Tag: devsecops 47 packages with this tag
« Back to VersTracker  |  All Categories  |  All Tags  |  Related: security cli compliance static-analysis secrets-detection vulnerability-scanning containers sast sbom pentesting
Package Description Version
grype formula 11,269 Vulnerability scanner for container images and filesystems 0.104.2
kube-bench formula 7,863 Checks Kubernetes deployment against security best practices (CIS Benchmark) 0.14.1
cherrybomb formula 1,231 Tool designed to validate your spec
malcontent formula 635 Supply Chain Attack Detection, via context differential analysis and YARA 1.18.3
threatcl formula 440 Documenting your Threat Models with HCL 0.3.0
cycode formula 97 Boost security in your dev lifecycle via SAST, SCA, Secrets & IaC scanning 3.8.1
authz0 formula Automated authorization test tool 1.1.2
bagel formula CLI to audit posture and evaluate compromise blast radius
bandit formula Security-oriented static analyser for Python code 1.9.2
bomber formula Scans Software Bill of Materials for security vulnerabilities 0.5.1
clair formula Vulnerability Static Analysis for Containers 4.8.0
cliam formula Cloud agnostic IAM permissions enumerator 2.2.0
driftwood formula Private key usage verification 1.0.1
ggshield formula Scanner for secrets and sensitive data in code 1.45.0
git-secrets formula Prevents you from committing sensitive information to a git repo
gitleaks formula Audit git repos for secrets 8.30.0
gokart formula Static code analysis for securing Go code
gosec formula Golang security checker
govulncheck formula Database client and tools for the Go vulnerability database
intercept formula Static Application Security Testing (SAST) tool 1.0.12
kubehound formula Tool for building Kubernetes attack paths 1.6.7
lacework-cli formula CLI for managing Lacework 2.8.4
lw-scanner cask Lacework inline scanner 0.27.9
mantra formula Tool to hunt down API key leaks in JS files and pages
minder formula CLI for interacting with Stacklok's Minder platform 0.1.1
noir formula Attack surface detector that identifies endpoints by static analysis 0.25.1
noseyparker formula Finds secrets and sensitive information in textual data and Git history
opa formula Open source, general-purpose policy engine 1.12.1
opensca-cli formula OpenSCA is a supply-chain security tool for security researchers and developers
parliament formula AWS IAM linting library 1.6.4
regula formula Checks infrastructure as code templates using Open Policy Agent/Rego 3.2.1
retire formula Scanner detecting the use of JavaScript libraries with known vulnerabilities 5.4.0
roxctl formula CLI for Stackrox 4.9.2
saf-cli formula CLI for the MITRE Security Automation Framework (SAF) 1.5.3
safety formula Checks Python dependencies for known vulnerabilities and suggests remediations 3.7.0
scorecard formula Security health metrics for Open Source 5.4.0
semgrep formula Easily detect and prevent bugs and anti-patterns in your codebase 1.146.0
sigma-cli formula CLI based on pySigma 2.0.0
slsa-verifier formula Verify provenance from SLSA compliant builders 2.7.1
sonarqube-lts formula Manage code quality
squealer formula Scans Git repositories or filesystems for secrets in commit histories
syft formula CLI for generating a Software Bill of Materials from container images 1.39.0
tartufo formula Searches through git repositories for high entropy strings and secrets 5.0.2
terrascan formula Detect compliance and security violations across Infrastructure as Code
two-ms formula Detect secrets in files and communication platforms 4.9.0
vexctl formula Tool to create, transform and attest VEX metadata
wizcli cask CLI for interacting with the Wiz platform 1.31.0