Skip to content
#

devsecops

Here are 93 public repositories matching this topic...

Detect npm packages compromised in the Shai-Hulud 2.0 supply chain attack (Nov 2025). Scans for 790+ malicious packages, suspicious scripts, TruffleHog activity, SHA1HULUD runners, and secrets exfiltration. GitHub Action with SARIF support.

  • Updated Dec 13, 2025
  • TypeScript

开源的代码审计平台 - 支持项目级/文件级/片段级审计,支持 10+ LLM、自定义规则集(内置OWASP Top 10 规则集)、自定义提示词模板、可解释分析、PDF 报告导出。支持ollama私有部署模型,代码可不出内网。

  • Updated Dec 10, 2025
  • TypeScript

Anomalyze is an advanced AI-powered web security scanner that detects vulnerabilities, misconfigurations, and anomalies in web applications. It integrates ML-based analysis, CVE intelligence, and automated audits to deliver comprehensive, real-time security insights through an intuitive, analytics-driven dashboard for developers and security teams.

  • Updated Dec 6, 2025
  • TypeScript

Improve this page

Add a description, image, and links to the devsecops topic page so that developers can more easily learn about it.

Curate this topic

Add this topic to your repo

To associate your repository with the devsecops topic, visit your repo's landing page and select "manage topics."

Learn more