tools application-security structural-search |
| 01/25 |
vm2 v3.10.3
* [vm2 v3.10.3](https://github.com/patriksimek/vm2) – Sandbox for running untrusted code with controlled access to Node.js built-in modules and secure context isolation.
Sandbox for running untrusted code with controlled access to Node.js built-in modules and secure context isolation.
|
7
|
JavaScript 3993 ⭐4396 days old |
javascript security node-js sandbox vm |
| 01/25 |
MultiJuicer v9.1.0
* [MultiJuicer v9.1.0](https://github.com/juice-shop/multi-juicer) – Hosts and manages separate Juice Shop instances per participant on a Kubernetes cluster for CTFs and security trainings.
Hosts and manages separate Juice Shop instances per participant on a Kubernetes cluster for CTFs and security trainings.
|
7
|
Go 305 ⭐2422 days old |
golang security go ctf-platform owasp juice-shop capture-the-flag |
| 01/25 |
Claude Code Safety Net v0.7.1
* [Claude Code Safety Net v0.7.1](https://github.com/kenryu42/claude-code-safety-net) – Plugin that intercepts and blocks destructive git and filesystem commands before they execute.
Plugin that intercepts and blocks destructive git and filesystem commands before they execute.
|
6
|
TypeScript 929 ⭐32 days old |
javascript security typescript claude claude-code claude-code-plugin destructive-commands |
| 01/25 |
steady-tun v1.5.0
* [steady-tun v1.5.0](https://github.com/Snawoot/steady-tun) – TLS tunneling proxy forwarding TCP over a pool of pre-established upstream connections to reduce TLS handshake latency.
TLS tunneling proxy forwarding TCP over a pool of pre-established upstream connections to reduce TLS handshake latency.
|
7
|
Go 106 ⭐2141 days old |
golang security go tls tcp-proxy tls-proxy network-wrapper |
| 01/24 |
OpenCTI 6.9.10
* [OpenCTI 6.9.10](https://github.com/OpenCTI-Platform/opencti) – Platform for managing, structuring, visualizing, and sharing cyber threat intelligence using a STIX2-based knowledge schema.
Platform for managing, structuring, visualizing, and sharing cyber threat intelligence using a STIX2-based knowledge schema.
|
7
|
TypeScript 8133 ⭐2597 days old |
javascript security typescript threat-intelligence cyber cti intelligence |
| 01/24 |
age-plugin-tpm v1.0.1
* [age-plugin-tpm v1.0.1](https://github.com/Foxboron/age-plugin-tpm) – TPM 2.0 plugin enabling age identities to be sealed for file encryption and decryption.
TPM 2.0 plugin enabling age identities to be sealed for file encryption and decryption.
|
6
|
Go 120 ⭐1014 days old |
golang security go age go-tpm tpm |
| 01/24 |
EVE 16.6.0
* [EVE 16.6.0](https://github.com/lf-edge/eve) – Edge virtualization engine providing hardware-assisted virtualization and resource partitioning for on-premises edge devices.
Edge virtualization engine providing hardware-assisted virtualization and resource partitioning for on-premises edge devices.
|
8
|
Go 534 ⭐2473 days old |
golang security go virtualization iot edge linux-foundation |
| 01/24 |
Cosmos v0.20.2
* [Cosmos v0.20.2](https://github.com/azukaar/Cosmos-Server) – Secure self-hosted home server solution for managing applications with built-in security and ease of use.
Secure self-hosted home server solution for managing applications with built-in security and ease of use.
|
7
|
JavaScript 5601 ⭐1080 days old |
javascript authentication security cloud reverse-proxy cosmos |
| 01/23 |
Claude Code Safety Net v0.7.0
* [Claude Code Safety Net v0.7.0](https://github.com/kenryu42/claude-code-safety-net) – Plugin that intercepts and blocks destructive git and filesystem commands before they execute.
Plugin that intercepts and blocks destructive git and filesystem commands before they execute.
|
7
|
TypeScript 929 ⭐32 days old |
javascript security typescript claude claude-code claude-code-plugin destructive-commands |
| 01/23 |
supautils v3.1.0
* [supautils v3.1.0](https://github.com/supabase/supautils) – Extension that secures PostgreSQL in cloud environments by managing privileges without requiring superuser access.
Extension that secures PostgreSQL in cloud environments by managing privileges without requiring superuser access.
|
7
|
C 76 ⭐1738 days old |
postgresql security postgres c postgresql-extension roles |
| 01/23 |
hoop.dev 1.48.2
* [hoop.dev 1.48.2](https://github.com/hoophq/hoop) – Proxy that secures and simplifies access to infrastructure with outbound-only connections and integrated SSO.
