全部标签
目录标签

#appsec

公开记录中带有此标签的全部仓库——标签来自其 GitHub 主题或软件包注册表发布的关键词。健康度量遵循与记录其余部分相同的版本化方法论。

29 条记录
标签为“appsec”按健康指数排序
Go
98卓越健康指数
DataDog/dd-trace-go
Datadog Go Library including APM tracing, profiling, and security monitoring.
Go★ 8512026年8月22日
自定义许可证2026年8月22日 · 指标 2.10.0
Packagist · crates.io · NuGet
96卓越健康指数
DataDog/dd-trace-php
Datadog PHP Clients
PHP★ 558↓ 665.6K/月2026年8月22日
自定义许可证2026年8月22日 · 指标 2.10.0
Go
96卓越健康指数
openziti/ziti
The parent project for OpenZiti. Here you will find the executables for a fully zero-trust, programmable network @OpenZiti
Go★ 4,3602026年8月28日
Apache-2.02026年8月28日 · 指标 2.10.0
npm · Maven · NuGet +1
92优秀健康指数
cdxgen/cdxgen
Creates CycloneDX Bill of Materials (BOM) for your projects from source and container images. Supports many languages and package managers. Integrate in your CI/CD pipeline with automatic submission to Dependency Track server
JavaScript★ 1,018↓ 745.3K/月2026年7月28日
Apache-2.02026年7月28日 · 指标 2.10.0
Go
92优秀健康指数
openziti/sdk-golang
Ziti SDK for Golang
Go★ 1302026年7月29日
Apache-2.02026年7月29日 · 指标 2.10.0
Go · Maven
91优秀健康指数
praetorian-inc/titus
High-performance secrets scanner. CLI, Go library, Burp Suite extension, and Chrome extension. 487 detection rules with live credential validation.
Go · Java★ 6382026年7月19日
Apache-2.02026年7月19日 · 指标 2.10.0
npm
90优秀健康指数
lirantal/npq
safely install npm packages by auditing them pre-install stage
JavaScript★ 1,759↓ 35.4K/月2026年7月17日
Apache-2.02026年7月17日 · 指标 2.10.0
90优秀健康指数
openziti/ziti-tunnel-sdk-c
该仓库未发布描述。
C · C++★ 602026年7月19日
Apache-2.02026年7月19日 · 指标 2.10.0
PyPI · npm
89优秀健康指数
NuGuardAI/nuguard
opensource repo for validating agentic AI applications: redteam, behavior, supply-chain, static analysis
Python★ 10↓ 4,954/月2026年7月18日
自定义许可证2026年7月18日 · 指标 2.10.0
npm
88优秀健康指数
OWASP/cve-lite-cli
Fast, developer-friendly JS/TS dependency vulnerability scanner with local lockfile scanning, OSV matching, direct vs transitive visibility, --fix, JSON output, and practical remediation guidance.
TypeScript★ 635↓ 20.2K/月2026年7月16日
MIT2026年7月16日 · 指标 2.10.0
npm
84优秀健康指数
KeygraphHQ/shannon
Shannon is an AI pentester for web applications and APIs. It analyzes your source code, identifies attack vectors, and executes real exploits to prove vulnerabilities before they reach production.
TypeScript★ 46.4K↓ 3,414/月2026年8月5日
AGPL-3.02026年8月5日 · 指标 2.10.0
PyPI
84优秀健康指数
squid-protocol/gitgalaxy
Deep repository intelligence for humans and ai. Air gapped, on premise, zero dependency SAST for 50 languages regardless of compilation status. Sarif and sbom outputs.
Python★ 502026年8月22日
自定义许可证2026年8月22日 · 指标 2.10.0
PyPI
83优秀健康指数
infobyte/faraday
Open Source Vulnerability Management Platform
Python★ 6,698↓ 917/月2026年8月29日
GPL-3.02026年8月29日 · 指标 2.10.0
npm
78良好健康指数
Null-Square/Null-CLi
Open-source AI pentest and compliance-readiness CLI by NullSquare.
TypeScript · JavaScript★ 81↓ 147/月2026年8月4日
自定义许可证2026年8月4日 · 指标 2.10.0
PyPI · crates.io
78良好健康指数
