Skip to content

Tools

Vulnerability Scanning tools 11 tools

Submit tool
Category
Health

11 tools

msaad00/agent-bom Healthy open source

AI supply chain security scanner with 18 MCP tools. Auto-discovers 20 MCP clients, scans dependencies for CVEs (OSV/NVD/EPSS/CISA KEV), maps blast radius from vulnerabilities to exposed credentials and tools, runs CIS benchmarks, generates CycloneDX/SPDX SBOMs, and enforces compliance across OWASP LLM Top 10, MITRE ATLAS, NIST AI RMF, and EU AI Act.

trufflehog Healthy open source

Find, verify, and analyze leaked credentials

Checkov Healthy open source

Prevent cloud misconfigurations and find vulnerabilities during build-time in infrastructure as code, container images and open source packages with Checkov by Bridgecrew.

is-website-vulnerable Healthy open source

finds publicly known security vulnerabilities in a website's frontend JavaScript libraries

clamav Healthy open source

ClamAV - Documentation is here: https://docs.clamav.net

grype Healthy open source

A vulnerability scanner for container images and filesystems

Trivy Healthy open source

Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more

gebalamariusz/cloud-audit Healthy open source

Open-source AWS security scanner with attack chain detection, breach cost estimation, and copy-paste remediation (CLI + Terraform). 47 checks, 16 attack chain rules. First free standalone AWS security MCP server.

Tsunami Healthy open source

Tsunami is a general purpose network security scanner with an extensible plugin system for detecting high severity vulnerabilities with high confidence.

Pompelmi Healthy open source

Open-source file upload security for Node.js. Scan files before storage to detect malware, MIME spoofing, and risky archives.

Secrover Healthy open source

Open-source security reports — no paywalls, just actionable insights.

Beta — feedback welcome: [email protected]