Proxy that secures and simplifies access to infrastructure with outbound-only connections and integrated SSO.
|
6
|
Go 546 ⭐1247 days old |
golang security go databases proxy grpc access-control |
| 01/23 |
Cosmos v0.20.1
* [Cosmos v0.20.1](https://github.com/azukaar/Cosmos-Server) – Secure self-hosted home server solution for managing applications with built-in security and ease of use.
Secure self-hosted home server solution for managing applications with built-in security and ease of use.
|
7
|
JavaScript 5601 ⭐1080 days old |
javascript authentication security cloud reverse-proxy cosmos |
| 01/23 |
StackRox Kubernetes Security Platform 4.8.8-rc.4
* [StackRox Kubernetes Security Platform 4.8.8-rc.4](https://github.com/stackrox/stackrox) – Kubernetes security platform performing container environment risk analysis, providing visibility, runtime alerts, and hardening recommendations.
Kubernetes security platform performing container environment risk analysis, providing visibility, runtime alerts, and hardening recommendations.
|
4
|
Go 1246 ⭐1515 days old |
golang hacktoberfest security kubernetes go containers k8s |
| 01/23 |
UTMStack v11.2.1
* [UTMStack v11.2.1](https://github.com/utmstack/UTMStack) – Enterprise-ready SIEM and XDR platform offering real-time log correlation, threat intelligence, and incident response.
Enterprise-ready SIEM and XDR platform offering real-time log correlation, threat intelligence, and incident response.
|
6
|
TypeScript 523 ⭐861 days old |
javascript security typescript compliance security-audit incident-response siem |
| 01/23 |
vet v1.12.18
* [vet v1.12.18](https://github.com/safedep/vet) – Enterprise-grade software supply chain security tool with real-time malicious package detection and policy as code support.
Enterprise-grade software supply chain security tool with real-time malicious package detection and policy as code support.
|
6
|
Go 936 ⭐1122 days old |
golang security go devsecops supply-chain-security policy-as-code software-composition-analysis |
| 01/23 |
vet v1.12.17
* [vet v1.12.17](https://github.com/safedep/vet) – Enterprise-grade software supply chain security tool with real-time malicious package detection and policy as code support.
Enterprise-grade software supply chain security tool with real-time malicious package detection and policy as code support.
|
6
|
Go 936 ⭐1122 days old |
golang security go devsecops supply-chain-security policy-as-code software-composition-analysis |
| 01/23 |
CrowdSec v1.7.6
* [CrowdSec v1.7.6](https://github.com/crowdsecurity/crowdsec) – Crowdsourced security solution for detecting and blocking malicious IPs.
Crowdsourced security solution for detecting and blocking malicious IPs.
|
7
|
Go 12334 ⭐2083 days old |
golang security go linux detection protection attacks-prevention |
| 01/23 |
Yaklang 1.4.5-beta8
* [Yaklang 1.4.5-beta8](https://github.com/yaklang/yaklang) – Cybersecurity-focused domain-specific programming language with a dedicated virtual machine and IDE support.
Cybersecurity-focused domain-specific programming language with a dedicated virtual machine and IDE support.
|
3
|
Go 531 ⭐1005 days old |
golang security go security-tools cybersecurity dsl |
| 01/23 |
ghalint v1.5.5
* [ghalint v1.5.5](https://github.com/suzuki-shunsuke/ghalint) – Lints GitHub Actions workflows and action.yaml for security best practices.
Lints GitHub Actions workflows and action.yaml for security best practices.
|
5
|
Go 203 ⭐1101 days old |
golang linter security cli go github-actions oss |
| 01/22 |
Kubescape v3.0.48
* [Kubescape v3.0.48](https://github.com/kubescape/kubescape) – Comprehensive security platform for managing and securing Kubernetes environments throughout the development and deployment lifecycle.
Comprehensive security platform for managing and securing Kubernetes environments throughout the development and deployment lifecycle.
|
6
|
Go 11154 ⭐1629 days old |
golang security kubernetes go devops nsa mitre-attack |
| 01/22 |
sigstore framework v1.10.4
* [sigstore framework v1.10.4](https://github.com/sigstore/sigstore) – Common code library shared by Sigstore infrastructure and Go clients providing signing interfaces and OpenID Connect support.
Common code library shared by Sigstore infrastructure and Go clients providing signing interfaces and OpenID Connect support.
|
6
|
Go 496 ⭐1805 days old |
golang security go supply-chain sigstore |
| 01/22 |
step-ca v0.30.0-rc2
* [step-ca v0.30.0-rc2](https://github.com/smallstep/certificates) – Private certificate authority for secure, automated certificate management in DevOps environments.
