All tags
Catalogue tag

#ai-security

Every repository in the public record carrying this tag — from its GitHub topics or the keywords its package registries publish. Health is measured under the same versioned methodology as the rest of the record.

42 records
Tagged “ai-security”Ranked by health index
Go
89Excellenthealth index
stacklok/toolhive
ToolHive is an enterprise-grade platform for running and managing Model Context Protocol (MCP) servers.
Go★ 1,944Jul 16, 2026
Apache-2.0Jul 16, 2026 · metrics 1.13.0
Go
88Excellenthealth index
stackloklabs/toolhive
ToolHive is an enterprise-grade platform for running and managing Model Context Protocol (MCP) servers.
Go★ 1,951Jul 18, 2026
Apache-2.0Jul 18, 2026 · metrics 1.13.0
PyPI · npm
80Goodhealth index
msaad00/agent-bom
Open security scanner and self-hosted control plane for AI, MCP, and cloud. One evidence model — run scans in your environment, centralize findings, govern in your VPC.
Python · TypeScript★ 28↓ 5,301/moJul 16, 2026
Apache-2.0Jul 16, 2026 · metrics 1.13.0
Go
80Goodhealth index
stacklok/toolhive-registry-server
Discover, govern and control access to MCP servers and agent skills across your organization
Go★ 20Jul 18, 2026
Apache-2.0Jul 18, 2026 · metrics 1.13.0
Go
78Goodhealth index
praetorian-inc/augustus
LLM security testing framework for detecting prompt injection, jailbreaks, and adversarial attacks — 190+ probes, 28 providers, single Go binary
Go★ 257Jul 16, 2026
Apache-2.0Jul 16, 2026 · metrics 1.13.0
Go
77Goodhealth index
mindburn-labs/helm-ai-kernel
Fail-closed execution firewall for AI agents: quarantine MCP tools, proxy OpenAI-compatible requests, emit signed receipts, and verify EvidencePacks offline.
Go · Java★ 53Jul 17, 2026
Apache-2.0Jul 17, 2026 · metrics 1.13.0
npm
75Goodhealth index
CyberStrikeus/CyberStrike
Open-source AI-augmented offensive security harness. 13+ autonomous agents, 150+ LLM providers, 5,300+ models, 7,600+ Ed25519-signed attack skills, 56+ built-in tools, 176+ MCP tools. MITRE ATT&CK, OWASP WSTG, CIS Benchmarks. Post-exploit: Linux/Windows/macOS/AWS/Azure/K8s/CI-CD. Web UI + Cloudflare Tunnel. Your AI red team.
TypeScript · Python★ 1,266↓ 2,624/moJul 23, 2026
AGPL-3.0Jul 23, 2026 · metrics 1.13.0
crates.io
75Goodhealth index
always-further/nono
Sandbox any AI agent in seconds - zero setup, zero latency.
Rust★ 3,036Jul 17, 2026
Apache-2.0Jul 17, 2026 · metrics 1.13.0
crates.io
75Goodhealth index
lukehinds/nono
Sandbox any AI agent in seconds - zero setup, zero latency.
Rust★ 3,047Jul 19, 2026
Apache-2.0Jul 19, 2026 · metrics 1.13.0
Go
75Goodhealth index
mindburn-labs/helm-oss
Fail-closed execution firewall for AI agents: quarantine MCP tools, proxy OpenAI-compatible requests, emit signed receipts, and verify EvidencePacks offline.
Go · Java★ 53Jul 18, 2026
Apache-2.0Jul 18, 2026 · metrics 1.13.0
PyPI
75Goodhealth index
usestrix/strix
Open-source AI penetration testing tool to find and fix your app’s vulnerabilities.
Python · TypeScript★ 43.2KJul 21, 2026
Apache-2.0Jul 21, 2026 · metrics 1.13.0
PyPI · npm
74Goodhealth index
NuGuardAI/nuguard
opensource repo for validating agentic AI applications: redteam, behavior, supply-chain, static analysis
Python★ 10↓ 4,954/moJul 18, 2026
Custom licenseJul 18, 2026 · metrics 1.13.0
Go
74Goodhealth index
itcmsgr/nftban
NFTBan is an open-source Linux Intrusion Prevention System (IPS) and firewall manager built on nftables, designed to integrate cleanly with modern Linux security stacks.
Shell · Go★ 7Jul 15, 2026
MPL-2.0Jul 15, 2026 · metrics 1.13.0
crates.io
74Goodhealth index
nolabs-ai/nono
Sandbox any AI agent in seconds - zero setup, zero latency.
Rust★ 3,016Jul 16, 2026
Apache-2.0Jul 16, 2026 · metrics 1.13.0
PyPI
74Goodhealth index
owasp/docksec
AI-powered Docker security scanner that explains vulnerabilities in plain English. An OWASP Lab Project.
Python★ 460Jul 17, 2026
MITJul 17, 2026 · metrics 1.13.0
npm
71Goodhealth index
beenuar/aisoc
Open-source AI-powered Security Operations Center — alert fusion, purple-team drills, agent-assisted triage, MITRE ATT&CK investigation. MIT-licensed, self-hostable.
Python · TypeScript★ 1,501Jul 15, 2026
MITJul 15, 2026 · metrics 1.13.0
Go · npm
