03 Aug 2026
Python
★ 13
Tracehound is a Linux DFIR tool designed to parse host artifacts and compile them into a unified, UTC-normalized timeline, facilitating the analysis of attacker behavior during forensic investigations. It processes log files, mounted images, and evidence folders, employing detection rules with MITRE ATT&CK mappings to convert raw events into actionable findings. Notable features include exporting results in various formats such as JSON, HTML, or CSV, and capabilities for maintaining a timeline in SQLite for extensive datasets.
03 Aug 2026
Shell
★ 16
The TMAS Scan Action is a GitHub Action that integrates the TMAS (TrendAI™ Artifact Scanner) CLI tool to scan artifacts in the GitHub workspace for open-source vulnerabilities, malware, or sensitive secrets. Notable features include detailed scan results displayed in action logs, summary reports in job summaries, and automated comments on related pull requests, enhancing CI/CD pipelines with security assessments for files, directories, and container images.
03 Aug 2026
Vue
★ 13
Super Hash is a cross-platform file integrity verifier designed for generating and validating file hashes (MD5, SHA) with a focus on speed and a minimal footprint. Notable features include support for both Windows and macOS, a web app version, custom themes, and adherence to Material Design 3 principles, making it user-friendly and aesthetically pleasing. The tool is lightweight, with desktop installations around 3MB and web resources about 1MB, and offers both dark mode and PWA capabilities.
03 Aug 2026
JavaScript
★ 849
SPR (Secure Programmable Router) provides a secure networking solution that facilitates adaptive, micro-segmented network management for WiFi devices, remote VPN access, and wired systems. Key features include multi-PSK support with WPA3, policy-based routing for enhanced security, advanced DNS capabilities with per-device rules, and a user-friendly interface accessible via a React-based web app and iOS application. This tool is optimized for a wide range of Linux systems, leveraging Docker for interoperability and offering comprehensive observability features such as traffic insights and health monitoring.
03 Aug 2026
JavaScript
★ 12
Soterios is an open-source security and system maintenance suite designed for Windows, enabling users to scan files, inspect processes, audit system settings, manage firewall configurations, and assess password strength while ensuring privacy through local-first operation. Notable features include a comprehensive security dashboard, malware scanning powered by ClamAV, real-time protection controls, and detailed reports on system health and security assessments. The tool emphasizes user privacy by operating without telemetry or analytics, performing all analysis locally on the user's machine.
03 Aug 2026
Python
★ 104
sigwood is a local-first command-line tool designed for threat hunting by analyzing existing log files from sources such as Zeek, DNS servers, and syslogs. Its primary use case is to detect anomalies, including beaconing, suspicious DNS queries, and unusual activity within a user’s network, without requiring any external deployment or configuration. Notable features include its simple installation process, a suite of detectors for various events, and the ability to run directly on logs without needing to send data to the cloud.
03 Aug 2026
Python
★ 17
ShareClean is a Python CLI tool designed for sanitizing developer outputs such as logs, configuration snippets, and terminal outputs before sharing them in public or semi-public environments. Notable features include local processing without the need for network calls, customizable redaction patterns, and a robust detection system that identifies and replaces sensitive information like API keys and passwords while preserving useful context. This enhances security by ensuring that potentially sensitive data is adequately managed prior to publication.
03 Aug 2026
Rust
★ 10
randompass is a static password generator that produces 20-character passwords with a combination of lower and uppercase letters as well as special characters enabled by default, simplifying the process of creating complex passwords. The tool allows users to customize the password length and can be easily installed via Cargo or used with precompiled binaries and Docker images. Notable features include guaranteed complexity in generated passwords and the ability to disable specific character categories if desired.
03 Aug 2026
Python
★ 12
RA3G-Agent is a policy-aware RAG (Retrieval-Augmented Generation) multi-agent AI system designed for document querying without the need for external APIs. It features a robust architecture comprising a Retriever, Reasoning, and Governance agents, enabling automatic filtering of sensitive information and maintaining session memory for context. Key capabilities include a user-friendly web interface, real-time logging, automatic PDF uploads for vector storage, and full programmatic access through a REST API built with FastAPI.
03 Aug 2026
Python
★ 28
pwpush CLI is a command-line tool designed for securely sharing sensitive information such as passwords and files via self-destructing links. Its primary use case is to facilitate the secure transmission of secrets without relying on traditional communication methods like email or Slack, and it provides notable features including automatic expiration controls, integration for file uploads, and a secured request feature for soliciting sensitive data from others in a protected manner.
03 Aug 2026
JavaScript
★ 183
Osprey is a free, open-source browser extension that enhances online security by protecting users from phishing, malware, and other threats through real-time site verification against over 20 threat-intelligence providers. It features a privacy-respecting architecture that anonymizes user data and allows customization of protection settings, making it suitable for both individual and business use. Notably, Osprey never collects or sells browsing data, ensuring user privacy.
03 Aug 2026
Nix
★ 32
`nix-secrets` is a lightweight secret management solution for NixOS that integrates seamlessly into the Nix module system, eliminating the need for external configuration files. It utilizes the age encryption format for secure secret storage and management, featuring templates, placeholders, and a simple CLI interface for key generation and secret editing. Notably, `nix-secrets` minimizes intermediate states and avoids public key leakage, offering a compact binary footprint compared to existing solutions like `sops-nix` or `agenix`.