Private certificate authority for secure, automated certificate management in DevOps environments.
|
4
|
Go 8070 ⭐2645 days old |
golang security go security-tools tls x509 certificates |
| 01/22 |
Snyk CLI v1.1302.1
* [Snyk CLI v1.1302.1](https://github.com/snyk/cli) – Scans and monitors projects for security vulnerabilities in code, containers, dependencies, and infrastructure-as-code.
Scans and monitors projects for security vulnerabilities in code, containers, dependencies, and infrastructure-as-code.
|
5
|
TypeScript 5389 ⭐3741 days old |
javascript security typescript monitor vulnerabilities snyk |
| 01/22 |
Password Pusher v1.66.2
* [Password Pusher v1.66.2](https://github.com/pglombardo/PasswordPusher) – Securely share sensitive information with automatic expiration and deletion after a set number of views or duration.
Securely share sensitive information with automatic expiration and deletion after a set number of views or duration.
|
7
|
Ruby 2837 ⭐5144 days old |
ruby security password-expiration password password-safety communicate-passwords |
| 01/22 |
cnspec v12.19.2
* [cnspec v12.19.2](https://github.com/mondoohq/cnspec) – Cloud-native policy-as-code engine that scans infrastructure, containers, Kubernetes, cloud services, and code for vulnerabilities and misconfigurations.
Cloud-native policy-as-code engine that scans infrastructure, containers, Kubernetes, cloud services, and code for vulnerabilities and misconfigurations.
|
6
|
Go 395 ⭐1224 days old |
golang security go cloud-native compliance opensource policy-as-code |
| 01/22 |
Infisical v0.156.3
* [Infisical v0.156.3](https://github.com/Infisical/infisical) – Secret management platform for syncing secrets and configurations across teams and infrastructure while preventing leaks.
Secret management platform for syncing secrets and configurations across teams and infrastructure while preventing leaks.
|
7
|
TypeScript 24612 ⭐1271 days old |
javascript security typescript cli end-to-end-encryption environment-variables secret-management secrets |
| 01/21 |
cnquery v12.19.2
* [cnquery v12.19.2](https://github.com/mondoohq/cnquery) – Cloud-native, graph-based asset inventory and discovery tool for querying infrastructure across clouds, containers, Kubernetes, and VMs.
Cloud-native, graph-based asset inventory and discovery tool for querying infrastructure across clouds, containers, Kubernetes, and VMs.
|
6
|
Go 387 ⭐1260 days old |
golang security aws go azure gcp cis |
| 01/21 |
Infisical v0.156.2
* [Infisical v0.156.2](https://github.com/Infisical/infisical) – Secret management platform for syncing secrets and configurations across teams and infrastructure while preventing leaks.
Secret management platform for syncing secrets and configurations across teams and infrastructure while preventing leaks.
|
7
|
TypeScript 24612 ⭐1271 days old |
javascript security typescript cli end-to-end-encryption environment-variables secret-management secrets |
| 01/21 |
Infisical v0.156.1
* [Infisical v0.156.1](https://github.com/Infisical/infisical) – Secret management platform for syncing secrets and configurations across teams and infrastructure while preventing leaks.
Secret management platform for syncing secrets and configurations across teams and infrastructure while preventing leaks.
|
7
|
TypeScript 24612 ⭐1271 days old |
javascript security typescript cli end-to-end-encryption environment-variables secret-management secrets |
| 01/21 |
Infisical v0.156.0
* [Infisical v0.156.0](https://github.com/Infisical/infisical) – Secret management platform for syncing secrets and configurations across teams and infrastructure while preventing leaks.
Secret management platform for syncing secrets and configurations across teams and infrastructure while preventing leaks.
|
8
|
TypeScript 24612 ⭐1271 days old |
javascript security typescript cli end-to-end-encryption environment-variables secret-management secrets |
| 01/21 |
Cloudlist v1.3.0
* [Cloudlist v1.3.0](https://github.com/projectdiscovery/cloudlist) – Multi-cloud tool for listing and aggregating assets from various cloud providers into a centralized inventory.
Multi-cloud tool for listing and aggregating assets from various cloud providers into a centralized inventory.
|
7
|
Go 993 ⭐1920 days old |
golang hacktoberfest security go devops asset-management cloudsecurity |
| 01/21 |
Pike v0.3.91
* [Pike v0.3.91](https://github.com/JamesWoolfenden/pike) – Tool to determine minimum permissions required for Terraform and Infrastructure as Code deployments.
Tool to determine minimum permissions required for Terraform and Infrastructure as Code deployments.
|
5
|
Go 801 ⭐1333 days old |
golang security go terraform policy iac bridgecrew |
| 01/21 |
CrowdSec v1.7.5
* [CrowdSec v1.7.5](https://github.com/crowdsecurity/crowdsec) – Crowdsourced security solution for detecting and blocking malicious IPs.
