GitGuardian / ggmcpLinks
MCP server for scanning and remediating hardcoded secrets using GitGuardian’s API. Detect over 500 secret types and prevent credential leaks before code goes public.
☆25Updated last week
Alternatives and similar repositories for ggmcp
Users that are interested in ggmcp are comparing it to the libraries listed below
Sorting:
- Data about all known supply-chain attacks through history☆60Updated 5 months ago
- A security tool that detects malicious packages from external vulnerability feeds and searches for them in your package registries or art…☆64Updated this week
- This GitHub Action scans artifacts for secrets using gitleaks before uploading them.☆40Updated 2 weeks ago
- Performing secure code review with LLMs (and vibe coding IDEs)☆28Updated 3 months ago
- ☆39Updated last year
- 🧪 Correlate Semgrep scans with Python test coverage to prioritize SAST findings and get bug fix suggestions via a self-hosted LLM.☆41Updated 10 months ago
- GitGuardian Canary Tokens☆145Updated 4 months ago
- Security tool against dependency typosquatting attacks☆54Updated this week
- EZGHSA is a command-line tool for summarizing and filtering vulnerability alerts on Github repositories.☆35Updated 2 months ago
- sbomify is a product security artifact management platform.☆36Updated this week
- AI featured threat modeling and security review action☆44Updated 11 months ago
- Manager of third-party sources of Semgrep rules 🗂☆90Updated last year
- MCP Snitch is a macOS application that intercepts and monitors MCP server communications, providing security analysis, access control, an…☆76Updated 3 weeks ago
- If these strings are in your code, you might have a problem!☆50Updated 2 months ago
- Tools that checks for misconfigured access to Github OIDC from AWS roles and GCP service accounts☆61Updated 2 years ago
- An open-source collection of API key rotation tutorials.☆74Updated 2 months ago
- Identify hardcoded secrets in static structured text (version 2)☆95Updated 9 months ago
- A compilation of Software Supply Chain Security resources including initiatives, standards, regulations, organizations, vendors, tooling,…☆138Updated last year
- Secure Code Review AI Agent (SeCoRA) - AI SAST☆53Updated 9 months ago
- boostsecurityio/poutine☆342Updated last week
- This terraform provider can be used to get remote code execution by injecting a dummy resource in a writeable state file.☆59Updated 9 months ago
- A tool to check the security settings of Github Organizations.☆72Updated 2 years ago
- Unauthenticated enumeration of AWS IAM Roles.☆25Updated 2 months ago
- Nuclei plugins to audit Chrome extensions☆65Updated last year
- GHAST (GitHub Actions Static Analysis Tool) is a tool to analyze the security posture of your GitHub Actions and its surrounding environm…☆21Updated 2 years ago
- My collection of Semgrep rules for vulnerability detection on source code (swift, java, cobol)☆37Updated last month
- ☆17Updated 3 years ago
- HashiCorp-relevant rules for the Semgrep code analysis tool☆42Updated 2 years ago
- Build a CVE library with aggregated CISA, EPSS and CVSS data☆29Updated 2 years ago
- A security tool designed to help review merged code changes to open source maintained repositories via LLM assisted review to safeguard a…☆31Updated last year