03 Aug 2026
Nim
★ 12
Nim Packages Security Audit is a fully automated tool designed to perform security audits on Nim packages and the Nim installation process. Utilizing GitHub Actions and PTrace, it conducts daily audits categorized by package type, allowing users to identify security vulnerabilities efficiently. Notable features include a structured categorization system and automation integrated with cron jobs, enhancing ease of use and continuous monitoring.
03 Aug 2026
C
★ 16
Nakamoto is a two-layer encryption tool designed to secure sensitive data and cryptocurrency private keys. It offers functionalities for generating random passwords, as well as encrypting and decrypting files, making it suitable for users seeking to enhance their data protection measures. Notable features include its dependency on OpenSSL for cryptographic operations and straightforward command-line usage for various encryption tasks.
03 Aug 2026
JavaScript
★ 141
Mozilla's HTTP Observatory is a security assessment tool that evaluates websites for security-relevant HTTP headers, providing structured results in JSON format. Its primary use case includes both one-off scans via command line and API integration for continuous monitoring within CI pipelines. Notable features include support for customizable request headers, a local API server with persistence via PostgreSQL, and detailed scan results that reflect the security grade and compliance of tested websites.
03 Aug 2026
TypeScript
★ 16
LucidSSH is a user-friendly SSH client for Windows designed for less experienced users managing one or two servers, emphasizing ease of understanding and safety. Notable features include a command safety guardian that warns against potentially destructive commands, an error detector that provides explanations for failed commands, a breadcrumb navigation system displaying server status, and a local command history with note-taking functionality, all while ensuring complete data privacy by operating without cloud integration.
03 Aug 2026
Go
★ 93
Kubesplaining is an open-source command-line interface tool designed for Kubernetes security assessments, focused on analyzing privilege escalation paths within a live cluster or a snapshot. Unlike traditional scanners, it constructs a multi-hop RBAC privilege escalation graph that illustrates how non-system subjects can escalate their privileges to critical sinks, providing detailed remediation for each finding. Its outputs include prioritized reports in HTML, JSON, CSV, and SARIF formats, making it suitable for human review or integration into CI/CD workflows.
03 Aug 2026
Kotlin
★ 278
IYPS is a password strength evaluation application that analyzes and rates the robustness of user-provided passwords, estimates potential cracking times, and delivers actionable advice for enhancing password security. It features a random password and passphrase generator, operates entirely offline, and is designed with a modern Material You interface, supporting both light and dark themes without ads or personal data collection.
03 Aug 2026
PHP
★ 60
Intercept is a modular middleware framework designed for the Laravel AI SDK, providing essential guardrails across security, observability, performance, and guidance for AI agents. By acting as an intermediary, it enhances prompt management before sending requests to AI providers, ensuring improved oversight and control. Key features include a suite of reusable middleware components, comprehensive documentation, and ongoing roadmap updates for future enhancements.
03 Aug 2026
Python
★ 373
Humble is a fast and security-oriented HTTP headers analyzer designed to assess the presence and efficacy of security headers in web applications. Its primary use case is to enhance security by identifying missing or misconfigured headers, making it a valuable tool for cybersecurity professionals and web developers. Notable features include compatibility with Python 3.11 or higher, integration with the DefectDojo platform for result parsing, and inclusion in Kali Linux, making it readily accessible for penetration testing workflows.
03 Aug 2026
Rust
★ 168
Hexora is a static analysis tool for Python code that identifies malicious patterns and harmful constructs through a combination of rule-based analysis and machine learning scoring. Its primary use cases include auditing project dependencies for supply chain vulnerabilities, detecting malicious scripts on public platforms, and analyzing compromise indicators from previous security incidents. Notable features include high-confidence scoring for detected threats, customizable audit options (such as excluding specific rule codes), and the ability to audit entire directories or virtual environments.
03 Aug 2026
TypeScript
★ 121
Hashpass is a unique password manager that generates passwords on the fly using a universal password and the domain of the website, ensuring that no passwords are stored. Its primary use case is to provide users with a secure, unique password for each site while only requiring them to memorize a single password. Notable features include the use of a cryptographic hash function for password generation and the convenience of a browser extension that integrates seamlessly with web pages.
03 Aug 2026
TypeScript
★ 587
GraphQL Armor is a customizable security middleware designed for various GraphQL server engines, including Apollo Server and GraphQL Yoga, as well as additional compatibility through the Envelop plugin system. Its primary use case is to enhance the security of GraphQL APIs by providing a robust, straightforward integration that can adapt to various environments. Notable features include support for multiple GraphQL frameworks, making it versatile for enterprise-level security implementations.
03 Aug 2026
Go
★ 2140
ghorg is a command-line tool that allows users to efficiently clone all repositories from an organization or user account on platforms like GitHub, GitLab, and Bitbucket into a designated directory. It features capabilities for repository filtering, backup creation, and synchronization with remote repositories, making it suitable for tasks such as audits, onboarding, and local codebase searches. Notably, ghorg can also automate cloning tasks and track metrics over time.
03 Aug 2026
★ 13
Awesome Cryptography is a comprehensive repository that curates a variety of cryptography resources, tools, and frameworks, categorized for ease of access. Its primary use case is as a centralized knowledge base for cryptographic theory, algorithms, and practical tools across multiple programming languages. Notable features include an extensive listing of symmetric and asymmetric encryption algorithms, hash functions, and various educational materials, making it an invaluable resource for developers and researchers in the field of cryptography.