Crowdsourced security solution for detecting and blocking malicious IPs.
|
7
|
Go 12334 ⭐2083 days old |
golang security go linux detection protection attacks-prevention |
| 01/21 |
go-tuf/v2 v2.4.0
* [go-tuf/v2 v2.4.0](https://github.com/theupdateframework/go-tuf) – Lightweight Go library for creating, signing, verifying, and managing secure software update metadata.
Lightweight Go library for creating, signing, verifying, and managing secure software update metadata.
|
7
|
Go 694 ⭐4065 days old |
golang security go supply-chain tuf |
| 01/20 |
JS Recon Buddy v1.20.2
* [JS Recon Buddy v1.20.2](https://github.com/TheArqsz/JSRecon-Buddy) – Browser extension that overlays security-related information found on webpages without disrupting workflow.
Browser extension that overlays security-related information found on webpages without disrupting workflow.
|
6
|
JavaScript 166 ⭐146 days old |
javascript security bugbounty recon |
| 01/20 |
Infisical v0.155.7
* [Infisical v0.155.7](https://github.com/Infisical/infisical) – Secret management platform for syncing secrets and configurations across teams and infrastructure while preventing leaks.
Secret management platform for syncing secrets and configurations across teams and infrastructure while preventing leaks.
|
7
|
TypeScript 24612 ⭐1271 days old |
javascript security typescript cli end-to-end-encryption environment-variables secret-management secrets |
| 01/20 |
hoop.dev 1.48.1
* [hoop.dev 1.48.1](https://github.com/hoophq/hoop) – Proxy that secures and simplifies access to infrastructure with outbound-only connections and integrated SSO.
Proxy that secures and simplifies access to infrastructure with outbound-only connections and integrated SSO.
|
6
|
Go 546 ⭐1247 days old |
golang security go databases proxy grpc access-control |
| 01/20 |
Substation v2.8.0
* [Substation v2.8.0](https://github.com/brexhq/substation) – Toolkit for routing, normalizing, and enriching security event and audit logs.
Toolkit for routing, normalizing, and enriching security event and audit logs.
|
7
|
Go 389 ⭐1377 days old |
golang security aws monitoring go logging automation |
| 01/20 |
cnspec v12.19.1
* [cnspec v12.19.1](https://github.com/mondoohq/cnspec) – Cloud-native policy-as-code engine that scans infrastructure, containers, Kubernetes, cloud services, and code for vulnerabilities and misconfigurations.
Cloud-native policy-as-code engine that scans infrastructure, containers, Kubernetes, cloud services, and code for vulnerabilities and misconfigurations.
|
6
|
Go 395 ⭐1224 days old |
golang security go cloud-native compliance opensource policy-as-code |
| 01/20 |
cnquery v12.19.1
* [cnquery v12.19.1](https://github.com/mondoohq/cnquery) – Cloud-native, graph-based asset inventory and discovery tool for querying infrastructure across clouds, containers, Kubernetes, and VMs.
Cloud-native, graph-based asset inventory and discovery tool for querying infrastructure across clouds, containers, Kubernetes, and VMs.
|
6
|
Go 387 ⭐1260 days old |
golang security aws go azure gcp cis |
| 01/20 |
Protect.js @cipherstash/protect...
* [Protect.js @cipherstash/protect...](https://github.com/cipherstash/protectjs) – TypeScript package for encrypting and decrypting data using unique keys for each value.
TypeScript package for encrypting and decrypting data using unique keys for each value.
|
6
|
TypeScript 127 ⭐433 days old |
javascript security typescript data encryption data-security |
| 01/20 |
OpenZiti SDK for NodeJS 0.23.1
* [OpenZiti SDK for NodeJS 0.23.1](https://github.com/openziti/ziti-sdk-nodejs) – SDK enabling zero-trust networking for Node.js applications and web servers.
SDK enabling zero-trust networking for Node.js applications and web servers.
|
5
|
C 81 ⭐2186 days old |
javascript security nodejs node c zerotrust |
| 01/20 |
Django RLS v0.4.1
* [Django RLS v0.4.1](https://github.com/kdpisda/django-rls) – PostgreSQL row-level security integration for Django, enabling tenant/user policies defined with Q objects.
PostgreSQL row-level security integration for Django, enabling tenant/user policies defined with Q objects.
|
5
|
Python 73 ⭐207 days old |
django postgresql python security postgres rls |
| 01/20 |
cnspec v12.19.0
* [cnspec v12.19.0](https://github.com/mondoohq/cnspec) – Cloud-native policy-as-code engine that scans infrastructure, containers, Kubernetes, cloud services, and code for vulnerabilities and misconfigurations.
