#security (30 Repositories)
Ranked open-source repositories tagged with #security, scored by pull request acceptance likelihood and maintainer engagement velocity.
92.7%
27.8h
30 repositories tagged #security
hahwul/jwt-hack
JSON Web Token Hack Toolkit
asamassekou10/ship-safe
CLI security scanner built for the agentic era. Detects CI/CD misconfigs, agent permission risks, MCP tool injection, hardcoded secrets, and DMCA-flagged AI dependencies.
itpropro/nuxt-oidc-auth
OIDC (OpenID connect) focused auth module for Nuxt
firewalla/firewalla
http://firewalla.com
BlessedRebuS/Krawl
Krawl is a customizable, lightweight, cloud-native web deception server and anti-crawler that creates fake web applications with low-hanging vulnerabilities using realistic, randomly generated decoy data and AI-generated HTML templates.
fu351/Doberman-Core
Your AI's guard dog. Doberman sits at runtime, gating every input, output and tool call to stop unsafe or unintended actions before they execute.
OffRange/KeyGo
An open-source password manager - a reliable solution prioritizing transparency and security. Utilizing AES encryption, one of the most trusted algorithms, your sensitive information stays confidential and safeguarded.
google/wasefire
Secure firmware framework focusing on developer experience
NodeSecure/js-x-ray
JavaScript & Node.js open-source SAST scanner. A static analyser for detecting most common malicious patterns 🔬.
QData/TextAttack
TextAttack 🐙 is a Python framework for adversarial attacks, data augmentation, and model training in NLP https://textattack.readthedocs.io/en/master/
chainloop-dev/chainloop
SDLC evidence store and policy engine for your Software Supply Chain attestations, SBOMs, VEX, SARIF, QA reports, and more
phylum-dev/cli
Command line interface for the Phylum API
melandlabs/openloomi
OpenLoomi is an open-source AI coworker. It connects your work tools, understands what you’re working on, and tells you what needs your attention, why it matters, and what to do next. It’s your open-source Attention Agent.
bujiio/buji-pac4j
Bridge from the pac4j security library to Shiro
gebruder/wirken
The enterprise gateway for autonomous agents. Identity management, per-channel isolation, credential vault, per-session tamper-evident audit log.
kubescape/kubescape
Kubescape is an open-source Kubernetes security platform for your IDE, CI/CD pipelines, and clusters. It includes risk analysis, security, compliance, and misconfiguration scanning, saving Kubernetes users and administrators precious time, effort, and resources.
hahwul/dalfox
🌙🦊 Dalfox is a powerful open-source XSS scanner and utility focused on automation.
openfga/cli
A cross-platform CLI to interact with an OpenFGA server
leiweibau/Pi.Alert
Scan the devices connected to your WIFI / LAN and alert you the connection of unknown devices. It also warns if a "always connected" device disconnects. In addition, it is possible to check web services for availability. For this purpose HTTP status codes and the response time of the service are evaluated.
suzuki-shunsuke/ghtkn
A CLI to create short-lived (8 hours) GitHub App User Access Token for secure local development
smart-mcp-proxy/mcpproxy-go
Supercharge AI Agents, Safely
l3montree-dev/devguard
DevGuard Backend - Secure your Software Supply Chain - Attestation-based compliance as Code, manage your CVEs seamlessly, Integrate your Vulnerability Scanners, Security Framework Documentation made easy - OWASP Incubating Project
rcbj/oauth2-oidc-debugger
An Identity Protocol Debugger
Security-Onion-Solutions/securityonion
Security Onion is a free and open platform for threat hunting, enterprise security monitoring, and log management. It includes our own interfaces for alerting, dashboards, hunting, PCAP, detections, and case management. It also includes other tools such as osquery, CyberChef, Elasticsearch, Logstash, Kibana, Suricata, and Zeek.
nextcloud/end_to_end_encryption
:closed_lock_with_key: Server API to support End-to-End Encryption
DependencyTrack/dependency-track
Dependency-Track is an intelligent Component Analysis platform that allows organizations to identify and reduce risk in the software supply chain.
Scille/parsec-cloud
Open source Dropbox-like file sharing with full client encryption !
Normation/rudder
Rudder is a configuration and security automation platform. Manage your Cloud, hybrid or on-premises infrastructure in a simple, scalable and dynamic way.
mondoohq/mql
open source, cloud-native, graph-based query language
google/osv.dev
Open source vulnerability DB and triage service.