Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more
-
Updated
Aug 21, 2026 - Go
8000
Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more
Find secrets with Gitleaks 🔑
Find, verify, and analyze leaked credentials
Database governance built for humans and agents — controlling changes and access across every major database.
Netmaker makes networks with WireGuard. Netmaker automates fast, secure, and distributed virtual networks.
Zero-ETL, infinite possibilities. Live query APIs, code & more with SQL. No DB required.
Tfsec is now part of Trivy
Detect compliance and security violations across Infrastructure as Code to mitigate risk before provisioning cloud native infrastructure.
🔓 🔓 Find secrets and passwords in container images and file systems 🔓 🔓
ContainerSSH: Launch containers on demand
Code security scanning tool (SAST) to discover, filter and prioritize security and privacy risks.
Find leaked secrets everywhere.
đź§µ CLI tool for directly patching container images!
Fast GitHub recon tool. Scans for leaked secrets across all of GitHub, not just known repos and orgs. Support for GitHub dorks.
🔍🔍 Malware scanner for cloud-native, as part of CI/CD and at Runtime 🔍🔍
OpenSCA is an open source software supply chain security solution that supports the detection of open source dependencies, vulnerabilities and license compliance with a widely noticed accuracy by the community.
Protect against malicious open source packages 🤖
secureCodeBox (SCB) - continuous secure delivery out of the box
Detect and remediate misconfigurations and security risks across all your GitHub and GitLab assets
kube-scan: Octarine k8s cluster risk assessment tool
Add a description, image, and links to the devsecops topic page so that developers can more easily learn about it.
To associate your repository with the devsecops topic, visit your repo's landing page and select "manage topics."