Cloud-native policy-as-code engine that scans infrastructure, containers, Kubernetes, cloud services, and code for vulnerabilities and misconfigurations.
|
7
|
Go 395 ⭐1224 days old |
golang security go cloud-native compliance opensource policy-as-code |
| 01/20 |
Code Pathfinder v1.2.2
* [Code Pathfinder v1.2.2](https://github.com/shivasurya/code-pathfinder) – Security suite combining graph-based structural code analysis with AI-assisted vulnerability detection and IDE/CI integrations.
Security suite combining graph-based structural code analysis with AI-assisted vulnerability detection and IDE/CI integrations.
|
5
|
Go 92 ⭐798 days old |
golang security go sast security-tools application-security structural-search |
| 01/20 |
OpenZiti SDK for NodeJS 0.22.0
* [OpenZiti SDK for NodeJS 0.22.0](https://github.com/openziti/ziti-sdk-nodejs) – SDK enabling zero-trust networking for Node.js applications and web servers.
SDK enabling zero-trust networking for Node.js applications and web servers.
|
6
|
C 81 ⭐2186 days old |
javascript security nodejs node c zerotrust |
| 01/20 |
OpenZiti SDK for NodeJS 0.21.2
* [OpenZiti SDK for NodeJS 0.21.2](https://github.com/openziti/ziti-sdk-nodejs) – SDK enabling zero-trust networking for Node.js applications and web servers.
SDK enabling zero-trust networking for Node.js applications and web servers.
|
5
|
C 81 ⭐2186 days old |
javascript security nodejs node c zerotrust |
| 01/19 |
OpenZiti SDK for NodeJS 0.21.0
* [OpenZiti SDK for NodeJS 0.21.0](https://github.com/openziti/ziti-sdk-nodejs) – SDK enabling zero-trust networking for Node.js applications and web servers.
SDK enabling zero-trust networking for Node.js applications and web servers.
|
6
|
C 81 ⭐2186 days old |
javascript security nodejs node c zerotrust |
| 01/19 |
JS Recon Buddy v1.20.1
* [JS Recon Buddy v1.20.1](https://github.com/TheArqsz/JSRecon-Buddy) – Browser extension that overlays security-related information found on webpages without disrupting workflow.
Browser extension that overlays security-related information found on webpages without disrupting workflow.
|
6
|
JavaScript 166 ⭐146 days old |
javascript security bugbounty recon |
| 01/19 |
hoop.dev 1.48.0
* [hoop.dev 1.48.0](https://github.com/hoophq/hoop) – Proxy that secures and simplifies access to infrastructure with outbound-only connections and integrated SSO.
Proxy that secures and simplifies access to infrastructure with outbound-only connections and integrated SSO.
|
7
|
Go 546 ⭐1247 days old |
golang security go databases proxy grpc access-control |
| 01/19 |
cnquery v12.19.0
* [cnquery v12.19.0](https://github.com/mondoohq/cnquery) – Cloud-native, graph-based asset inventory and discovery tool for querying infrastructure across clouds, containers, Kubernetes, and VMs.
Cloud-native, graph-based asset inventory and discovery tool for querying infrastructure across clouds, containers, Kubernetes, and VMs.
|
7
|
Go 387 ⭐1260 days old |
golang security aws go azure gcp cis |
| 01/19 |
go-tuf/v2 v2.3.1
* [go-tuf/v2 v2.3.1](https://github.com/theupdateframework/go-tuf) – Lightweight Go library for creating, signing, verifying, and managing secure software update metadata.
Lightweight Go library for creating, signing, verifying, and managing secure software update metadata.
|
6
|
Go 694 ⭐4065 days old |
golang security go supply-chain tuf |
| 01/19 |
Infisical v0.155.6
* [Infisical v0.155.6](https://github.com/Infisical/infisical) – Secret management platform for syncing secrets and configurations across teams and infrastructure while preventing leaks.
Secret management platform for syncing secrets and configurations across teams and infrastructure while preventing leaks.
|
7
|
TypeScript 24612 ⭐1271 days old |
javascript security typescript cli end-to-end-encryption environment-variables secret-management secrets |
| 01/19 |
Yaklang 1.4.5-beta7
* [Yaklang 1.4.5-beta7](https://github.com/yaklang/yaklang) – Cybersecurity-focused domain-specific programming language with a dedicated virtual machine and IDE support.
Cybersecurity-focused domain-specific programming language with a dedicated virtual machine and IDE support.
|
3
|
Go 531 ⭐1005 days old |
golang security go security-tools cybersecurity dsl |
| 01/19 |
Claude Code Safety Net v0.6.2
* [Claude Code Safety Net v0.6.2](https://github.com/kenryu42/claude-code-safety-net) – Plugin that intercepts and blocks destructive git and filesystem commands before they execute.