71Goodhealth index
xalgord/xalgorix
Autonomous AI pentesting agents — real-time reconnaissance, vulnerability detection, and exploitation orchestration. Go + TypeScript.
Go · TypeScript★ 768Jul 17, 2026
MITJul 17, 2026 · metrics 1.13.0
PyPI · npm
70Goodhealth index
hashgraph-online/hol-guard
Open-source antivirus for AI agents: block risky tools, secret access, prompt injection, malicious packages, MCP servers, plugins, and skills at runtime.
Python · TypeScript · JavaScript★ 396Jul 15, 2026
Custom licenseJul 15, 2026 · metrics 1.13.0
npm · PyPI
68Moderatehealth index
Agent-Threat-Rule/agent-threat-rules
Open detection standard -- like Sigma, but for AI agents. 425 rules, shipped in Microsoft AGT, Cisco AI Defense, MISP, OWASP A-S-R-H. 97.1% recall on NVIDIA garak. NIST OSCAL Path 1.
TypeScript★ 314↓ 9,370/moJul 16, 2026
MITJul 16, 2026 · metrics 1.13.0
PyPI
67Moderatehealth index
squid-protocol/gitgalaxy
Deep repository intelligence for humans and ai. Air gapped, on premise, zero dependency SAST for 50 languages regardless of compilation status. Sarif and sbom outputs.
Python★ 45↓ 0/moJul 14, 2026
Custom licenseJul 14, 2026 · metrics 1.13.0
Go
66Moderatehealth index
airomhq/airom
Open-source AI Bill of Materials (AIBOM) scanner: inventories AI models, datasets, prompts, embeddings, vector DBs & RAG pipelines across code, containers & Kubernetes — with file:line evidence, load-time risk detection (poisoned pickle / Keras Lambda / unsafe torch.load) and NIST AI RMF / OWASP compliance mapping. CycloneDX · SARIF · JSON.
Go · MDX★ 8Jul 21, 2026
Apache-2.0Jul 21, 2026 · metrics 1.13.0
npm
66Moderatehealth index
node9-ai/node9-proxy
The Execution Security Layer for the Agentic Era. Providing deterministic "Sudo" governance and audit logs for autonomous AI agents.
TypeScript★ 209↓ 9,089/moJul 22, 2026
Custom licenseJul 22, 2026 · metrics 1.13.0
Go · Maven
66Moderatehealth index
seqra/seqra
The open source taint analysis engine for the AI era. A formal dataflow analysis tool you can customize and self-host, built so AI agents drive your application security analysis without burning tokens on every scan. AI-ready open source alternative to Semgrep Pro and CodeQL.
Kotlin · Go★ 110Jul 17, 2026
Apache-2.0Jul 17, 2026 · metrics 1.13.0
Go · npm · PyPI
65Moderatehealth index
ShieldNet-360/prompt-gate
Prompt Gate — privacy-first, on-device DLP for the AI era. Blocks unauthorized AI tools at the DNS layer and inspects content sent to approved tools for secrets/PII, entirely on-device.
Go · TypeScript★ 45Jul 15, 2026
MITJul 15, 2026 · metrics 1.13.0
Go
65Moderatehealth index
calbebop/batesian
Active security scanner for A2A and MCP servers
Go★ 1Jul 22, 2026
Apache-2.0Jul 22, 2026 · metrics 1.13.0
PyPI
65Moderatehealth index
msaleme/red-team-blue-team-agent-fabric
540 security tests for AI agent systems — MCP, A2A, x402/L402, decision governance, benchmark integrity, skill supply chain. AIUC-1 pre-cert, NIST AI 800-2 aligned, MCP tool-poisoning reproduction. v4.9.1
Python★ 20↓ 667/moJul 20, 2026
Apache-2.0Jul 20, 2026 · metrics 1.13.0
npm
65Moderatehealth index
panguard-ai/panguard-ai
Open-source security platform for AI agents -- audits skills before install, monitors 24/7, shares threat intelligence across all users. | AI Agent 開源安全平台 -- 安裝前審計 skill、24/7 即時監控、社群共享威脅情報。
TypeScript · HTML · JavaScript★ 52↓ 2,959/moJul 15, 2026
MITJul 15, 2026 · metrics 1.13.0
Go
63Moderatehealth index
openclaw/clawscan
Composable security scanning harness for agent skills
Go · Python★ 12Jul 23, 2026
MITJul 23, 2026 · metrics 1.13.0
PyPI · npm
62Moderatehealth index
PrismorSec/prismor
Runtime Firewall for AI agents which catches the rogue tool call before it runs. Dangerous commands, secret leaks, prompt injection. For Claude Code, Codex and framework SDKs
Python · HTML★ 240↓ 6,171/moJul 19, 2026
Apache-2.0Jul 19, 2026 · metrics 1.13.0
Go · PyPI
62Moderatehealth index
adithyan-ak/agenthound
The offensive security framework for AI agent infrastructure - recon, credential looting, model exfiltration, poisoning, and attack-path analysis across MCP, A2A, gateways, and AI services. BloodHound for the agentic stack.
Go★ 1↓ 0/moJul 14, 2026
Apache-2.0Jul 14, 2026 · metrics 1.13.0