Syft
—Generate SBOMs from containers and source code.
Shift-left scanning in CI/CD pipelines.
75 tools indexed
Generate SBOMs from containers and source code.
Cloud-native secrets manager.
eBPF-based runtime security.
Cross-platform data-protection framework.
Open-source cloud-native protection platform.
Container and IaC vulnerability scanner.
Find leaked credentials at scale.
Google's network vulnerability scanner.
Agent-less Linux vulnerability scanner.
Catch malicious AUR packages before makepkg builds them.
Cloud-native security and compliance from build to runtime.
Pre-commit secret detection.
LLM vulnerability scanner.
Golang security checker.
Google's general-purpose fuzzer.
Audit Keycloak configuration for security misconfigurations
CIS benchmarks for Kubernetes.
Detect malicious capabilities in code, binaries and containers.
Secure in-memory handling of secrets for Rust
Orchestrate AI agents to find vulnerabilities in code
Red-team prompts, agents and RAGs.
AI pentest tool that re-runs every exploit to verify it.
Lockfile scanner for known-compromised dependencies.
Private X.509 + SSH CA + ACME server.