All tags
Catalogue tag

#devsecops

Every repository in the public record carrying this tag — from its GitHub topics or the keywords its package registries publish. Health is measured under the same versioned methodology as the rest of the record.

86 records
Tagged “devsecops”Ranked by health index
Go · npm
62Moderatehealth index
scagogogo/cwe-skills
AI-native CWE (Common Weakness Enumeration) integration layer — Skills, Go SDK, CLI & MCP. Ship CVE/CWE tooling to SAST/DAST, vuln-management & AI agents.
Go★ 3Jul 19, 2026
MITJul 19, 2026 · metrics 2.10.0
PyPI
62Moderatehealth index
thothforge/thothctl
A command line interface tool designed for efficient management and automation within your internal developer platform.
Python★ 4↓ 5,453/moJul 19, 2026
Custom licenseJul 19, 2026 · metrics 2.10.0
Go
59Moderatehealth index
rudrendupaul/tenantguard
CLI security scanner for self-hosted multi-tenant AI-agent platforms. 16 fail-closed OPA/Rego rules catch tenant-isolation defects (sandbox scoping, SSRF, cross-tenant cron/auth, secret leakage). SARIF and JSON output for CI.
Go · Open Policy Agent★ 0Jul 15, 2026
Apache-2.0Jul 15, 2026 · metrics 2.10.0
npm
57Moderatehealth index
Vinay-O/slopscore
Scan your codebase for AI slop. Get a Slop Score. Ship clean. A zero-dependency CLI (85 detectors: security, performance, code-quality, design tells) + a 181-pattern Anti-Slop Protocol for AI coding agents.
JavaScript★ 2↓ 221/moSep 6, 2026
MITSep 6, 2026 · metrics 2.10.0
PyPI · crates.io · Maven +2
57Moderatehealth index
mattybellx/ansede
Find authorization bugs before attackers do. Free SAST — IDOR detection, 100% CVE recall, 0% false positives. 5 languages. Fully offline.
Python · HTML★ 12Jul 17, 2026
Custom licenseJul 17, 2026 · metrics 2.10.0
PyPI
56Moderatehealth index
Mehrdoost/devsecops-radar
🛡️ Unify Trivy, Semgrep, Poutine & Zizmor scans into one AI-enhanced, offline-ready dashboard. Track CI/CD security trends, get LLM-powered analysis, and enforce policies — the open-source DevSecOps command center.
Python · JavaScript · HTML★ 1Jul 17, 2026
Custom licenseJul 17, 2026 · metrics 2.10.0
Go
56Moderatehealth index
sairintechnologycom/pkgsafe
Supply-chain firewall for AI coding agents and developers — checks npm/PyPI packages against OSV advisories, typosquat & lifecycle-script heuristics, and your policy before install. Local-first, MCP-native.
Go★ 0Jul 15, 2026
MITJul 15, 2026 · metrics 2.10.0
PyPI
54Moderatehealth index
Akunimal/AI-Router-Blocker-AiO
Open-source DevSecOps gateway for AI traffic. Intercept, audit, and route LLM requests to prevent data leaks and enforce zero-trust security policies.
Python★ 1Jul 26, 2026
Custom licenseJul 26, 2026 · metrics 2.10.0
npm
54Moderatehealth index
sudoeren/arhus
local-first security analysis for TypeScript & JavaScript
TypeScript★ 6↓ 2,972/moJul 17, 2026
MITJul 17, 2026 · metrics 2.10.0
PyPI · npm
54Moderatehealth index
wang-jie-git/moat
AI Coding Gatekeeper — Zero-config, real-time guardrails for AI-generated code. 零配置AI编码守门员,实时拦截架构/安全/回归问题。
Python · HTML★ 1↓ 2,206/moJul 19, 2026
Apache-2.0Jul 19, 2026 · metrics 2.10.0
Go
53Moderatehealth index
opscart/opscart-k8s-watcher
Kubernetes operational triage dashboard. Surfaces CrashLoops, security gaps, orphaned resources, and cost waste — tells you what to fix first. Read-only, no agents, no cloud credentials.
Go · HTML★ 11Aug 20, 2026
MITAug 20, 2026 · metrics 2.10.0
npm
51Moderatehealth index
nsasoft/nsauditor-ai
