Self-hosted GitHub App that publishes a required check accepting human CODEOWNER approval or approval from explicitly enrolled GitHub Apps, with organization and repository policies; pre-release and shadow-mode only.
Open source. Open possibilities.
Discover quality open-source projects, submit projects anonymously, and claim and edit your own project.
A little curiosity. A world of open source.
THE FIRST COLLECTIONA curated collection of Web Application Security payloads and bypasses for pentesting and CTFs, covering vulnerability descriptions, exploitation techniques, and Burp Intruder file sets.
Terraform provider for managing SAP Cloud Identity Services resources via infrastructure-as-code, with OpenTofu compatibility.
Community-maintained collection of one-command install scripts for Proxmox VE. It deploys hundreds of self-hosted services as LXC containers or VMs, offering Default and Advanced setup modes plus a post-install helper for updates and configuration.
Strix is an open-source AI-powered penetration testing tool that uses autonomous agents to identify, validate, and fix application vulnerabilities through real proof-of-concept exploits.
Linux security hardening tool written in Rust that scans for misconfigurations, applies fixes with rollback, and maps findings to ten compliance frameworks across multiple distributions.
VibeCoder is an automated GitHub issue worker that monitors repositories, picks up issues, writes code using AI agents (Claude, Codex, Gemini), runs quality checks, and opens pull requests. It supports review feedback loops, self-healing, and cost optimization.
Automated IPsec VPN server setup script supporting IPsec/L2TP, Cisco IPsec, and IKEv2. Works on Ubuntu, Debian, CentOS/RHEL, Alpine, and Raspberry Pi OS. Includes client profiles and management scripts.
RESOLVE is an LLVM-based security tool designed for automated vulnerability triage and remediation. It uses enhanced software bills-of-materials (eSBOMs) and program analysis to identify and address CVEs.
Gitleaks is an open-source secret detection tool for scanning git repositories, directories, files and stdin for passwords, API keys and tokens, with pre-commit hook and CI action integrations.
TruffleHog is a Go-based CLI that scans Git, GitHub, GitLab, Docker, S3, GCS, filesystems, CI logs and other sources for leaked credentials; it classifies, verifies and analyzes secrets, with JSON/SARIF output.
29 agent skills for firewall and network-security work: parsing, auditing, converting and diffing Cisco, Fortinet, Palo Alto and Juniper SRX configs, SRX operational playbooks, compliance and STIG evidence mapping, plus Proxmox deployment guides.
Obtainium is an Android application that allows users to install and update apps directly from their original release pages, providing notifications for new versions.