Evidence-based static repository trust, security, and maintainability scanner
-
Updated
Aug 16, 2026 - C#
Evidence-based static repository trust, security, and maintainability scanner
Practical security risk scanner for open-source maintainers, focused on GitHub Actions, secrets, and repository hygiene.
Open-source Cloud Run Jobs worker for Nuclei + Playwright DAST. Findings to Supabase. MIT.
Zero-dependency PowerShell agent for Windows endpoint posture: IIS discovery, 15 hardening checks, software inventory, heartbeat. MIT.
A lightweight CLI tool to scan and evaluate open-source projects across health, security, and sustainability.
Stop AI slop PRs. Auto-triage issues. Score contributor reputation. One GitHub Action for OSS maintainers.
FastMCP server that provides comprehensive security analysis for software packages across multiple ecosystems. It integrates seamlessly with Claude Desktop to provide AI-powered security evaluation capabilities.
Paste a leaked API key and get a full capability map, computed severity, and a disclosure-ready security report — deterministic, read-only, zero AI/LLM.
To associate your repository with the oss-security topic, visit your repo's landing page and select "manage topics."