NSAuditor AI — Open-source, AI-powered network security scanner. 27 plugins, CVE matching, MITRE ATT&CK mapping, verified vulnerabilities, continuous monitoring, MCP integration. Zero data exfiltration. MIT licensed.
JavaScript★ 20↓ 3,215/moSep 6, 2026
MITSep 6, 2026 · metrics 2.10.0
PyPI
51Moderatehealth index
vishnu-77/secchecker
No repository description published.
Python★ 1Jul 22, 2026
MITJul 22, 2026 · metrics 2.10.0
Go · PyPI
48Weakhealth index
Zayan-Mohamed/secscan
SecScan is a fast, configurable secret scanning tool written in Go that detects API keys, tokens, credentials, and high-entropy secrets across source code and full Git history. Built for developers and CI pipelines, with strong defaults and low false positives.
Go · Shell · PowerShell★ 4Jul 20, 2026
MITJul 20, 2026 · metrics 2.10.0
Go
48Weakhealth index
rubysolo/envisible
Encrypt secrets inline in your config and .env files with ENC[…] markers — local keypair or GCP/AWS/Azure KMS. Safe to commit. Ships a setup skill for AI coding agents.
Go★ 1Jul 17, 2026
MITJul 17, 2026 · metrics 2.10.0
RubyGems
47Weakhealth index
OWASP/www-project-eks-goat
OWASP EKS Goat is a deliberately vulnerable EKS cluster environment to explore AWS cloud-native security through hands-on attack and defense labs with walkthrough.
Shell · Python★ 46Aug 4, 2026
GPL-3.0Aug 4, 2026 · metrics 2.10.0
Go
47Weakhealth index
wille/gh-actions-cli
Harden and manage your GitHub Actions: SHA-pin every action, enforce allowlist policies, update interactively, and analyze run health
Go★ 3Jul 17, 2026
MITJul 17, 2026 · metrics 2.10.0
PyPI
44Weakhealth index
TariqDreamsTech/ranbval-sdk
Secrets that refuse to be stolen. Sealed API keys that decrypt only on your allowlisted repo — and raise a security error if anything tries to print, iterate, or read them. Every access attempt alerts the owner.
Python★ 1↓ 2,156/moJul 20, 2026
MITJul 20, 2026 · metrics 2.10.0
Go
42Weakhealth index
malandas/andas
Sift real security risk from the noise — a cross-platform CLI that live-validates leaked secrets and reachability-ranks npm/Yarn vulnerabilities, so you fix what's actually exploitable.
Go★ 0Aug 6, 2026
MITAug 6, 2026 · metrics 2.10.0
Go
42Weakhealth index
zuhayrb/dexpose
Pure-Go CLI that scans APK files for leaked secrets. Zero dependencies, gitleaks-compatible rules, CI-friendly exit codes.
Go★ 8Sep 5, 2026
MITSep 5, 2026 · metrics 2.10.0
Go
36Weakhealth index
FYFran/ironwall
8-step open-source security audit CLI. Secrets, SAST, dependency CVEs, IaC, supply chain. MIT. AI-assisted.
Java · HTML★ 0Sep 6, 2026
MITSep 6, 2026 · metrics 2.10.0
Go
33At Riskhealth index
tamish560/mcprobe
Security scanner and introspection tool for MCP servers. Connect, inspect, detect injection patterns, find tool shadowing, baseline for drift. Single binary, zero dependencies, Go stdlib only.
Go★ 2Jul 20, 2026
MITJul 20, 2026 · metrics 2.10.0
npm
28At Riskhealth index
react-atomic/modality
No repository description published.
TypeScript★ 0↓ 10K/moJul 17, 2026
No licenseJul 17, 2026 · metrics 2.10.0
21At Riskhealth index
PortSwigger/dastardly-github-action
Runs a scan using Dastardly by Burp Suite against a target site and creates a JUnit XML report for the scan on completion.
Dockerfile★ 296Aug 4, 2026
No licenseAug 4, 2026 · metrics 2.10.0
PyPI
19Criticalhealth index
FuzzingLabs/secpipe
MCP server for AI-driven security pipelines
Python★ 803Aug 4, 2026
Custom licenseAug 4, 2026 · metrics 2.10.0
PyPI
17Criticalhealth index
dmdhrumilmistry/offat
Tests your API automatically for common API vulnerabilities. Project is still Work In Progress. PRs are appreciated.
Python★ 34Aug 7, 2026
MITAug 7, 2026 · metrics 2.10.0