Усі теги
Тег каталогу

#owasp

Усі репозиторії публічного реєстру з цим тегом — із тем GitHub або ключових слів, які публікують їхні реєстри пакетів. Здоров'я вимірюється за тією ж версіонованою методологією, що й решта реєстру.

26 записів
З тегом «owasp»Упорядковано за індексом здоров'я
npm · Go · crates.io
86Відміннийіндекс здоров'я
microsoft/agent-governance-toolkit
AI Agent Governance Toolkit — Policy enforcement, zero-trust identity, execution sandboxing, and reliability engineering for autonomous AI agents. Covers 10/10 OWASP Agentic Top 10.
Python★ 4 869↓ 12.3K/міс20 лип. 2026 р.
MIT20 лип. 2026 р. · метрики 1.13.0
npm · RubyGems
81Добрийіндекс здоров'я
owasp/threat-dragon
An open source threat modeling tool from OWASP
JavaScript · Vue★ 1 52315 лип. 2026 р.
Apache-2.015 лип. 2026 р. · метрики 1.13.0
npm · crates.io
80Добрийіндекс здоров'я
AikidoSec/firewall-node
Zen protects your Node app against attacks with one line of code. Get peace of mind— at runtime.
TypeScript · JavaScript★ 201↓ 179.4K/міс22 лип. 2026 р.
Власна ліцензія22 лип. 2026 р. · метрики 1.13.0
PyPI · npm
80Добрийіндекс здоров'я
msaad00/agent-bom
Open security scanner and self-hosted control plane for AI, MCP, and cloud. One evidence model — run scans in your environment, centralize findings, govern in your VPC.
Python · TypeScript★ 28↓ 5 301/міс16 лип. 2026 р.
Apache-2.016 лип. 2026 р. · метрики 1.13.0
PyPI
76Добрийіндекс здоров'я
CycloneDX/cyclonedx-python-lib
Functionality and DataModels of OWASP CycloneDX for Python
Python★ 11317 лип. 2026 р.
Apache-2.017 лип. 2026 р. · метрики 1.13.0
npm · Maven · NuGet +1
76Добрийіндекс здоров'я
cdxgen/cdxgen
Creates CycloneDX Bill of Materials (BOM) for your projects from source and container images. Supports many languages and package managers. Integrate in your CI/CD pipeline with automatic submission to Dependency Track server
JavaScript★ 1 012↓ 719.2K/міс17 лип. 2026 р.
Apache-2.017 лип. 2026 р. · метрики 1.13.0
npm
75Добрийіндекс здоров'я
CyberStrikeus/CyberStrike
Open-source AI-augmented offensive security harness. 13+ autonomous agents, 150+ LLM providers, 5,300+ models, 7,600+ Ed25519-signed attack skills, 56+ built-in tools, 176+ MCP tools. MITRE ATT&CK, OWASP WSTG, CIS Benchmarks. Post-exploit: Linux/Windows/macOS/AWS/Azure/K8s/CI-CD. Web UI + Cloudflare Tunnel. Your AI red team.
TypeScript · Python★ 1 266↓ 2 624/міс23 лип. 2026 р.
AGPL-3.023 лип. 2026 р. · метрики 1.13.0
npm
74Добрийіндекс здоров'я
OWASP/cve-lite-cli
Fast, developer-friendly JS/TS dependency vulnerability scanner with local lockfile scanning, OSV matching, direct vs transitive visibility, --fix, JSON output, and practical remediation guidance.
TypeScript★ 635↓ 20.2K/міс16 лип. 2026 р.
MIT16 лип. 2026 р. · метрики 1.13.0
Go
74Добрийіндекс здоров'я
l3montree-dev/devguard
DevGuard Backend - Secure your Software Supply Chain - Attestation-based compliance as Code, manage your CVEs seamlessly, Integrate your Vulnerability Scanners, Security Framework Documentation made easy - OWASP Incubating Project
Go★ 14617 лип. 2026 р.
Власна ліцензія17 лип. 2026 р. · метрики 1.13.0
PyPI
74Добрийіндекс здоров'я
owasp/docksec
AI-powered Docker security scanner that explains vulnerabilities in plain English. An OWASP Lab Project.
Python★ 46017 лип. 2026 р.
MIT17 лип. 2026 р. · метрики 1.13.0
Go
72Добрийіндекс здоров'я
l3montree-dev/flawfix
DevGuard Backend - Secure your Software Supply Chain - Attestation-based compliance as Code, manage your CVEs seamlessly, Integrate your Vulnerability Scanners, Security Framework Documentation made easy - OWASP Incubating Project
Go★ 14618 лип. 2026 р.
Власна ліцензія18 лип. 2026 р. · метрики 1.13.0
npm
71Добрийіндекс здоров'я
asamassekou10/ship-safe
CLI security scanner built for the agentic era. Detects CI/CD misconfigs, agent permission risks, MCP tool injection, hardcoded secrets, and DMCA-flagged AI dependencies.
JavaScript · TypeScript · CSS★ 763↓ 2 247/міс15 лип. 2026 р.
MIT15 лип. 2026 р. · метрики 1.13.0
