Усі теги
Тег каталогу

#sarif

Усі репозиторії публічного реєстру з цим тегом — із тем GitHub або ключових слів, які публікують їхні реєстри пакетів. Здоров'я вимірюється за тією ж версіонованою методологією, що й решта реєстру.

47 записів
З тегом «sarif»Упорядковано за індексом здоров'я
npm
60Помірнийіндекс здоров'я
calllint/calllint
Pre-flight risk linting for MCP and agent tools — check the blast radius before your agent runs them.
TypeScript · HTML★ 2↓ 3 504/міс31 лип. 2026 р.
Apache-2.031 лип. 2026 р. · метрики 2.10.0
Go
59Помірнийіндекс здоров'я
rudrendupaul/tenantguard
CLI security scanner for self-hosted multi-tenant AI-agent platforms. 16 fail-closed OPA/Rego rules catch tenant-isolation defects (sandbox scoping, SSRF, cross-tenant cron/auth, secret leakage). SARIF and JSON output for CI.
Go · Open Policy Agent★ 015 лип. 2026 р.
Apache-2.015 лип. 2026 р. · метрики 2.10.0
Go
59Помірнийіндекс здоров'я
skyway-harness-builder/workflow-lint
Standalone open-source linter for Skylence .sky workflow files
Go★ 021 лип. 2026 р.
Apache-2.021 лип. 2026 р. · метрики 2.10.0
Go
57Помірнийіндекс здоров'я
kidoz/vulners-cli
CLI vulnerability scanner powered by Vulners — search, audit, scan, offline mode
Go★ 617 лип. 2026 р.
MIT17 лип. 2026 р. · метрики 2.10.0
PyPI · crates.io · Maven +2
57Помірнийіндекс здоров'я
mattybellx/ansede
Find authorization bugs before attackers do. Free SAST — IDOR detection, 100% CVE recall, 0% false positives. 5 languages. Fully offline.
Python · HTML★ 1217 лип. 2026 р.
Власна ліцензія17 лип. 2026 р. · метрики 2.10.0
crates.io
57Помірнийіндекс здоров'я
tacticaldoll/tianheng
Reactive architectural governance for Rust — declare boundaries in Rust, react to drift in CI and at runtime. The 三儀: 圭表 (static) · 渾儀 (semantic) · 漏刻 (runtime). Govern by reaction, not instruction. On crates.io as the tianheng family.
Rust★ 0↓ 16.6K/міс29 лип. 2026 р.
Apache-2.029 лип. 2026 р. · метрики 2.10.0
PyPI · npm · crates.io
53Помірнийіндекс здоров'я
JunHwan-Kwon/deepbom
Local static analysis and evidence generation for deployed AI model artifacts
JavaScript · Rust★ 2↓ 3 094/міс4 вер. 2026 р.
Apache-2.04 вер. 2026 р. · метрики 2.10.0
npm
51Помірнийіндекс здоров'я
nsasoft/nsauditor-ai
NSAuditor AI — Open-source, AI-powered network security scanner. 27 plugins, CVE matching, MITRE ATT&CK mapping, verified vulnerabilities, continuous monitoring, MCP integration. Zero data exfiltration. MIT licensed.
JavaScript★ 20↓ 3 215/міс6 вер. 2026 р.
MIT6 вер. 2026 р. · метрики 2.10.0
Go
50Помірнийіндекс здоров'я
bunta-expert/git-path-audit
Read-only CLI that finds Git paths that collide, change meaning, or fail to check out across Windows, macOS, and Linux.
Go★ 15 вер. 2026 р.
MIT5 вер. 2026 р. · метрики 2.10.0
Packagist
50Помірнийіндекс здоров'я
phpcpd-next/phpcpd
phpcpd-next is a token-based copy/paste (clone) detector for PHP 8.5+, a modernized, openly-licensed successor to Sebastian Bergmann's phpcpd
PHP★ 34↓ 2 961/міс18 серп. 2026 р.
BSD-3-Clause18 серп. 2026 р. · метрики 2.10.0
npm
48Слабкийіндекс здоров'я
BenAHammond/code-auditor-mcp
Architectural invariants and code quality analysis, enforced inside your AI agent's edit loop. MCP server + CLI + Claude Code plugin. TypeScript, JavaScript, Go.
TypeScript★ 7↓ 5 432/міс26 лип. 2026 р.
MIT26 лип. 2026 р. · метрики 2.10.0
npm
48Слабкийіндекс здоров'я
criticaldeveloper/critical-gate
Опис репозиторію не опубліковано.
TypeScript★ 1↓ 3 922/міс16 лип. 2026 р.
MIT16 лип. 2026 р. · метрики 2.10.0
Packagist
42Слабкийіндекс здоров'я
jbelien/phpstan-sarif-formatter
SARIF formatter for PHPStan
PHP★ 13↓ 17.3K/міс29 лип. 2026 р.
MIT29 лип. 2026 р. · метрики 2.10.0
Go
42Слабкийіндекс здоров'я
safetylab/ShadowSecurityScanner
Free, open-source network vulnerability scanner & penetration testing tool that ranks findings by real-world exploitability (EPSS + CISA KEV). Single desktop app for Windows, macOS, Linux. No cloud, no telemetry. MIT.
Go★ 021 лип. 2026 р.
MIT21 лип. 2026 р. · метрики 2.10.0
npm
41Слабкийіндекс здоров'я
nsasoft/nsauditor-ai-agent-skill
AI Agent Skill for NSAuditor AI — gives any AI coding agent built-in knowledge of NSAuditor's MCP tools, schemas, plugins, and security audit workflows. Works with Claude Code, Cursor, Windsurf, and any MCP-aware agent.
JavaScript★ 4↓ 7 235/міс6 вер. 2026 р.
MIT6 вер. 2026 р. · метрики 2.10.0
npm
39Слабкийіндекс здоров'я
KaraboGerald/SeamShieldCLI
SeamShield Community CLI: local-first access-lane scanning for AI-built apps
TypeScript · JavaScript★ 0↓ 2 130/міс4 серп. 2026 р.
MIT4 серп. 2026 р. · метрики 2.10.0
Go
33У зоні ризикуіндекс здоров'я
tamish560/mcprobe
Security scanner and introspection tool for MCP servers. Connect, inspect, detect injection patterns, find tool shadowing, baseline for drift. Single binary, zero dependencies, Go stdlib only.
Go★ 220 лип. 2026 р.
MIT20 лип. 2026 р. · метрики 2.10.0