Addepar / RedFlagLinks
RedFlag uses AI to identify high-risk code changes. Run it in batch mode for release candidate testing or in CI pipelines to flag PRs and add reviewers. RedFlag's flexible configuration makes it valuable for any team.
☆158Updated last year
Alternatives and similar repositories for RedFlag
Users that are interested in RedFlag are comparing it to the libraries listed below
Sorting:
- Static code analyser for backdoors and malicious code in git repos using OpenAI compatible LLM APIs☆73Updated last year
- Gram is Klarna's own threat model diagramming tool☆330Updated 2 weeks ago
- Use AI to Scan Your Code from the Command Line for security and code smells. Bring your own keys. Supports OpenAI and Gemini☆176Updated 8 months ago
- A powerful tool that leverages AI to automatically generate comprehensive security documentation for your projects☆99Updated 2 months ago
- A tool to uncover undocumented APIs from the AWS Console.☆115Updated 8 months ago
- A full insecure kubernetes application for testing security tools☆91Updated 2 months ago
- ☆193Updated 8 months ago
- A security tool that detects malicious packages from external vulnerability feeds and searches for them in your package registries or art…☆70Updated last month
- SecureMCP is a security auditing tool designed to detect vulnerabilities and misconfigurations in applications using the [Model Context P…☆132Updated 7 months ago
- Enriching the NVD CVSS scores to include Temporal & Threat Metrics☆214Updated this week
- Ansible/Vagrant/Packer files to create a virtual machine with the tooling needed to perform cloud security assessments☆142Updated last year
- Cloud Commotion intends to cause chaos to simulate security incidents☆146Updated last year
- cloudgrep is grep for cloud storage☆327Updated 10 months ago
- An AI-powered tool for discovering privilege escalation opportunities in AWS IAM configurations.☆117Updated 2 weeks ago
- AWS honey token manager☆89Updated last year
- ☆379Updated last year
- Generate datasets of cloud audit logs for common attacks☆230Updated last year
- ☆53Updated last year
- 🧪 Correlate Semgrep scans with Python test coverage to prioritize SAST findings and get bug fix suggestions via a self-hosted LLM.☆41Updated last year
- Supply-Chain Firewall (SCFW) is a tool for preventing the installation of malicious npm and PyPI packages☆210Updated last week
- AI featured threat modeling and security review action☆45Updated last year
- boostsecurityio/poutine☆354Updated last month
- Security tool against dependency typosquatting attacks☆54Updated this week
- A flexible framework for security teams to build and deploy AI-powered workflows that complement their existing security operations.☆146Updated 3 weeks ago
- Cloud Offensive Breach and Risk Assessment (COBRA) Tool☆102Updated 7 months ago
- A comprehensive checklist and guide for organizations looking to implement a robust cybersecurity program☆46Updated 3 weeks ago
- HashiCorp-relevant rules for the Semgrep code analysis tool☆41Updated 2 years ago
- Semgrep-based Policy Controller for Kubernetes☆47Updated 9 months ago
- ☆169Updated 3 months ago
- Simple plug-and-play Github Action to block unauthorized outbound traffic (egress) in your Github workflows☆114Updated this week