maurosoria/dirsearch
Web path scanner
Python★ 14.6K↓ 32.4K/月2026年8月19日
无许可证2026年8月19日 · 指标 2.10.0
Go
77良好健康指数
draugr-dev/draugr
Developer-first security scanning orchestration — describe your app in one file, run many scanners (SAST, SCA, secrets, IaC, containers, headers), get one SARIF verdict for CI & code scanning.
Go★ 02026年7月19日
Apache-2.02026年7月19日 · 指标 2.10.0
Go
75良好健康指数
go-appsec/interactsh-lite
Dependency-minimal Interactsh protocol client and server for out-of-band testing (OOB / OAST)
Go★ 32026年9月5日
MIT2026年9月5日 · 指标 2.10.0
Go
75良好健康指数
go-appsec/toolbox
Collaborative application security testing between humans and agents via CLI and MCP
Go★ 372026年7月17日
MIT2026年7月17日 · 指标 2.10.0
npm · Go
73良好健康指数
HodeTech/Leakwatch
High-performance open-source secret scanner — detect, verify & report leaked API keys, tokens & credentials in code, Git history, container images, and the cloud.
Go★ 2↓ 46/月2026年7月27日
MIT2026年7月27日 · 指标 2.10.0
Go
69良好健康指数
go-harden/interactsh-lite
Dependency-minimal Interactsh protocol client and server for out-of-band testing (OOB / OAST)
Go★ 32026年7月17日
MIT2026年7月17日 · 指标 2.10.0
Go
67良好健康指数
cc1a2b/JShunter
jshunter is a command-line tool designed for analyzing JavaScript files and extracting endpoints. This tool specializes in identifying sensitive data, such as API endpoints and potential security vulnerabilities, making it an essential resource for and bug bounty hunters and security researchers.
Go★ 5332026年9月6日
MIT2026年9月6日 · 指标 2.10.0
PyPI
67良好健康指数
raccioly/websec-validator
Local-first security recon that briefs your AI coding agent: facts + tailored probes, code-in / artifacts-out. No LLM, no server, no running app.
Python★ 22026年7月31日
MIT2026年7月31日 · 指标 2.10.0
Go
65良好健康指数
prasadnadkarni/mobilegate
Android APK release gate for CI/CD. Blocks releases on high-confidence security failures, not 150-finding reports.
Go★ 02026年8月1日
Apache-2.02026年8月1日 · 指标 2.10.0
npm
63中等健康指数
TypeScript★ 89↓ 2,730/月2026年8月5日
Apache-2.02026年8月5日 · 指标 2.10.0
PyPI
63中等健康指数
manthanghasadiya/mcpsec
An AI-driven dynamic protocol fuzzer for the Model Context Protocol (MCP). Prove runtime exploitability by discovering state violations, transport crashes, and application-layer logic flaws (SSRF, LFI) before your AI agents do.
Python★ 22↓ 319/月2026年7月28日
MIT2026年7月28日 · 指标 2.10.0
npm
57中等健康指数
TanKimGwan/linmas
Proof-carrying defensive security reviews for AI-assisted software, with deterministic policy, portable evidence, and human review required.
JavaScript★ 2↓ 2,831/月2026年7月29日
自定义许可证2026年7月29日 · 指标 2.10.0
RubyGems
54中等健康指数
urbanadventurer/WhatWeb
Next generation web scanner
Ruby★ 6,8012026年8月28日
GPL-2.02026年8月28日 · 指标 2.10.0
Hex
35薄弱健康指数
slab/safeurl-elixir
HTTP client with built-in SSRF protection, compatible with Tesla and HTTPoison
Elixir★ 722026年7月17日
自定义许可证2026年7月17日 · 指标 2.10.0
PyPI
19危急健康指数
FuzzingLabs/secpipe
MCP server for AI-driven security pipelines
Python★ 8032026年8月4日
自定义许可证2026年8月4日 · 指标 2.10.0