Unofficial hardened Linux packaging of Anthropic's official Claude Desktop .deb, adding enforced bubblewrap sandboxing, secret masking, supply-chain pinning, and RPM/Arch builds.
Open source. Open possibilities.
Discover quality open-source projects, submit projects anonymously, and claim and edit your own project.
A little curiosity. A world of open source.
THE FIRST COLLECTION29 agent skills for firewall and network-security work: parsing, auditing, converting and diffing Cisco, Fortinet, Palo Alto and Juniper SRX configs, SRX operational playbooks, compliance and STIG evidence mapping, plus Proxmox deployment guides.
Iris is a local-first MCP server that scores AI agent runs for quality, safety, and cost using 20 built-in deterministic rules, an optional LLM judge, and a web dashboard — all on your machine with no account or telemetry.
GitHub profile README for Sachin, a self-described applied AI architect and engineer. It points to selected open-source projects covering agents, retrieval (RAG), evaluation and reliability tooling, and lists skills, working style, engagement terms and contact details.
An experimental security extension for the Model Context Protocol (MCP) providing runtime evidence for tool calls via HTTP message signatures and mTLS.
Nirmata Runtime is a Kubernetes-native runtime enforcement tool using eBPF and Kyverno-style CEL policies to monitor and block file opens, execs, network traffic, protocols, and DNS queries for AI workloads.
DB-GPT is an open-source agentic AI data assistant that connects to databases, spreadsheets and knowledge bases, autonomously writes SQL and Python code, runs reusable skills in sandboxed environments, and turns analysis into charts, dashboards and reports.
AgentLeak is an open-source privacy testing tool for AI agents. It detects data leaks across tool calls, memory, and logs using a local Python SDK, CLI, and MCP tools, providing redacted reports and CI gates without cloud dependencies.
Web of Flaws is a structured, markdown-first catalog of web security vulnerabilities and secure code replacements designed for developers, security engineers, and AI coding agents.
MCP Arcade is a command-line testing tool that runs a small catalog of experiments, called atoms, against MCP servers, judging results by the JSON-RPC wire and sandbox file changes rather than by tool descriptions or model prose.
PyFlow is a research-oriented static analysis framework for Python, offering IRs, program analysis, optimization passes, security checking, supply-chain analysis, and CLI/LSP/MCP tooling.
SkillGuard is a local-first security scanner for coding-agent skills and MCP servers. It detects prompt injection, credential theft, data exfiltration and unsafe downloads, then blocks unscanned or risky tools via Claude Code and Codex hooks.
TerraSecure is an ML-powered security scanner for Terraform and HCL Infrastructure as Code across AWS, Azure, and GCP. It detects cloud misconfigurations at build time using a multi-cloud rule engine, an XGBoost ML model for AWS, and AI analysis for contextual remediation, integrating with CI/CD workflows.
Local-first, zero-egress forensics toolkit for detecting and sanitizing AI watermarks: Unicode steganography visualization, statistical text detectors, C2PA/EXIF/XMP cleaning, SARIF/CI audit and MCP agent tools.
Antiserum is a local, open-source CLI scanner for text training data that flags possible planted poison such as trigger n-grams, label flips, duplicate injects, paraphrase overweight, hidden Unicode, instruction overrides, and known signature matches. It runs offline, writes deterministic receipts, supports CI/SARIF, and lets users confirm findings and contribute public signatures.
Quivr is an opinionated RAG framework for integrating generative AI into applications. It supports any LLM, vectorstore, and file type, enabling developers to build a 'second brain' with minimal code.
Shannon is an open-source, autonomous AI pentester for web applications and APIs. It analyzes your source code to find attack paths, then executes real exploits against a running app, reporting only vulnerabilities proven with a working proof of concept.
Zentra is an AI-powered CLI security scanner for developers, combining SAST, DAST, supply-chain, API, and IaC analysis with LLM orchestration, CI integration, and an authorized pentest mode.