全部标签
目录标签

#vulnerability-scanner

公开记录中带有此标签的全部仓库——标签来自其 GitHub 主题或软件包注册表发布的关键词。健康度量遵循与记录其余部分相同的版本化方法论。

28 条记录
标签为“vulnerability-scanner”按健康指数排序
Go
97卓越健康指数
projectdiscovery/nuclei
Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling collaboration to tackle trending vulnerabilities on the internet. It helps you find vulnerabilities in your applications, APIs, networks, DNS, and cloud configurations.
Go★ 30.3K2026年8月5日
MIT2026年8月5日 · 指标 2.10.0
PyPI
89优秀健康指数
owasp/docksec
AI-powered Docker security scanner that explains vulnerabilities in plain English. An OWASP Lab Project.
Python★ 4602026年7月17日
MIT2026年7月17日 · 指标 2.10.0
npm
88优秀健康指数
asamassekou10/ship-safe
CLI security scanner built for the agentic era. Detects CI/CD misconfigs, agent permission risks, MCP tool injection, hardcoded secrets, and DMCA-flagged AI dependencies.
JavaScript★ 830↓ 5,893/月2026年9月6日
MIT2026年9月6日 · 指标 2.10.0
crates.io
86优秀健康指数
artifact-keeper/artifact-keeper
Open-source universal artifact registry. Drop-in Artifactory/Nexus alternative with 40+ package formats, security scanning, WASM plugins, and edge replication.
Rust★ 8552026年7月20日
MIT2026年7月20日 · 指标 2.10.0
Go · npm
83优秀健康指数
xalgord/xalgorix
Autonomous AI pentesting agents — real-time reconnaissance, vulnerability detection, and exploitation orchestration. Go + TypeScript.
Go · TypeScript★ 7682026年7月17日
MIT2026年7月17日 · 指标 2.10.0
Go
81优秀健康指数
airomhq/airom
Open-source AI Bill of Materials (AIBOM) scanner: inventories AI models, datasets, prompts, embeddings, vector DBs & RAG pipelines across code, containers & Kubernetes — with file:line evidence, load-time risk detection (poisoned pickle / Keras Lambda / unsafe torch.load) and NIST AI RMF / OWASP compliance mapping. CycloneDX · SARIF · JSON.
Go · MDX★ 82026年7月23日
Apache-2.02026年7月23日 · 指标 2.10.0
npm · crates.io
78良好健康指数
0sec-labs/foxguard
A fast universal code security scanner, written in Rust. Batteries included: supports 12 languages, TUI for triage, secrets, post-quantum audits, diff-aware scans and more 𓃥
Rust★ 277↓ 6,899/月2026年7月17日
MIT2026年7月17日 · 指标 2.10.0
PyPI
78良好健康指数
cpeoples/ansible-security-scanner
🛡️ Static security scanner (SAST) for Ansible playbooks, roles, and collections. 1,000+ rules across 30+ categories detecting malicious code, RCE, hardcoded credentials, and supply-chain risk. Outputs SARIF, CycloneDX SBOM, and GitLab SAST. SLSA Build Level 3, Sigstore-signed.
Python★ 9↓ 1,928/月2026年7月17日
Apache-2.02026年7月17日 · 指标 2.10.0
Go
77良好健康指数
draugr-dev/draugr
Developer-first security scanning orchestration — describe your app in one file, run many scanners (SAST, SCA, secrets, IaC, containers, headers), get one SARIF verdict for CI & code scanning.
Go★ 02026年7月19日
Apache-2.02026年7月19日 · 指标 2.10.0
Go · npm · PyPI
75良好健康指数
KKloudTarus/synapse-ce
Synapse - a governed control plane for software composition analysis, recon, evidence, and reporting. Verify Everything. Trust Nothing.
Go · Python★ 332026年8月6日
Apache-2.02026年8月6日 · 指标 2.10.0
Go
73良好健康指数
zan8in/afrog
A Security Tool for Bug Bounty, Pentest and Red Teaming.
Go · HTML★ 4,3712026年8月28日
MIT2026年8月28日 · 指标 2.10.0
Packagist
71良好健康指数
ShieldCI/laravel
Automated code analysis for Laravel applications with 73 comprehensive analyzers covering security, performance, reliability, code quality, and best practices. Works with Laravel 9+.
PHP★ 2↓ 1,097/月2026年8月22日
MIT2026年8月22日 · 指标 2.10.0
Go
71良好健康指数
vigolium/vigolium
Vigolium - High-fidelity vulnerability scanner fusing agentic AI with native speed, modularity, and precision
Go★ 8262026年7月15日
自定义许可证2026年7月15日 · 指标 2.10.0
Go
67良好健康指数
eitanity/kanonarion
