Open-source tool library
Filter open-source tools and software by use case, platform, deployment, and open-source status.
More filters
vault
An open-source security platform for centralized management, encryption, and auditing of sensitive credentials like API keys, passwords, and certificates.
hashicorp · Active in the last 30 days
openbao
An open-source secrets management system for storing, distributing, rotating, and controlling access to secrets, certificates, and keys.
openbao · Active in the last 30 days
fleet
A device-management platform for IT and security teams covering MDM, software deployment, patching, inventory queries, and compliance across desktop and mobile operating systems.
fleetdm · Active in the last 30 days
agent-governance-toolkit
A governance toolkit for AI agents that adds policy checks, identity, audit trails, sandboxing, and SRE controls across multiple agent frameworks.
microsoft · Active in the last 30 days
syzkaller
An unsupervised, coverage-guided kernel fuzzer that supports multiple operating systems.
google · Active in the last 30 days
clusterfuzz
A scalable fuzzing infrastructure developed by Google for automating the discovery of security vulnerabilities and stability issues in software.
google · Active in the last 30 days
cli
Command-line tool to scan and monitor software projects for security vulnerabilities.
snyk · Active in the last 30 days
osv.dev
Open source vulnerability database and triage service providing a unified query API and web interface
google · Active in the last 30 days
prismor
A self-hosted runtime security control plane for AI coding agents, providing real-time monitoring, blocking, and human-in-the-loop approval for tool calls.
PrismorSec · Active in the last 30 days
VirusDetector
A Manifest V3 Chrome/Edge extension that detects Silver Fox Trojan phishing and spoofed websites using multi-rule scoring and download blocking.
Lolitide
CVE Lite CLI
A local-first JavaScript/TypeScript lockfile vulnerability scanner focused on actionable remediation, with CI, SARIF, HTML reports, and offline advisory data.
OWASP · Active in the last 30 days