All tags
Catalogue tag

#vulnerability-scanner

Every repository in the public record carrying this tag — from its GitHub topics or the keywords its package registries publish. Health is measured under the same versioned methodology as the rest of the record.

28 records
Tagged “vulnerability-scanner”Ranked by health index
Go
97Exceptionalhealth index
projectdiscovery/nuclei
Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling collaboration to tackle trending vulnerabilities on the internet. It helps you find vulnerabilities in your applications, APIs, networks, DNS, and cloud configurations.
Go★ 30.3KAug 5, 2026
MITAug 5, 2026 · metrics 2.10.0
PyPI
89Excellenthealth index
owasp/docksec
AI-powered Docker security scanner that explains vulnerabilities in plain English. An OWASP Lab Project.
Python★ 460Jul 17, 2026
MITJul 17, 2026 · metrics 2.10.0
npm
88Excellenthealth index
asamassekou10/ship-safe
CLI security scanner built for the agentic era. Detects CI/CD misconfigs, agent permission risks, MCP tool injection, hardcoded secrets, and DMCA-flagged AI dependencies.
JavaScript★ 830↓ 5,893/moSep 6, 2026
MITSep 6, 2026 · metrics 2.10.0
crates.io
86Excellenthealth index
artifact-keeper/artifact-keeper
Open-source universal artifact registry. Drop-in Artifactory/Nexus alternative with 40+ package formats, security scanning, WASM plugins, and edge replication.
Rust★ 855Jul 20, 2026
MITJul 20, 2026 · metrics 2.10.0
Go · npm
83Excellenthealth index
xalgord/xalgorix
Autonomous AI pentesting agents — real-time reconnaissance, vulnerability detection, and exploitation orchestration. Go + TypeScript.
Go · TypeScript★ 768Jul 17, 2026
MITJul 17, 2026 · metrics 2.10.0
Go
81Excellenthealth index
airomhq/airom
Open-source AI Bill of Materials (AIBOM) scanner: inventories AI models, datasets, prompts, embeddings, vector DBs & RAG pipelines across code, containers & Kubernetes — with file:line evidence, load-time risk detection (poisoned pickle / Keras Lambda / unsafe torch.load) and NIST AI RMF / OWASP compliance mapping. CycloneDX · SARIF · JSON.
Go · MDX★ 8Jul 23, 2026
Apache-2.0Jul 23, 2026 · metrics 2.10.0
npm · crates.io
78Goodhealth index
0sec-labs/foxguard
A fast universal code security scanner, written in Rust. Batteries included: supports 12 languages, TUI for triage, secrets, post-quantum audits, diff-aware scans and more 𓃥
Rust★ 277↓ 6,899/moJul 17, 2026
MITJul 17, 2026 · metrics 2.10.0
PyPI
78Goodhealth index
cpeoples/ansible-security-scanner
🛡️ Static security scanner (SAST) for Ansible playbooks, roles, and collections. 1,000+ rules across 30+ categories detecting malicious code, RCE, hardcoded credentials, and supply-chain risk. Outputs SARIF, CycloneDX SBOM, and GitLab SAST. SLSA Build Level 3, Sigstore-signed.
Python★ 9↓ 1,928/moJul 17, 2026
Apache-2.0Jul 17, 2026 · metrics 2.10.0
Go
77Goodhealth index
draugr-dev/draugr
Developer-first security scanning orchestration — describe your app in one file, run many scanners (SAST, SCA, secrets, IaC, containers, headers), get one SARIF verdict for CI & code scanning.
Go★ 0Jul 19, 2026
Apache-2.0Jul 19, 2026 · metrics 2.10.0
Go · npm · PyPI
75Goodhealth index
KKloudTarus/synapse-ce
Synapse - a governed control plane for software composition analysis, recon, evidence, and reporting. Verify Everything. Trust Nothing.
Go · Python★ 33Aug 6, 2026
Apache-2.0Aug 6, 2026 · metrics 2.10.0
Go
73Goodhealth index
zan8in/afrog
A Security Tool for Bug Bounty, Pentest and Red Teaming.
Go · HTML★ 4,371Aug 28, 2026
MITAug 28, 2026 · metrics 2.10.0
Packagist
71Goodhealth index
ShieldCI/laravel
Automated code analysis for Laravel applications with 73 comprehensive analyzers covering security, performance, reliability, code quality, and best practices. Works with Laravel 9+.
PHP★ 2↓ 1,097/moAug 22, 2026
MITAug 22, 2026 · metrics 2.10.0
Go
71Goodhealth index
vigolium/vigolium
Vigolium - High-fidelity vulnerability scanner fusing agentic AI with native speed, modularity, and precision
Go★ 826Jul 15, 2026
Custom licenseJul 15, 2026 · metrics 2.10.0