NuGet
70Добрийіндекс здоров'я
CycloneDX/cyclonedx-dotnet-library
.NET library to consume and produce CycloneDX Software Bill of Materials (SBOM)
C#★ 2822 лип. 2026 р.
Apache-2.022 лип. 2026 р. · метрики 1.13.0
npm · Go
70Добрийіндекс здоров'я
daveshanley/vacuum
vacuum is the worlds fastest and most versatile OpenAPI, AsyncAPI & JSON Schema linter, docs generator and toolkit. It tears through API specs at light speed. 100% compatible with Spectral rulesets, and OpenAPI 3.0, 3.1 and 3.2
Go★ 1 103↓ 169.8K/міс19 лип. 2026 р.
MIT19 лип. 2026 р. · метрики 1.13.0
npm · PyPI
68Помірнийіндекс здоров'я
Agent-Threat-Rule/agent-threat-rules
Open detection standard -- like Sigma, but for AI agents. 425 rules, shipped in Microsoft AGT, Cisco AI Defense, MISP, OWASP A-S-R-H. 97.1% recall on NVIDIA garak. NIST OSCAL Path 1.
TypeScript★ 314↓ 9 370/міс16 лип. 2026 р.
MIT16 лип. 2026 р. · метрики 1.13.0
Go
66Помірнийіндекс здоров'я
airomhq/airom
Open-source AI Bill of Materials (AIBOM) scanner: inventories AI models, datasets, prompts, embeddings, vector DBs & RAG pipelines across code, containers & Kubernetes — with file:line evidence, load-time risk detection (poisoned pickle / Keras Lambda / unsafe torch.load) and NIST AI RMF / OWASP compliance mapping. CycloneDX · SARIF · JSON.
Go · MDX★ 821 лип. 2026 р.
Apache-2.021 лип. 2026 р. · метрики 1.13.0
PyPI
65Помірнийіндекс здоров'я
msaleme/red-team-blue-team-agent-fabric
540 security tests for AI agent systems — MCP, A2A, x402/L402, decision governance, benchmark integrity, skill supply chain. AIUC-1 pre-cert, NIST AI 800-2 aligned, MCP tool-poisoning reproduction. v4.9.1
Python★ 20↓ 667/міс20 лип. 2026 р.
Apache-2.020 лип. 2026 р. · метрики 1.13.0
PyPI
62Помірнийіндекс здоров'я
crucible-security/crucible
pytest for AI agents - Autonomous red-teaming, behavioral monitoring & security testing for LLM agents
Python★ 45↓ 1 793/міс17 лип. 2026 р.
Apache-2.017 лип. 2026 р. · метрики 1.13.0
npm
61Помірнийіндекс здоров'я
goklab/guardvibe
Security infrastructure your AI can't be — deterministic, daily CVE intel past your model's training cutoff, whole-repo-aware, author-independent, and shift-left: secure_prompt secures the prompt before code generation. The security MCP for vibe coding: 450 rules, 39 tools, CLI + doctor for Next.js, Supabase, Clerk, Stripe, Prisma, Hono & MCP.
TypeScript★ 4↓ 6 125/міс17 лип. 2026 р.
Apache-2.017 лип. 2026 р. · метрики 1.13.0
Go · npm
57Помірнийіндекс здоров'я
scagogogo/cwe-skills
AI-native CWE (Common Weakness Enumeration) integration layer — Skills, Go SDK, CLI & MCP. Ship CVE/CWE tooling to SAST/DAST, vuln-management & AI agents.
Go★ 319 лип. 2026 р.
MIT19 лип. 2026 р. · метрики 1.13.0
RubyGems
56Помірнийіндекс здоров'я
dradis/dradis-zap
ZAP plugin for the Dradis Framework
Ruby★ 520 лип. 2026 р.
GPL-2.020 лип. 2026 р. · метрики 1.13.0
PyPI · crates.io · Maven +2
56Помірнийіндекс здоров'я
mattybellx/ansede
Find authorization bugs before attackers do. Free SAST — IDOR detection, 100% CVE recall, 0% false positives. 5 languages. Fully offline.
Python · HTML★ 1217 лип. 2026 р.
Власна ліцензія17 лип. 2026 р. · метрики 1.13.0
RubyGems
54Помірнийіндекс здоров'я
urbanadventurer/WhatWeb
Next generation web scanner
Ruby★ 6 73522 лип. 2026 р.
GPL-2.022 лип. 2026 р. · метрики 1.13.0
npm
52Помірнийіндекс здоров'я
3516634930/Payloader
渗透测试Payload速查平台 | Pentest Payload Quick Reference | XSS/SQLi/SSRF/RCE | React+TypeScript
TypeScript · JavaScript★ 46319 лип. 2026 р.
AGPL-3.019 лип. 2026 р. · метрики 1.13.0
PyPI
49У зоні ризикуіндекс здоров'я
CycloneDX/cyclonedx-python
CycloneDX Software Bill of Materials (SBOM) generator for Python projects and environments
Python★ 386↓ 2.1M/міс21 лип. 2026 р.
Apache-2.021 лип. 2026 р. · метрики 1.13.0
PyPI · npm
35У зоні ризикуіндекс здоров'я
Stiimy/briar
🥀 Autonomous AI Pentester — find vulns before hackers do. Free, open source, Ollama-powered.
Python★ 1↓ 78/міс17 лип. 2026 р.
Власна ліцензія17 лип. 2026 р. · метрики 1.13.0