All tags
Catalogue tag

#security-scanner

Every repository in the public record carrying this tag — from its GitHub topics or the keywords its package registries publish. Health is measured under the same versioned methodology as the rest of the record.

21 records
Tagged “security-scanner”Ranked by health index
Go
84Goodhealth index
ProjectDiscovery/nuclei
Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling collaboration to tackle trending vulnerabilities on the internet. It helps you find vulnerabilities in your applications, APIs, networks, DNS, and cloud configurations.
Go★ 29.8KJul 19, 2026
MITJul 19, 2026 · metrics 1.13.0
PyPI
82Goodhealth index
PyCQA/bandit
Bandit is a tool designed to find common security issues in Python code.
Python★ 8,169Jul 17, 2026
Apache-2.0Jul 17, 2026 · metrics 1.13.0
PyPI · npm
80Goodhealth index
msaad00/agent-bom
Open security scanner and self-hosted control plane for AI, MCP, and cloud. One evidence model — run scans in your environment, centralize findings, govern in your VPC.
Python · TypeScript★ 28↓ 5,301/moJul 16, 2026
Apache-2.0Jul 16, 2026 · metrics 1.13.0
PyPI
77Goodhealth index
ostorlab/oxo
OXO is a security scanning orchestrator for the modern age.
Python★ 576↓ 0/moJul 14, 2026
Apache-2.0Jul 14, 2026 · metrics 1.13.0
PyPI
76Goodhealth index
ostorlab/ostorlab
OXO is a security scanning orchestrator for the modern age.
Python★ 576Jul 17, 2026
Apache-2.0Jul 17, 2026 · metrics 1.13.0
RubyGems
74Goodhealth index
wpscanteam/wpscan
WPScan WordPress security scanner. Written for security professionals and blog maintainers to test the security of their WordPress websites. Contact us via contact@wpscan.com
Ruby★ 9,684Jul 17, 2026
Custom licenseJul 17, 2026 · metrics 1.13.0
PyPI
68Moderatehealth index
cpeoples/ansible-security-scanner
🛡️ Static security scanner (SAST) for Ansible playbooks, roles, and collections. 1,000+ rules across 30+ categories detecting malicious code, RCE, hardcoded credentials, and supply-chain risk. Outputs SARIF, CycloneDX SBOM, and GitLab SAST. SLSA Build Level 3, Sigstore-signed.
Python★ 9↓ 1,928/moJul 17, 2026
Apache-2.0Jul 17, 2026 · metrics 1.13.0
NuGet
66Moderatehealth index
microsoft/ApplicationInspector
A source code analyzer built for surfacing features of interest and other characteristics to answer the question 'What's in the code?' quickly using static analysis with a json based rules engine. Ideal for scanning components before use or detecting feature level changes.
C#★ 4,392Jul 18, 2026
MITJul 18, 2026 · metrics 1.13.0
Packagist
64Moderatehealth index
ShieldCI/laravel
Automated code analysis for Laravel applications with 73 comprehensive analyzers covering security, performance, reliability, code quality, and best practices. Works with Laravel 9+.
PHP★ 2↓ 2,519/moJul 14, 2026
MITJul 14, 2026 · metrics 1.13.0
Go
63Moderatehealth index
openclaw/clawscan
Composable security scanning harness for agent skills
Go · Python★ 12Jul 23, 2026
MITJul 23, 2026 · metrics 1.13.0
Go
62Moderatehealth index
vigolium/vigolium
Vigolium - High-fidelity vulnerability scanner fusing agentic AI with native speed, modularity, and precision
Go★ 826Jul 15, 2026
Custom licenseJul 15, 2026 · metrics 1.13.0
Go
58Moderatehealth index
famclaw/honeybadger
Security scanner for AI agent skills and MCP servers. Detects secrets, CVEs, supply chain attacks, and prompt injection in SKILL.md files before they're installed. Pre-install gate for Claude Code, OpenClaw, PicoClaw, NanoBot, FamClaw, and CI/CD pipelines. Single Go binary, MIT licensed.
Go★ 3Jul 17, 2026
MITJul 17, 2026 · metrics 1.13.0
PyPI · crates.io · Maven +2
56Moderatehealth index
mattybellx/ansede
Find authorization bugs before attackers do. Free SAST — IDOR detection, 100% CVE recall, 0% false positives. 5 languages. Fully offline.
Python · HTML★ 12Jul 17, 2026
Custom licenseJul 17, 2026 · metrics 1.13.0
Go
56Moderatehealth index
rudrendupaul/tenantguard
CLI security scanner for self-hosted multi-tenant AI-agent platforms. 16 fail-closed OPA/Rego rules catch tenant-isolation defects (sandbox scoping, SSRF, cross-tenant cron/auth, secret leakage). SARIF and JSON output for CI.
Go · Open Policy Agent★ 0Jul 15, 2026
Apache-2.0Jul 15, 2026 · metrics 1.13.0
Go · npm
53Moderatehealth index
cyberspacesec/certificate-skills
AI-native certificate security toolkit — Skills, CLI, MCP server & Go SDK for SSL/TLS analysis, cyberspace mapping and PKI operations
Go★ 0Jul 20, 2026
MITJul 20, 2026 · metrics 1.13.0
npm
53Moderatehealth index
sudoeren/arhus
local-first security analysis for TypeScript & JavaScript
TypeScript★ 6↓ 2,972/moJul 17, 2026
MITJul 17, 2026 · metrics 1.13.0
Go · npm
53Moderatehealth index
undont/supplyscan
scan JavaScript lockfiles to detect supply chain vulnerabilities and known exploits
Go★ 0Jul 22, 2026
MITJul 22, 2026 · metrics 1.13.0
Go · PyPI
49At riskhealth index
Zayan-Mohamed/secscan
SecScan is a fast, configurable secret scanning tool written in Go that detects API keys, tokens, credentials, and high-entropy secrets across source code and full Git history. Built for developers and CI pipelines, with strong defaults and low false positives.
Go · Shell · PowerShell★ 4Jul 20, 2026
MITJul 20, 2026 · metrics 1.13.0
Go
45At riskhealth index
safetylab/ShadowSecurityScanner
Free, open-source network vulnerability scanner & penetration testing tool that ranks findings by real-world exploitability (EPSS + CISA KEV). Single desktop app for Windows, macOS, Linux. No cloud, no telemetry. MIT.
Go★ 0Jul 21, 2026
MITJul 21, 2026 · metrics 1.13.0
npm
43At riskhealth index
nsasoft/nsauditor-ai
NSAuditor AI — Open-source, AI-powered network security scanner. 27 plugins, CVE matching, MITRE ATT&CK mapping, verified vulnerabilities, continuous monitoring, MCP integration. Zero data exfiltration. MIT licensed.
JavaScript★ 19↓ 5,644/moJul 15, 2026
MITJul 15, 2026 · metrics 1.13.0
Go
39At riskhealth index
fyfran/ironwall
8-step open-source security audit CLI. Secrets, SAST, dependency CVEs, IaC, supply chain. MIT. AI-assisted.
Go · Python★ 0Jul 15, 2026
MITJul 15, 2026 · metrics 1.13.0