Stars
AI Agent Governance Toolkit — Policy enforcement, zero-trust identity, execution sandboxing, and reliability engineering for autonomous AI agents. Covers 10/10 OWASP Agentic Top 10.
AI agents running research on single-GPU nanochat training automatically
AI Bill of Materials through source code scanning
Deep GCP security hardening via automated triage and state-aware IaC. Built to power rapid, agile task-force engagements and remediate complex brownfield environments at scale.
A reverse proxy that provides authentication with Google, Azure, OpenID Connect and many more identity providers.
Generate Pydantic v2 models, dataclasses, TypedDict, and msgspec.Struct from OpenAPI, JSON Schema, GraphQL, Avro, Protobuf, and raw JSON/YAML/CSV.
A Windows Explorer right-click context menu that helps remove passwords for PDFs in the selected folder.
A framework for managing and maintaining multi-language pre-commit hooks.
Scan MCP servers for potential threats & security findings.
Streamlit — A faster way to build and share data apps.
Explain complex systems using visuals and simple terms. Help you prepare for system design interviews.
🚀 The fast, Pythonic way to build MCP servers and clients.
Expose your FastAPI endpoints as Model Context Protocol (MCP) tools, with Auth!
Simultaneous speech-to-text models
All Algorithms implemented in Python
Prowler is the world’s most widely used open-source cloud security platform that automates security and compliance across any cloud environment.
CISO Assistant is a one-stop-shop GRC platform for Risk Management, AppSec, Compliance & Audit, TPRM, BIA, Privacy, and Reporting. It supports 150+ global frameworks with automatic control mapping,…
A hands-on, real-world GRC lab series built for beginners and curious pros alike. No PDFs. No gatekeeping. Just practical labs for understanding controls, policy as code, and continuous authorization.
A high performance blog template for the 11ty static site generator.
A collection of sample agents built with Agent Development Kit (ADK)
Analyzes resource usage and performance characteristics of running containers.
Google's Engineering Practices documentation
Vanir is a source code-based static analysis tool that automatically identifies the list of missing security patches in the target system. By default, Vanir pulls up-to-date CVEs from Open Source V…
This project hosts security advisories and their accompanying proof-of-concepts related to research conducted at Google which impact non-Google owned code.
🎉 Triage Party: massively multi-player GitHub triage 🎉
Agent2Agent (A2A) is an open protocol enabling communication and interoperability between opaque agentic applications.