Todas las etiquetas
Etiqueta del catálogo

#security-scanner

Todos los repositorios del registro público que llevan esta etiqueta, procedente de sus topics de GitHub o de las palabras clave que publican sus registros de paquetes. La salud se mide con la misma metodología versionada que el resto del registro.

30 registros
Con la etiqueta «security-scanner»Ordenado por índice de salud
Go
97Excepcionalíndice de salud
projectdiscovery/nuclei
Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling collaboration to tackle trending vulnerabilities on the internet. It helps you find vulnerabilities in your applications, APIs, networks, DNS, and cloud configurations.
Go★ 30.3K5 ago 2026
MIT5 ago 2026 · métricas 2.10.0
PyPI
94Excepcionalíndice de salud
PyCQA/bandit
Bandit is a tool designed to find common security issues in Python code.
Python★ 8243↓ 29.1M/mes28 ago 2026
Apache-2.028 ago 2026 · métricas 2.10.0
PyPI · npm
94Excepcionalíndice de salud
msaad00/agent-bom
Open security scanner and self-hosted control plane for AI, MCP, and cloud. One evidence model — run scans in your environment, centralize findings, govern in your VPC.
Python · TypeScript★ 28↓ 5301/mes16 jul 2026
Apache-2.016 jul 2026 · métricas 2.10.0
PyPI · npm
94Excepcionalíndice de salud
sattyamjjain/agent-audit-kit
Static scanner for MCP-connected AI agent pipelines — 271 rules across 12 categories, 12 compliance frameworks, OWASP Agentic 10/10 + MCP 10/10, GitHub Action, SARIF, public CVE-to-rule ledger.
Python★ 13↓ 2808/mes2 ago 2026
MIT2 ago 2026 · métricas 2.10.0
PyPI
92Excelenteíndice de salud
Ostorlab/oxo
OXO is a security scanning orchestrator for the modern age.
Python★ 581↓ 21.2K/mes5 sept 2026
Apache-2.05 sept 2026 · métricas 2.10.0
PyPI
91Excelenteíndice de salud
ostorlab/ostorlab
OXO is a security scanning orchestrator for the modern age.
Python★ 57617 jul 2026
Apache-2.017 jul 2026 · métricas 2.10.0
Go
91Excelenteíndice de salud
praetorian-inc/julius
Simple LLM service identification - translate IP:Port to Ollama, vLLM, LiteLLM, or 60+ other AI services in seconds
Go★ 1758 ago 2026
Apache-2.08 ago 2026 · métricas 2.10.0
RubyGems
91Excelenteíndice de salud
wpscanteam/wpscan
WPScan WordPress security scanner. Written for security professionals and blog maintainers to test the security of their WordPress websites. Contact us via contact@wpscan.com
Ruby★ 974228 ago 2026
Licencia propia28 ago 2026 · métricas 2.10.0
PyPI · crates.io · npm
86Excelenteíndice de salud
nyudenkov/pysentry
🐍 Scan your Python dependencies for known security vulnerabilities with Rust-powered scanner
Rust★ 247↓ 95K/mes20 ago 2026
MIT20 ago 2026 · métricas 2.10.0
npm · PyPI
84Excelenteíndice de salud
openshield-org/openshield
Open source CSPM for Azure - scan for misconfigurations and quantum-unsafe cryptography, map findings to CIS/NIST/ISO27001/SOC2, and fix them with one command
Python · JavaScript★ 554 ago 2026
MIT4 ago 2026 · métricas 2.10.0
NuGet
83Excelenteíndice de salud
microsoft/ApplicationInspector
A source code analyzer built for surfacing features of interest and other characteristics to answer the question 'What's in the code?' quickly using static analysis with a json based rules engine. Ideal for scanning components before use or detecting feature level changes.
C#★ 439528 ago 2026
MIT28 ago 2026 · métricas 2.10.0
PyPI
78Buenoíndice de salud
cpeoples/ansible-security-scanner
🛡️ Static security scanner (SAST) for Ansible playbooks, roles, and collections. 1,000+ rules across 30+ categories detecting malicious code, RCE, hardcoded credentials, and supply-chain risk. Outputs SARIF, CycloneDX SBOM, and GitLab SAST. SLSA Build Level 3, Sigstore-signed.
Python★ 9↓ 1928/mes17 jul 2026
Apache-2.017 jul 2026 · métricas 2.10.0
PyPI
75Buenoíndice de salud
PythonWoods-Dev/zenzic
Deterministic Document Integrity Engine for Markdown/MDX graphs.
Python★ 35 sept 2026
Apache-2.05 sept 2026 · métricas 2.10.0
PyPI · npm
75Buenoíndice de salud
gautamvarmadatla/mcpsafetywarden
MCP servers expose tools with no information about what they actually do at runtime. mcpsafetywarden sits between your agent and any MCP server, profiling tool behavior, blocking destructive calls, and running active security audits before you trust them in a workflow.
Python★ 9↓ 2923/mes1 ago 2026
Licencia propia1 ago 2026 · métricas 2.10.0
Go
73Buenoíndice de salud
