Усі теги
Тег каталогу

#devsecops

Усі репозиторії публічного реєстру з цим тегом — із тем GitHub або ключових слів, які публікують їхні реєстри пакетів. Здоров'я вимірюється за тією ж версіонованою методологією, що й решта реєстру.

86 записів
З тегом «devsecops»Упорядковано за індексом здоров'я
PyPI · npm
84Відміннийіндекс здоров'я
owasp-dep-scan/dep-scan
OWASP dep-scan is a next-generation security and risk audit tool based on known vulnerabilities, advisories, and license limitations for project dependencies. Both local repositories and container images are supported as the input, and the tool is ideal for integration.
Python★ 1 281↓ 10.9K/міс24 серп. 2026 р.
MIT24 серп. 2026 р. · метрики 2.10.0
PyPI
84Відміннийіндекс здоров'я
squid-protocol/gitgalaxy
Deep repository intelligence for humans and ai. Air gapped, on premise, zero dependency SAST for 50 languages regardless of compilation status. Sarif and sbom outputs.
Python★ 5022 серп. 2026 р.
Власна ліцензія22 серп. 2026 р. · метрики 2.10.0
PyPI
83Відміннийіндекс здоров'я
infobyte/faraday
Open Source Vulnerability Management Platform
Python★ 6 698↓ 917/міс29 серп. 2026 р.
GPL-3.029 серп. 2026 р. · метрики 2.10.0
Go
81Відміннийіндекс здоров'я
airomhq/airom
Open-source AI Bill of Materials (AIBOM) scanner: inventories AI models, datasets, prompts, embeddings, vector DBs & RAG pipelines across code, containers & Kubernetes — with file:line evidence, load-time risk detection (poisoned pickle / Keras Lambda / unsafe torch.load) and NIST AI RMF / OWASP compliance mapping. CycloneDX · SARIF · JSON.
Go · MDX★ 823 лип. 2026 р.
Apache-2.023 лип. 2026 р. · метрики 2.10.0
Go
81Відміннийіндекс здоров'я
cfgaudit/cfgaudit
AI agent configuration security auditor - find misconfigurations in Claude Code, Cursor, and other AI tools
Go★ 723 серп. 2026 р.
Apache-2.023 серп. 2026 р. · метрики 2.10.0
npm
81Відміннийіндекс здоров'я
samartomar/ai-harness
Enterprise AI Bootstrapping Harness
TypeScript★ 4↓ 4 137/міс18 лип. 2026 р.
Apache-2.018 лип. 2026 р. · метрики 2.10.0
PyPI
78Добрийіндекс здоров'я
cpeoples/ansible-security-scanner
🛡️ Static security scanner (SAST) for Ansible playbooks, roles, and collections. 1,000+ rules across 30+ categories detecting malicious code, RCE, hardcoded credentials, and supply-chain risk. Outputs SARIF, CycloneDX SBOM, and GitLab SAST. SLSA Build Level 3, Sigstore-signed.
Python★ 9↓ 1 928/міс17 лип. 2026 р.
Apache-2.017 лип. 2026 р. · метрики 2.10.0
Go · npm
78Добрийіндекс здоров'я
opt-nc/geol
Efficiently show and monitor end-of-life dates for a number of products in your terminal and CI using endoflife.date API
HTML · Go★ 1219 лип. 2026 р.
Apache-2.019 лип. 2026 р. · метрики 2.10.0
Go
78Добрийіндекс здоров'я
rezmoss/sbomlyze
git diff for your SBOM ,compare CycloneDX/SPDX/Syft bills of materials, detect tampering, and gate CI
Go★ 2420 лип. 2026 р.
Apache-2.020 лип. 2026 р. · метрики 2.10.0
PyPI
78Добрийіндекс здоров'я
xeonvs/open-code-review-toolkit
GitLab CI integration toolkit for Open Code Review
Python★ 1↓ 2 646/міс26 серп. 2026 р.
Apache-2.026 серп. 2026 р. · метрики 2.10.0
Go
77Добрийіндекс здоров'я
draugr-dev/draugr
Developer-first security scanning orchestration — describe your app in one file, run many scanners (SAST, SCA, secrets, IaC, containers, headers), get one SARIF verdict for CI & code scanning.
Go★ 019 лип. 2026 р.
Apache-2.019 лип. 2026 р. · метрики 2.10.0
Go
77Добрийіндекс здоров'я
jitpass/jit
Find the plaintext secrets on your Mac and move them behind Touch ID, injected just in time without breaking the tools that read them. Free and local-first.
Go★ 1575 вер. 2026 р.
Власна ліцензія5 вер. 2026 р. · метрики 2.10.0
Go
77Добрийіндекс здоров'я
kondukto-io/kdt
CLI to interact with Kondukto
Go★ 2915 лип. 2026 р.
GPL-3.015 лип. 2026 р. · метрики 2.10.0
Go
75Добрийіндекс здоров'я
TomTonic/extract-sbom
Sandboxed SBOM extraction from arbitrary artifacts. Outputs traceability records and CycloneDX JSON for automation, auditability, and supply chain security.
Go★ 221 лип. 2026 р.
BSD-3-Clause21 лип. 2026 р. · метрики 2.10.0
Go
75Добрийіндекс здоров'я
glsec/glsec
GitLab CI security linter - find misconfigurations and vulnerabilities in .gitlab-ci.yml files
Go★ 1917 лип. 2026 р.
