Tools
Security tools 17 tools
17 tools
AI supply chain security scanner with 18 MCP tools. Auto-discovers 20 MCP clients, scans dependencies for CVEs (OSV/NVD/EPSS/CISA KEV), maps blast radius from vulnerabilities to exposed credentials and tools, runs CIS benchmarks, generates CycloneDX/SPDX SBOMs, and enforces compliance across OWASP LLM Top 10, MITRE ATLAS, NIST AI RMF, and EU AI Act.
The authentication glue you need.
Prevent cloud misconfigurations and find vulnerabilities during build-time in infrastructure as code, container images and open source packages with Checkov by Bridgecrew.
A next-gen FOSS self-hosted unified zero trust secure access platform that can operate as a remote access VPN, a ZTNA platform, API/AI/MCP gateway, a PaaS, an ngrok-alternative and a homelab infrastructure.
Fully transparent SSH, HTTPS, Kubernetes, MySQL and Postgres bastion/PAM that doesn't need additional client-side software
The easiest, and most secure way to access and protect all of your infrastructure.
Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more
Open-source and next-generation Web Application Firewall (WAF)
Highly customizable SSH server with several ways to authorize a user and options where and how to execute a user's session.
The Single Sign-On Multi-Factor portal for web apps, now OpenID Certified™
Lightweight SIP proxy, location server, and registrar for a reliable and scalable SIP infrastructure.
Cerbos is the open core, language-agnostic, scalable authorization solution that makes user permissions and authorization simple to implement and manage by writing context-aware access control policies for your application resources.
unlock: :unlock: Find secrets and passwords in container images and file systems :unlock: :unlock
Open Source Cloud Native Application Protection Platform (CNAPP)
A helm plugin that help manage secrets with Git workflow and store them anywhere
open-appsec is a machine learning security engine that preemptively and automatically prevents threats against Web Application & APIs. This repo include the main code and logic.
Web-based Traffic and Security Network Traffic Monitoring