Skip to content
#

devsecops

Here are 226 public repositories matching this topic...

LunaSec - Dependency Security Scanner that automatically notifies you about vulnerabilities like Log4Shell or node-ipc in your Pull Requests and Builds. Protect yourself in 30 seconds with the LunaTrace GitHub App: https://github.com/marketplace/lunatrace-by-lunasec/

  • Updated May 2, 2024
  • TypeScript

AI-powered offensive security agent with 7,300+ actionable security skills. Autonomous pentesting powered by MITRE ATT&CK (2,000+ Atomic tests), CIS Benchmarks (1,500+ controls), OWASP, NIST. Lazy-loading, zero context pollution. Your AI red team.

  • Updated Apr 29, 2026
  • TypeScript
envilder

🚀 Envilder centralizes cloud secrets (AWS SSM, Azure Key Vault) into your app runtime. CLI, GitHub Action, and native SDKs for .NET, Python, and more. Zero vendor lock-in, no SaaS middleman. Your secrets stay in your cloud.

  • Updated Apr 27, 2026
  • TypeScript

Detect npm packages compromised in the Shai-Hulud 2.0 supply chain attack (Nov 2025). Scans for 790+ malicious packages, suspicious scripts, TruffleHog activity, SHA1HULUD runners, and secrets exfiltration. GitHub Action with SARIF support.

  • Updated Apr 29, 2026
  • TypeScript

Improve this page

Add a description, image, and links to the devsecops topic page so that developers can more easily learn about it.

Curate this topic

Add this topic to your repo

To associate your repository with the devsecops topic, visit your repo's landing page and select "manage topics."

Learn more