Plugin that intercepts and blocks destructive git and filesystem commands before they execute.
|
6
|
TypeScript 929 ⭐32 days old |
javascript security typescript claude claude-code claude-code-plugin destructive-commands |
| 01/19 |
Code Pathfinder v1.2.1
* [Code Pathfinder v1.2.1](https://github.com/shivasurya/code-pathfinder) – Security suite combining graph-based structural code analysis with AI-assisted vulnerability detection and IDE/CI integrations.
Security suite combining graph-based structural code analysis with AI-assisted vulnerability detection and IDE/CI integrations.
|
5
|
Go 92 ⭐798 days old |
golang security go sast security-tools application-security structural-search |
| 01/18 |
MCPProxy v0.15.1
* [MCPProxy v0.15.1](https://github.com/smart-mcp-proxy/mcpproxy-go) – Desktop proxy enabling scalable tool discovery, major token savings, and quarantine of malicious upstream servers for AI agents.
Desktop proxy enabling scalable tool discovery, major token savings, and quarantine of malicious upstream servers for AI agents.
|
5
|
Go 112 ⭐215 days old |
security ai go mcp mcp-server ai-agents |
| 01/18 |
JS Recon Buddy v1.20.0
* [JS Recon Buddy v1.20.0](https://github.com/TheArqsz/JSRecon-Buddy) – Browser extension that overlays security-related information found on webpages without disrupting workflow.
Browser extension that overlays security-related information found on webpages without disrupting workflow.
|
7
|
JavaScript 166 ⭐146 days old |
javascript security bugbounty recon |
| 01/18 |
Password Pusher v1.66.1
* [Password Pusher v1.66.1](https://github.com/pglombardo/PasswordPusher) – Securely share sensitive information with automatic expiration and deletion after a set number of views or duration.
Securely share sensitive information with automatic expiration and deletion after a set number of views or duration.
|
7
|
Ruby 2837 ⭐5144 days old |
ruby security password-expiration password password-safety communicate-passwords |
| 01/18 |
hibp v15.2.1
* [hibp v15.2.1](https://github.com/wKovacs64/hibp) – Unofficial TypeScript SDK for querying the Have I been pwned? service.
Unofficial TypeScript SDK for querying the Have I been pwned? service.
|
6
|
TypeScript 116 ⭐3577 days old |
javascript security typescript hibp haveibeenpwned pwned hack |
| 01/17 |
JS Recon Buddy v1.19.4
* [JS Recon Buddy v1.19.4](https://github.com/TheArqsz/JSRecon-Buddy) – Browser extension that overlays security-related information found on webpages without disrupting workflow.
Browser extension that overlays security-related information found on webpages without disrupting workflow.
|
5
|
JavaScript 166 ⭐146 days old |
javascript security bugbounty recon |
| 01/17 |
rnsec v1.1.0
* [rnsec v1.1.0](https://github.com/adnxy/rnsec) – Lightweight, fast security scanner for React Native and Expo that detects vulnerabilities, secrets, and misconfigurations.
Lightweight, fast security scanner for React Native and Expo that detects vulnerabilities, secrets, and misconfigurations.
|
7
|
TypeScript 416 ⭐25 days old |
security typescript reactnative expo |
| 01/17 |
Prosopo Procaptcha v3.5.21
* [Prosopo Procaptcha v3.5.21](https://github.com/prosopo/captcha) – Drop-in replacement for reCAPTCHA, hCaptcha, and Cloudflare Turnstile that protects user privacy and collects no data.
Drop-in replacement for reCAPTCHA, hCaptcha, and Cloudflare Turnstile that protects user privacy and collects no data.
|
5
|
TypeScript 340 ⭐998 days old |
security typescript captcha bot-detection ddos-mitigation ddos-protection |
| 01/17 |
Code Pathfinder v1.2.0
* [Code Pathfinder v1.2.0](https://github.com/shivasurya/code-pathfinder) – Security suite combining graph-based structural code analysis with AI-assisted vulnerability detection and IDE/CI integrations.
Security suite combining graph-based structural code analysis with AI-assisted vulnerability detection and IDE/CI integrations.
|
7
|
Go 92 ⭐798 days old |
golang security go sast security-tools application-security structural-search |
| 01/17 |
JS Recon Buddy v1.19.2
* [JS Recon Buddy v1.19.2](https://github.com/TheArqsz/JSRecon-Buddy) – Browser extension that overlays security-related information found on webpages without disrupting workflow.
Browser extension that overlays security-related information found on webpages without disrupting workflow.
|
6
|
JavaScript 166 ⭐146 days old |
javascript security bugbounty recon |
| 01/17 |
vm2 v3.10.2
* [vm2 v3.10.2](https://github.com/patriksimek/vm2) – Sandbox for running untrusted code with controlled access to Node.js built-in modules and secure context isolation.
