Kubernetes-native policy engine.
Outils pour devsecops
Shift-left scanning in CI/CD pipelines.
75 tools indexed
Security automation across the compliance data lifecycle.
Mobile app security testing.
Symbolic-execution for EVM bytecode.
Nika
—Cross-file taint-analysis SAST for Java microservices
Template-based vulnerability scanner.
Adversary emulation for AI agents, LLM apps and MCP servers
Continuous fuzzing for open source.
Dependency vulnerability scanner.
Open-source threat modeling.
Open-source web app scanner.
Policy-as-code across the stack.
File-based agent workspace for source-guided whitebox security review
Open-source AI agent firewall for MCP and agent egress.
Multi-cloud security posture.
QARK
—Quick Android Review Kit.
Detect vulnerable JS libraries.
Self-hosted open-source WAF.
API fuzzer from OpenAPI/GraphQL.
Lightweight static analysis.
Solidity / Vyper static analyzer.
CI/CD red team framework — like Metasploit for pipelines
Open-source SCA + IaC scanner.
Solidity inspector.