Apache-2.017 лип. 2026 р. · метрики 2.10.0
npm · Go
73Добрийіндекс здоров'я
HodeTech/Leakwatch
High-performance open-source secret scanner — detect, verify & report leaked API keys, tokens & credentials in code, Git history, container images, and the cloud.
Go★ 2↓ 46/міс27 лип. 2026 р.
MIT27 лип. 2026 р. · метрики 2.10.0
Go
73Добрийіндекс здоров'я
kondukto-io/cli
CLI to interact with Kondukto
Go★ 2915 лип. 2026 р.
GPL-3.015 лип. 2026 р. · метрики 2.10.0
PyPI
73Добрийіндекс здоров'я
philpaz/recusal
Deterministic governance for Claude and MCP tool calls. Pin approved capabilities, detect drift, and refuse unsafe or unapproved actions before execution. No model in the decision path.
Python★ 3↓ 2 854/міс27 лип. 2026 р.
Apache-2.027 лип. 2026 р. · метрики 2.10.0
PyPI · npm
71Добрийіндекс здоров'я
PrismorSec/prismor
Runtime Firewall for AI agents which catches the rogue tool call before it runs. Dangerous commands, secret leaks, prompt injection. For Claude Code, Codex and framework SDKs
Python · HTML★ 240↓ 6 171/міс19 лип. 2026 р.
Apache-2.019 лип. 2026 р. · метрики 2.10.0
69Добрийіндекс здоров'я
mukul975/Anthropic-Cybersecurity-Skills
817 structured cybersecurity skills for AI agents · Mapped to 6 frameworks: MITRE ATT&CK, NIST CSF 2.0, MITRE ATLAS, D3FEND, NIST AI RMF & MITRE F3 (Fight Fraud) · agentskills.io standard · Works with Claude Code, GitHub Copilot, Codex CLI, Cursor, Gemini CLI & 20+ platforms · 29 security domains · Apache 2.0
Python★ 27.3K5 серп. 2026 р.
Apache-2.05 серп. 2026 р. · метрики 2.10.0
Go
67Добрийіндекс здоров'я
djadmin/fort
Audit and fix your Mac's security in one command. No agent, no signup, open source.
Go · HTML★ 785 вер. 2026 р.
MIT5 вер. 2026 р. · метрики 2.10.0
Go
67Добрийіндекс здоров'я
eitanity/kanonarion
Dependency assurance software for Go. A deterministic, local source of truth about your dependencies - what's in them, how they're licensed, how to call them, and which known vulnerabilities your code actually reaches. Developers query it from the CLI with human-readable output; AI coding agents get JSON.
Go★ 119 лип. 2026 р.
Apache-2.019 лип. 2026 р. · метрики 2.10.0
PyPI
67Добрийіндекс здоров'я
raccioly/websec-validator
Local-first security recon that briefs your AI coding agent: facts + tailored probes, code-in / artifacts-out. No LLM, no server, no running app.
Python★ 231 лип. 2026 р.
MIT31 лип. 2026 р. · метрики 2.10.0
npm
67Добрийіндекс здоров'я
this-is-securl/securl
SecURL - passive external security posture scanner. Free hosted scanner, open-source engine, CI integration
TypeScript · JavaScript★ 316 лип. 2026 р.
MIT16 лип. 2026 р. · метрики 2.10.0
Go
67Добрийіндекс здоров'я
tiagosilva07/zyrax-guard
Audit your AI agent configs before you run them — prompt injection, rogue MCP servers, credential-exfil. Plus dependency vetting.
Go★ 228 серп. 2026 р.
MIT28 серп. 2026 р. · метрики 2.10.0
Go
65Добрийіндекс здоров'я
plenoai/pleno-dlp
Unified DLP scanner for secrets and PII across filesystem, git, stdin, and SaaS sources.
Go★ 117 лип. 2026 р.
AGPL-3.017 лип. 2026 р. · метрики 2.10.0
Go
63Помірнийіндекс здоров'я
famclaw/honeybadger
Security scanner for AI agent skills and MCP servers. Detects secrets, CVEs, supply chain attacks, and prompt injection in SKILL.md files before they're installed. Pre-install gate for Claude Code, OpenClaw, PicoClaw, NanoBot, FamClaw, and CI/CD pipelines. Single Go binary, MIT licensed.
Go★ 317 лип. 2026 р.
MIT17 лип. 2026 р. · метрики 2.10.0
Go
63Помірнийіндекс здоров'я
idriss-eliguene/landlock-genprof
Automatic Kubernetes security profile generator — Landlock, NetworkPolicy, seccomp, and Linux capabilities — built on observation of a running pod, not manual rule authoring.
Go · Shell★ 32 вер. 2026 р.
Apache-2.02 вер. 2026 р. · метрики 2.10.0
Hex
62Помірнийіндекс здоров'я
aryaminus/controlkeel
Agent control plane for governed AI coding: validate changes, enforce policy gates, track findings, proofs, and evals based on your habits.
Elixir★ 1017 лип. 2026 р.
Власна ліцензія17 лип. 2026 р. · метрики 2.10.0
Go
62Помірнийіндекс здоров'я
kanywst/brtc
Cost calculator for offline password brute-force attacks: time + USD per GPU profile, with a CI gatekeeper.
Go★ 026 лип. 2026 р.
MIT26 лип. 2026 р. · метрики 2.10.0