Go
67Goodhealth index
eitanity/kanonarion
Dependency assurance software for Go. A deterministic, local source of truth about your dependencies - what's in them, how they're licensed, how to call them, and which known vulnerabilities your code actually reaches. Developers query it from the CLI with human-readable output; AI coding agents get JSON.
Go★ 1Jul 19, 2026
Apache-2.0Jul 19, 2026 · metrics 2.10.0
Go
67Goodhealth index
sayseven7/frameseven
Offensive web security scanner — OWASP Top 10 · MCP server · CLI · Go
Go★ 11Aug 8, 2026
MITAug 8, 2026 · metrics 2.10.0
Go
65Goodhealth index
matteo-sung/lockvet
Explain any lockfile change: bumps release-verified against 22 registries, vulns (OSV), ages, deprecations, typosquats, integrity tampering — 61 formats incl. pdm.lock, vcpkg, mise.lock, build.gradle, pom.xml, go.sum, GitHub Actions, GitLab CI, Dockerfiles, Kubernetes, Helm, SBOMs. CLI + CI gate + MCP server + playground. By an AI agent.
Go★ 0Aug 23, 2026
MITAug 23, 2026 · metrics 2.10.0
Go
63Moderatehealth index
famclaw/honeybadger
Security scanner for AI agent skills and MCP servers. Detects secrets, CVEs, supply chain attacks, and prompt injection in SKILL.md files before they're installed. Pre-install gate for Claude Code, OpenClaw, PicoClaw, NanoBot, FamClaw, and CI/CD pipelines. Single Go binary, MIT licensed.
Go★ 3Jul 17, 2026
MITJul 17, 2026 · metrics 2.10.0
Go
60Moderatehealth index
kidoz/go-vulners
Go client library for the Vulners vulnerability database API — search, audit, SBOM, VScanner, and more
Go★ 0Aug 22, 2026
MITAug 22, 2026 · metrics 2.10.0
Go · npm
57Moderatehealth index
cyberspacesec/certificate-skills
AI-native certificate security toolkit — Skills, CLI, MCP server & Go SDK for SSL/TLS analysis, cyberspace mapping and PKI operations
Go★ 0Jul 20, 2026
MITJul 20, 2026 · metrics 2.10.0
Go
57Moderatehealth index
kidoz/vulners-cli
CLI vulnerability scanner powered by Vulners — search, audit, scan, offline mode
Go★ 6Jul 17, 2026
MITJul 17, 2026 · metrics 2.10.0
Go
54Moderatehealth index
elementsinteractive/sheriff
Sheriff is a tool to scan repositories and generate security reports.
Go★ 6Jul 17, 2026
MITJul 17, 2026 · metrics 2.10.0
npm
51Moderatehealth index
nsasoft/nsauditor-ai
NSAuditor AI — Open-source, AI-powered network security scanner. 27 plugins, CVE matching, MITRE ATT&CK mapping, verified vulnerabilities, continuous monitoring, MCP integration. Zero data exfiltration. MIT licensed.
JavaScript★ 20↓ 3,215/moSep 6, 2026
MITSep 6, 2026 · metrics 2.10.0
Go
42Weakhealth index
malandas/andas
Sift real security risk from the noise — a cross-platform CLI that live-validates leaked secrets and reachability-ranks npm/Yarn vulnerabilities, so you fix what's actually exploitable.
Go★ 0Aug 6, 2026
MITAug 6, 2026 · metrics 2.10.0
Go
42Weakhealth index
safetylab/ShadowSecurityScanner
Free, open-source network vulnerability scanner & penetration testing tool that ranks findings by real-world exploitability (EPSS + CISA KEV). Single desktop app for Windows, macOS, Linux. No cloud, no telemetry. MIT.
Go★ 0Jul 21, 2026
MITJul 21, 2026 · metrics 2.10.0
npm
41Weakhealth index
nsasoft/nsauditor-ai-agent-skill
AI Agent Skill for NSAuditor AI — gives any AI coding agent built-in knowledge of NSAuditor's MCP tools, schemas, plugins, and security audit workflows. Works with Claude Code, Cursor, Windsurf, and any MCP-aware agent.
JavaScript★ 4↓ 7,235/moSep 6, 2026
MITSep 6, 2026 · metrics 2.10.0
Packagist
29At Riskhealth index
enlightn/security-checker
A PHP dependency vulnerabilities scanner based on the Security Advisories Database.
PHP★ 339↓ 277.7K/moAug 13, 2026
MITAug 13, 2026 · metrics 2.10.0
npm
28At Riskhealth index
react-atomic/modality
No repository description published.
TypeScript★ 0↓ 10K/moJul 17, 2026
No licenseJul 17, 2026 · metrics 2.10.0
Go
19Criticalhealth index
ps1-blacklist/wpfather
WPFather - WordPress Vulnerability Scanner & Security Recon Tool with 16 Modules | Zero Config Single Binary
Go★ 0Jul 16, 2026
Custom licenseJul 16, 2026 · metrics 2.10.0