Dependency assurance software for Go. A deterministic, local source of truth about your dependencies - what's in them, how they're licensed, how to call them, and which known vulnerabilities your code actually reaches. Developers query it from the CLI with human-readable output; AI coding agents get JSON.
Go★ 12026年7月19日
Apache-2.02026年7月19日 · 指标 2.10.0
Go
67良好健康指数
sayseven7/frameseven
Offensive web security scanner — OWASP Top 10 · MCP server · CLI · Go
Go★ 112026年8月8日
MIT2026年8月8日 · 指标 2.10.0
Go
65良好健康指数
matteo-sung/lockvet
Explain any lockfile change: bumps release-verified against 22 registries, vulns (OSV), ages, deprecations, typosquats, integrity tampering — 61 formats incl. pdm.lock, vcpkg, mise.lock, build.gradle, pom.xml, go.sum, GitHub Actions, GitLab CI, Dockerfiles, Kubernetes, Helm, SBOMs. CLI + CI gate + MCP server + playground. By an AI agent.
Go★ 02026年8月23日
MIT2026年8月23日 · 指标 2.10.0
Go
63中等健康指数
famclaw/honeybadger
Security scanner for AI agent skills and MCP servers. Detects secrets, CVEs, supply chain attacks, and prompt injection in SKILL.md files before they're installed. Pre-install gate for Claude Code, OpenClaw, PicoClaw, NanoBot, FamClaw, and CI/CD pipelines. Single Go binary, MIT licensed.
Go★ 32026年7月17日
MIT2026年7月17日 · 指标 2.10.0
Go
60中等健康指数
kidoz/go-vulners
Go client library for the Vulners vulnerability database API — search, audit, SBOM, VScanner, and more
Go★ 02026年8月22日
MIT2026年8月22日 · 指标 2.10.0
Go · npm
57中等健康指数
cyberspacesec/certificate-skills
AI-native certificate security toolkit — Skills, CLI, MCP server & Go SDK for SSL/TLS analysis, cyberspace mapping and PKI operations
Go★ 02026年7月20日
MIT2026年7月20日 · 指标 2.10.0
Go
57中等健康指数
kidoz/vulners-cli
CLI vulnerability scanner powered by Vulners — search, audit, scan, offline mode
Go★ 62026年7月17日
MIT2026年7月17日 · 指标 2.10.0
Go
54中等健康指数
elementsinteractive/sheriff
Sheriff is a tool to scan repositories and generate security reports.
Go★ 62026年7月17日
MIT2026年7月17日 · 指标 2.10.0
npm
51中等健康指数
nsasoft/nsauditor-ai
NSAuditor AI — Open-source, AI-powered network security scanner. 27 plugins, CVE matching, MITRE ATT&CK mapping, verified vulnerabilities, continuous monitoring, MCP integration. Zero data exfiltration. MIT licensed.
JavaScript★ 20↓ 3,215/月2026年9月6日
MIT2026年9月6日 · 指标 2.10.0
Go
42薄弱健康指数
malandas/andas
Sift real security risk from the noise — a cross-platform CLI that live-validates leaked secrets and reachability-ranks npm/Yarn vulnerabilities, so you fix what's actually exploitable.
Go★ 02026年8月6日
MIT2026年8月6日 · 指标 2.10.0
Go
42薄弱健康指数
safetylab/ShadowSecurityScanner
Free, open-source network vulnerability scanner & penetration testing tool that ranks findings by real-world exploitability (EPSS + CISA KEV). Single desktop app for Windows, macOS, Linux. No cloud, no telemetry. MIT.
Go★ 02026年7月21日
MIT2026年7月21日 · 指标 2.10.0
npm
41薄弱健康指数
nsasoft/nsauditor-ai-agent-skill
AI Agent Skill for NSAuditor AI — gives any AI coding agent built-in knowledge of NSAuditor's MCP tools, schemas, plugins, and security audit workflows. Works with Claude Code, Cursor, Windsurf, and any MCP-aware agent.
JavaScript★ 4↓ 7,235/月2026年9月6日
MIT2026年9月6日 · 指标 2.10.0
Packagist
29存在风险健康指数
enlightn/security-checker
A PHP dependency vulnerabilities scanner based on the Security Advisories Database.
PHP★ 339↓ 277.7K/月2026年8月13日
MIT2026年8月13日 · 指标 2.10.0
npm
28存在风险健康指数
react-atomic/modality
该仓库未发布描述。
TypeScript★ 0↓ 10K/月2026年7月17日
无许可证2026年7月17日 · 指标 2.10.0
Go
19危急健康指数
ps1-blacklist/wpfather
WPFather - WordPress Vulnerability Scanner & Security Recon Tool with 16 Modules | Zero Config Single Binary
Go★ 02026年7月16日
自定义许可证2026年7月16日 · 指标 2.10.0