Sandbox for running untrusted code with controlled access to Node.js built-in modules and secure context isolation.
|
7
|
JavaScript 3993 ⭐4396 days old |
javascript security node-js sandbox vm |
| 01/17 |
JS Recon Buddy v1.19.1
* [JS Recon Buddy v1.19.1](https://github.com/TheArqsz/JSRecon-Buddy) – Browser extension that overlays security-related information found on webpages without disrupting workflow.
Browser extension that overlays security-related information found on webpages without disrupting workflow.
|
6
|
JavaScript 166 ⭐146 days old |
javascript security bugbounty recon |
| 01/17 |
socket-proxy 1.11.0
* [socket-proxy 1.11.0](https://github.com/wollomatic/socket-proxy) – Lightweight secure-by-default Unix socket proxy offering regex-based method allowlists, IP-based access control, and a minimal Go-only image.
Lightweight secure-by-default Unix socket proxy offering regex-based method allowlists, IP-based access control, and a minimal Go-only image.
|
7
|
Go 271 ⭐856 days old |
docker security go firewall docker-socket docker-socket-proxy |
| 01/16 |
Dalec v0.20.1
* [Dalec v0.20.1](https://github.com/project-dalec/dalec) – Declarative format and toolchain for building secure system packages and containers with SBOMs and provenance attestations.
Declarative format and toolchain for building secure system packages and containers with SBOMs and provenance attestations.
|
6
|
Go 266 ⭐960 days old |
golang security go linux containers declarative packages |
| 01/16 |
TruffleHog v3.92.5
* [TruffleHog v3.92.5](https://github.com/trufflesecurity/trufflehog) – Powerful tool for discovering, classifying, validating, and analyzing leaked credentials.
Powerful tool for discovering, classifying, validating, and analyzing leaked credentials.
|
7
|
Go 24205 ⭐3310 days old |
golang security go secret trufflehog credentials devsecops |
| 01/16 |
Yaklang 1.4.5-beta6
* [Yaklang 1.4.5-beta6](https://github.com/yaklang/yaklang) – Cybersecurity-focused domain-specific programming language with a dedicated virtual machine and IDE support.
Cybersecurity-focused domain-specific programming language with a dedicated virtual machine and IDE support.
|
3
|
Go 531 ⭐1005 days old |
golang security go security-tools cybersecurity dsl |
| 01/16 |
Nuxt Security v2.5.1
* [Nuxt Security v2.5.1](https://github.com/Baroshem/nuxt-security) – Module for automatically applying OWASP security headers and middleware in Nuxt 3 applications.
Module for automatically applying OWASP security headers and middleware in Nuxt 3 applications.
|
6
|
TypeScript 957 ⭐1197 days old |
security typescript vue module owasp nuxt |
| 01/16 |
Secure-Repo v1.9.1
* [Secure-Repo v1.9.1](https://github.com/step-security/secure-repo) – Automatically apply security best practices to GitHub Actions workflows, Dockerfiles, and dependency configurations.
Automatically apply security best practices to GitHub Actions workflows, Dockerfiles, and dependency configurations.
|
6
|
Go 303 ⭐1559 days old |
github security go github-actions workflow actions |
| 01/16 |
chezmoi v2.69.3
* [chezmoi v2.69.3](https://github.com/twpayne/chezmoi) – Manage dotfiles across multiple diverse machines securely.
Manage dotfiles across multiple diverse machines securely.
|
7
|
Go 17587 ⭐2628 days old |
golang macos security go linux configuration dotfiles |
| 01/16 |
chezmoi v2.69.2
* [chezmoi v2.69.2](https://github.com/twpayne/chezmoi) – Manage dotfiles across multiple diverse machines securely.
Manage dotfiles across multiple diverse machines securely.
|
7
|
Go 17587 ⭐2628 days old |
golang macos security go linux configuration dotfiles |
| 01/15 |
Grype v0.105.0
* [Grype v0.105.0](https://github.com/anchore/grype) – Vulnerability scanner for container images and filesystems.
Vulnerability scanner for container images and filesystems.
|
8
|
Go 11437 ⭐2072 days old |
golang docker security go containers vulnerability |
| 01/15 |
Cosmos v0.20.0
* [Cosmos v0.20.0](https://github.com/azukaar/Cosmos-Server) – Secure self-hosted home server solution for managing applications with built-in security and ease of use.
Secure self-hosted home server solution for managing applications with built-in security and ease of use.
|
8
|
JavaScript 5601 ⭐1080 days old |
javascript authentication security cloud reverse-proxy cosmos |
| 01/15 |
StackRox Kubernetes Security Platform 4.8.8-rc.2
* [StackRox Kubernetes Security Platform 4.8.8-rc.2](https://github.com/stackrox/stackrox) – Kubernetes security platform performing container environment risk analysis, providing visibility, runtime alerts, and hardening recommendations.
