Skip to content
View ChrisMcKee's full-sized avatar

Organizations

@h5bp

Block or report ChrisMcKee

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Content in all repositories owned by your account will be closed.
Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Stars

scanners

38 repositories

Vulnerability Patterns Detector for C# and VB.NET

C# 974 161 Updated Jul 8, 2024

A self-hosted Fuzzing-As-A-Service platform

C# 2,823 202 Updated Nov 1, 2023

CATS is a REST API Fuzzer and negative testing tool for OpenAPI endpoints. CATS automatically generates, runs and reports tests with minimum configuration and no coding effort. Tests are self-heali…

Java 1,371 90 Updated Sep 15, 2026

Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling collaboration to tackle trending vulnerabilities on the …

Go 31,496 3,892 Updated Sep 24, 2026

A versatile and portable proxy for capturing, manipulating, and replaying HTTP/HTTPS traffic on the go.

Go 3,070 269 Updated Sep 14, 2026

Performing security tests inside your CI

Go 596 135 Updated May 15, 2024

OWASP dependency-check is a software composition analysis utility that detects publicly disclosed vulnerabilities in application dependencies.

Java 7,705 1,422 Updated Sep 25, 2026

Integrates Dependency-Check reports into SonarQube

Java 694 147 Updated Sep 23, 2026

Github action to run dependency check

Dockerfile 107 39 Updated Dec 10, 2025

Dependency-Track is an intelligent Component Analysis platform that allows organizations to identify and reduce risk in the software supply chain.

Java 4,235 817 Updated Sep 24, 2026

scanner detecting the use of JavaScript libraries with known vulnerabilities. Can also generate an SBOM of the libraries it finds.

JavaScript 4,179 442 Updated Sep 21, 2026

a tool to perform static analysis of known vulnerabilities, trojans, viruses, malware & other malicious threats in docker images/containers and to monitor the docker daemon and running docker conta…

Python 1,250 176 Updated May 23, 2023

OpenClarity is an open source platform built to enhance security and observability of cloud native applications and infrastructure

Go 1,459 174 Updated May 25, 2026

Kubernetes object analysis with recommendations for improved reliability and security. kube-score actively prevents downtime and bugs in your Kubernetes YAML and Charts. Static code analysis for Ku…

Go 3,104 203 Updated May 20, 2026

Open-Source Unified Vulnerability Management, DevSecOps & ASPM

Python 4,957 1,951 Updated Sep 25, 2026

A Burp plugin to export findings to DefectDojo

Python 32 22 Updated Nov 7, 2023

ASOC, ASPM, DevSecOps, Vulnerability Management Using ArcherySec.

JavaScript 2,475 526 Updated Jun 11, 2025

drHEADer helps with the audit of security headers received in response to a single request or a list of requests.

Python 111 28 Updated Jan 8, 2025

A command-line reference-implementation client for SSL Labs APIs, designed for automated and/or bulk testing.

Go 1,768 248 Updated Aug 5, 2024

Code security scanning tool (SAST) to discover, filter and prioritize security and privacy risks.

Go 2,750 152 Updated Sep 21, 2026

A vulnerability scanner for container images and filesystems

Go 12,924 887 Updated Sep 24, 2026

A source code analyzer built for surfacing features of interest and other characteristics to answer the question 'What's in the code?' quickly using static analysis with a json based rules engine. …

C# 4,393 365 Updated Sep 15, 2026

CLI tool and library for generating a Software Bill of Materials from container images and filesystems

Go 9,606 968 Updated Sep 24, 2026

httpx is a fast and multi-purpose HTTP toolkit that allows running multiple probes using the retryablehttp library.

Go 10,426 1,103 Updated Sep 23, 2026

Open Source Cloud Native Application Protection Platform (CNAPP)

TypeScript 5,320 630 Updated Jun 1, 2026

m9sweeper is a free and easy kubernetes security platform.

TypeScript 265 25 Updated Jul 12, 2024

GitHub Action for creating software bill of materials using Syft.

TypeScript 258 45 Updated Sep 18, 2026

Creates CycloneDX Bill of Materials (BOM) for your projects from source and container images. Supports many languages and package managers. Integrate in your CI/CD pipeline with automatic submissio…

JavaScript 1,077 261 Updated Sep 24, 2026

A collection of various awesome lists for hackers, pentesters and security researchers

121,154 10,780 Updated Jul 26, 2026

Application Security Automation

Ruby 527 110 Updated Sep 5, 2023