optimuslabs-io/grokpatrolOpen-source, offline forensic scanner CLI tool designed to detect evidence of git repo collection or upload by the Grok Build CLI to xAI infrastructure.
Go★ 12Jul 18, 2026
npm61Moderatehealth index
patchstack/connectPatchstack connector for JavaScript applications. Scans your lockfile and reports installed packages to Patchstack for vulnerability monitoring.
TypeScript · JavaScript★ 1↓ 4,203/moJul 20, 2026
PyPI61Moderatehealth index
secure-vector/ai-threat-monitorSecurity & Observability for AI Agents — audit every tool call, enforce allow/block policies, catch prompt injection and data leaks. Local-first; works with Claude Code, Codex, Copilot CLI, OpenClaw, LangChain, and all major LLM APIs.
Python · JavaScript★ 13Jul 16, 2026
crates.io · npm61Moderatehealth index
stepfunc/rodbusRust implementation of Modbus with idiomatic bindings for C, C++, .NET, and Java
Rust · MDX★ 107↓ 5,961/moJul 21, 2026
Go · npm61Moderatehealth index
vineethkrishnan/vaultctlZero-knowledge password vault. Self-hosted, end-to-end encrypted, open source.
TypeScript · Go★ 1Jul 22, 2026
npm60Moderatehealth index
0disoft/genai-telemetry-redactorA library and SDK to redact sensitive content from GenAI/LLM telemetry (prompts, completions, tool arguments) before it reaches observability backends. Supports OpenTelemetry conventions.
TypeScript★ 3↓ 2,836/moJul 17, 2026
npm60Moderatehealth index
Lincoln504/pi-researchWeb research for pi with smart and safe tooling + agent system
TypeScript★ 20↓ 2,031/moJul 22, 2026
npm · Go · PyPI60Moderatehealth index
WebDecoy/FCaptchaOpen-source, invisible CAPTCHA that detects AI agents, bots, and headless browsers via 40+ behavioral signals, device & TLS fingerprinting, and SHA-256 proof of work. Self-hosted and privacy-first.
JavaScript · Go · Python★ 171↓ 2,190/moJul 17, 2026
Packagist · npm60Moderatehealth index
blundergoat/gruff-phpOpinionated PHP code-quality analyzer that scores findings across quality pillars and emits reports for terminals, CI, SARIF, HTML, and a local dashboard.
PHP★ 1↓ 8,483/moJul 16, 2026
cfgaudit/cfgauditAI agent configuration security auditor - find misconfigurations in Claude Code, Cursor, and other AI tools
Go★ 6↓ 0/moJul 14, 2026
Go · npm60Moderatehealth index
codeswhat/lookoutSecurity-first remote Docker agent — authenticated Docker API proxy with outbound edge mode, Ed25519 per-request auth, and a cosign-signed, scratch-based supply chain. Drydock-native + generic REST.
Go · TypeScript★ 3Jul 16, 2026
ddddddO/packemonPacket monster (っ‘-’)╮=͟͟͞͞◒ ヽ( '-'ヽ) TUI tool for sending packets of arbitrary input and monitoring packets on any network interfaces (default: eth0). Windows/macOS/Linux
Go★ 305Jul 20, 2026
npm60Moderatehealth index
remnux/remnux-mcp-serverMCP server for using the REMnux malware analysis toolkit via AI assistants
TypeScript★ 104↓ 6,107/moJul 17, 2026
npm60Moderatehealth index
this-is-securl/securlSecURL - passive external security posture scanner. Free hosted scanner, open-source engine, CI integration
TypeScript · JavaScript★ 3Jul 16, 2026
Packagist60Moderatehealth index
tzsk/otpGenerate OTP with expiry for PHP without using Database
PHP★ 243↓ 8,704/moJul 21, 2026
yahoo/crypkiA simple service for interacting with an HSM or other PKCS#11 device.
Go★ 56Jul 17, 2026
IBM/simrunAttack Simulation Platform (ASP) for detection testing
Go · Svelte★ 6Jul 19, 2026
Packagist59Moderatehealth index
Jord-JD/password_exposed🔒 Password Exposed Helper Function - Check if a password has been exposed in a data breach.
PHP★ 221↓ 12.5K/moJul 17, 2026
npm59Moderatehealth index
Vinay-O/slopscoreScan your codebase for AI slop. Get a Slop Score. Ship clean. A zero-dependency CLI (85 detectors: security, performance, code-quality, design tells) + a 181-pattern Anti-Slop Protocol for AI coding agents.
JavaScript★ 2↓ 2,121/moJul 15, 2026
crates.io59Moderatehealth index
WithSecureLabs/chainsawRapidly Search and Hunt through Windows Forensic Artefacts
Rust★ 3,600↓ 64/moJul 17, 2026
PyPI59Moderatehealth index
Yelp/detect-secretsAn enterprise friendly way of detecting and preventing secrets in code.
Python★ 4,592Jul 18, 2026
chainguard-dev/osquery-defense-kitProduction-ready detection & response queries for osquery
Makefile★ 609Jul 18, 2026
deadpoets/secmemPure-Go off-heap secret memory: mmap/mlock, memfd_secret L4 isolation, guard pages, fail-closed by default
Go★ 1Jul 23, 2026
PyPI · npm59Moderatehealth index
ginkida/sallyportA security-first bridge between Claude Code (MCP) and Chrome — HMAC pairing, domain allowlist, per-domain evaluate opt-in.
TypeScript · Python★ 5↓ 2,291/moJul 18, 2026
PyPI59Moderatehealth index
icvoss/django-wafSelf-hosted WAF middleware for Django: rate limiting, anomaly scoring, proof-of-work challenges, form protection, and nginx blocklists
Python★ 3↓ 2,824/moJul 19, 2026
kzelealem/hookboundSecure, dependency-light inbound and outbound webhook runtime for Go, with optional durable PostgreSQL delivery.
Go★ 3Jul 17, 2026
PyPI · npm59Moderatehealth index
smilinTux/skcapstoneSKCapstone — The sovereign agent framework. CapAuth backbone. Cloud 9 trust. SKMemory persistence. Same agent, same bond, same context — everywhere. Runs from ~/.
Python★ 1↓ 773/moJul 21, 2026
ubyte-source/go-authwareHTTP authentication library for Go servers with Bearer, API key, OAuth/JWT, OIDC auto-discovery, JWKS refresh, and OAuth proxy support.
Go★ 0Jul 15, 2026
Go · PyPI58Moderatehealth index
DvGils/notenvEncrypted .env replacement: secrets encrypted client-side, stored on storage you already own, injected into your process.
Go★ 0Jul 17, 2026
Hex58Moderatehealth index
aryaminus/controlkeelAgent control plane for governed AI coding: validate changes, enforce policy gates, track findings, proofs, and evals based on your habits.
Elixir★ 10Jul 17, 2026