openclaw/clawscan
Composable security scanning harness for agent skills
Go · Python★ 1223 jul 2026
MIT23 jul 2026 · métricas 2.10.0
Packagist
71Buenoíndice de salud
ShieldCI/laravel
Automated code analysis for Laravel applications with 73 comprehensive analyzers covering security, performance, reliability, code quality, and best practices. Works with Laravel 9+.
PHP★ 2↓ 1097/mes22 ago 2026
MIT22 ago 2026 · métricas 2.10.0
Go
71Buenoíndice de salud
vigolium/vigolium
Vigolium - High-fidelity vulnerability scanner fusing agentic AI with native speed, modularity, and precision
Go★ 82615 jul 2026
Licencia propia15 jul 2026 · métricas 2.10.0
npm · crates.io · Go +1
63Moderadoíndice de salud
ashfordeOU/grasp
GRASP — Code architecture visualizer + 150-tool MCP server. Dependency graphs, security scanning, multimodal knowledge graph, ORM tracking, git change impact, graph schema v3. Works with GitHub, GitLab & local dirs. 35 languages. Zero data collection.
HTML · TypeScript · JavaScript★ 10↓ 1162/mes27 jul 2026
Licencia propia27 jul 2026 · métricas 2.10.0
Go
63Moderadoíndice de salud
famclaw/honeybadger
Security scanner for AI agent skills and MCP servers. Detects secrets, CVEs, supply chain attacks, and prompt injection in SKILL.md files before they're installed. Pre-install gate for Claude Code, OpenClaw, PicoClaw, NanoBot, FamClaw, and CI/CD pipelines. Single Go binary, MIT licensed.
Go★ 317 jul 2026
MIT17 jul 2026 · métricas 2.10.0
PyPI
62Moderadoíndice de salud
sunglasses-dev/sunglasses
Sunglasses for AI agents. Protection layer + neighborhood watch.
Python★ 4↓ 2911/mes18 ago 2026
MIT18 ago 2026 · métricas 2.10.0
Go
59Moderadoíndice de salud
rudrendupaul/tenantguard
CLI security scanner for self-hosted multi-tenant AI-agent platforms. 16 fail-closed OPA/Rego rules catch tenant-isolation defects (sandbox scoping, SSRF, cross-tenant cron/auth, secret leakage). SARIF and JSON output for CI.
Go · Open Policy Agent★ 015 jul 2026
Apache-2.015 jul 2026 · métricas 2.10.0
Go · npm
57Moderadoíndice de salud
cyberspacesec/certificate-skills
AI-native certificate security toolkit — Skills, CLI, MCP server & Go SDK for SSL/TLS analysis, cyberspace mapping and PKI operations
Go★ 020 jul 2026
MIT20 jul 2026 · métricas 2.10.0
PyPI · crates.io · Maven +2
57Moderadoíndice de salud
mattybellx/ansede
Find authorization bugs before attackers do. Free SAST — IDOR detection, 100% CVE recall, 0% false positives. 5 languages. Fully offline.
Python · HTML★ 1217 jul 2026
Licencia propia17 jul 2026 · métricas 2.10.0
npm
54Moderadoíndice de salud
sudoeren/arhus
local-first security analysis for TypeScript & JavaScript
TypeScript★ 6↓ 2972/mes17 jul 2026
MIT17 jul 2026 · métricas 2.10.0
Go · npm
54Moderadoíndice de salud
undont/supplyscan
scan JavaScript lockfiles to detect supply chain vulnerabilities and known exploits
Go★ 022 jul 2026
MIT22 jul 2026 · métricas 2.10.0
npm
51Moderadoíndice de salud
nsasoft/nsauditor-ai
NSAuditor AI — Open-source, AI-powered network security scanner. 27 plugins, CVE matching, MITRE ATT&CK mapping, verified vulnerabilities, continuous monitoring, MCP integration. Zero data exfiltration. MIT licensed.
JavaScript★ 20↓ 3215/mes6 sept 2026
MIT6 sept 2026 · métricas 2.10.0
Go · PyPI
48Débilíndice de salud
Zayan-Mohamed/secscan
SecScan is a fast, configurable secret scanning tool written in Go that detects API keys, tokens, credentials, and high-entropy secrets across source code and full Git history. Built for developers and CI pipelines, with strong defaults and low false positives.
Go · Shell · PowerShell★ 420 jul 2026
MIT20 jul 2026 · métricas 2.10.0
Go
42Débilíndice de salud
safetylab/ShadowSecurityScanner
Free, open-source network vulnerability scanner & penetration testing tool that ranks findings by real-world exploitability (EPSS + CISA KEV). Single desktop app for Windows, macOS, Linux. No cloud, no telemetry. MIT.
Go★ 021 jul 2026
MIT21 jul 2026 · métricas 2.10.0
Go
36Débilíndice de salud
FYFran/ironwall
8-step open-source security audit CLI. Secrets, SAST, dependency CVEs, IaC, supply chain. MIT. AI-assisted.
Java · HTML★ 06 sept 2026
MIT6 sept 2026 · métricas 2.10.0
Packagist
29En riesgoíndice de salud
enlightn/security-checker
A PHP dependency vulnerabilities scanner based on the Security Advisories Database.
PHP★ 339↓ 277.7K/mes13 ago 2026
MIT13 ago 2026 · métricas 2.10.0