Kubernetes security platform performing container environment risk analysis, providing visibility, runtime alerts, and hardening recommendations.
|
4
|
Go 1246 ⭐1515 days old |
golang hacktoberfest security kubernetes go containers k8s |
| 01/15 |
Claude Code Safety Net v0.6.0
* [Claude Code Safety Net v0.6.0](https://github.com/kenryu42/claude-code-safety-net) – Plugin that intercepts and blocks destructive git and filesystem commands before they execute.
Plugin that intercepts and blocks destructive git and filesystem commands before they execute.
|
7
|
TypeScript 929 ⭐32 days old |
javascript security typescript claude claude-code claude-code-plugin destructive-commands |
| 01/15 |
Tracecat 0.53.21
* [Tracecat 0.53.21](https://github.com/TracecatHQ/tracecat) – Modern automation platform for security and IT engineers with YAML templates, no-code workflows, lookup tables, and case management.
Modern automation platform for security and IT engineers with YAML templates, no-code workflows, lookup tables, and case management.
|
6
|
Python 3443 ⭐695 days old |
openapi python security monitoring automation fastapi |
| 01/15 |
OpenCTI 6.9.8
* [OpenCTI 6.9.8](https://github.com/OpenCTI-Platform/opencti) – Platform for managing, structuring, visualizing, and sharing cyber threat intelligence using a STIX2-based knowledge schema.
Platform for managing, structuring, visualizing, and sharing cyber threat intelligence using a STIX2-based knowledge schema.
|
7
|
TypeScript 8133 ⭐2597 days old |
javascript security typescript threat-intelligence cyber cti intelligence |
| 01/15 |
JS Recon Buddy v1.19.0
* [JS Recon Buddy v1.19.0](https://github.com/TheArqsz/JSRecon-Buddy) – Browser extension that overlays security-related information found on webpages without disrupting workflow.
Browser extension that overlays security-related information found on webpages without disrupting workflow.
|
7
|
JavaScript 166 ⭐146 days old |
javascript security bugbounty recon |
| 01/15 |
Infisical v0.155.5
* [Infisical v0.155.5](https://github.com/Infisical/infisical) – Secret management platform for syncing secrets and configurations across teams and infrastructure while preventing leaks.
Secret management platform for syncing secrets and configurations across teams and infrastructure while preventing leaks.
|
7
|
TypeScript 24612 ⭐1271 days old |
javascript security typescript cli end-to-end-encryption environment-variables secret-management secrets |
| 01/14 |
MCPProxy v0.14.0
* [MCPProxy v0.14.0](https://github.com/smart-mcp-proxy/mcpproxy-go) – Desktop proxy enabling scalable tool discovery, major token savings, and quarantine of malicious upstream servers for AI agents.
Desktop proxy enabling scalable tool discovery, major token savings, and quarantine of malicious upstream servers for AI agents.
|
6
|
Go 112 ⭐215 days old |
security ai go mcp mcp-server ai-agents |
| 01/14 |
OWASP secureCodeBox v5.5.0
* [OWASP secureCodeBox v5.5.0](https://github.com/secureCodeBox/secureCodeBox) – Kubernetes-based modular toolchain for continuous security scanning of software projects.
Kubernetes-based modular toolchain for continuous security scanning of software projects.
|
8
|
JavaScript 938 ⭐3275 days old |
javascript security go security-tools security-automation security-testing securecodebox |
| 01/14 |
Wazuh Dashboard Plugins v4.14.2
* [Wazuh Dashboard Plugins v4.14.2](https://github.com/wazuh/wazuh-dashboard-plugins) – Collection of plugins that extend the Wazuh dashboard with UI panels for security events, integrity, vulnerability, and compliance monitoring.
Collection of plugins that extend the Wazuh dashboard with UI panels for security events, integrity, vulnerability, and compliance monitoring.
|
6
|
TypeScript 494 ⭐3493 days old |
security typescript compliance wazuh ossec loganalyzer |
| 01/14 |
Infisical v0.155.4
* [Infisical v0.155.4](https://github.com/Infisical/infisical) – Secret management platform for syncing secrets and configurations across teams and infrastructure while preventing leaks.
Secret management platform for syncing secrets and configurations across teams and infrastructure while preventing leaks.
|
7
|
TypeScript 24612 ⭐1271 days old |
javascript security typescript cli end-to-end-encryption environment-variables secret-management secrets |
| 01/13 |
Witness v0.10.2
* [Witness v0.10.2](https://github.com/in-toto/witness) – Dynamic CLI tool for creating and verifying software supply chain attestations using the in-toto specification.
Dynamic CLI tool for creating and verifying software supply chain attestations using the in-toto specification.
|
6
|
Go 511 ⭐1509 days old |
security go security-tools supply-chain verification attestation |