bagel, a CLI that inventories security-relevant metadata on developer workstations
☆194Jul 21, 2026Updated last month
Alternatives and similar repositories for bagel
Users that are interested in bagel are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- ☆15Sep 22, 2025Updated 11 months ago
- poutine, a supply chain vulnerability scanner for build pipelines☆510Jul 9, 2026Updated last month
- Supply Chain Security Research - Living Off The Pipeline tools☆162Jul 31, 2026Updated 3 weeks ago
- A CI/CD Red Team Framework for demonstrating Build Pipeline security risks.☆375Aug 6, 2026Updated 3 weeks ago
- Inline proxy for software package registries to provide observability and policy controls to installs.☆52Jun 5, 2026Updated 2 months ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- Sealed execution environment for GitHub Actions. Stop supply chain attacks dead in their tracks.☆58Updated this week
- Detection tells you a key is real; geiger tells you whether it's dangerous.☆35Updated this week
- A VS Code/Cursor extension capable of performing realtime security monitoring from inside the IDE☆118Aug 10, 2026Updated 2 weeks ago
- A GitHub Actions Supply Chain CTF / Goat☆28Apr 13, 2026Updated 4 months ago
- A multi-platform CI/CD vulnerability detection and attack automation tool for identifying security weaknesses in pipeline configurations.☆179Aug 16, 2026Updated 2 weeks ago
- API security testing framework for REST, GraphQL, and gRPC that validates authorization logic using role-based testing and YAML-driven te…☆75Aug 18, 2026Updated last week
- This JavaScript CLI "undeletes' packages that have been removed from the NPM registry☆34Apr 29, 2026Updated 4 months ago
- Demos for Black Hat Europe 2025's The Forensic Trail On GitHub: Hunting For Supply Chain Activity☆27Dec 5, 2025Updated 8 months ago
- GitHub Workflows Insights☆47Jun 27, 2026Updated 2 months ago
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- Local forensic scanner that extracts credentials from AI tool conversation history. For authorized red team and DLP use only.☆59Updated this week
- Build and query a graph database representation of source code☆478Aug 18, 2026Updated last week
- TrailAlerts is a AWS-native, serverless cloud-detection tool that lets you define simple rules as code and get rich alerts about events i…☆52May 2, 2026Updated 3 months ago
- AI-driven vulnerability discovery and live validation☆341May 5, 2026Updated 3 months ago
- Nova-Proximity is a MCP and Agent Skills security scanner powered with NOVA☆304Mar 26, 2026Updated 5 months ago
- Autonomous, read-only endpoint investigation via MCP. Ask a question about your fleet, get a narrative answer with containment recommenda…☆23Jul 6, 2026Updated last month
- Create tar/zip archives that try to exploit zipslip vulnerability.☆48Sep 20, 2024Updated last year
- A golang-written credential harvesting framework leveraging eBPF for kernel-level monitoring with anti-detection capabilities.☆49Apr 13, 2026Updated 4 months ago
- Audit content (pdfs, media files, images) sensitivity on urls☆45Jun 2, 2026Updated 2 months ago
- Bare Metal GPUs on DigitalOcean Gradient AI • AdPurpose-built for serious AI teams training foundational models, running large-scale inference, and pushing the boundaries of what's possible.
- A tool to help pentesters quickly identify privileged principals and second-order privilege escalation opportunities in unfamiliar AWS ac…☆161Jun 10, 2026Updated 2 months ago
- Detect phantom IAM users, decode leaked AWS Bedrock and Claude Platform API keys, and prevent LLMjacking. CLI + SCPs + SIEM detection rul…☆36Aug 5, 2026Updated 3 weeks ago
- Security configuration scanner for Claude Code☆45Updated this week
- Nord Stream is a tool that allows you to extract secrets stored inside CI/CD environments by deploying malicious pipelines. It currently …☆373Jul 10, 2026Updated last month
- ☆37Apr 29, 2025Updated last year
- ☆42Nov 13, 2025Updated 9 months ago
- Organizational asset discovery tool with 20+ plugins covering certificate transparency, passive DNS, and all 5 Regional Internet Registri…☆88Updated this week
- Proper sandboxing for agentic coding and web browsing☆275Updated this week
- A security tool that detects malicious packages from external vulnerability feeds and searches for them in your package registries or art…☆72Nov 27, 2025Updated 9 months ago
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- Open-source cloud security reconnaissance framework☆66Updated this week
- Detect shadow AI agents by monitoring network traffic and classifying process-to-domain pairs.☆72May 20, 2026Updated 3 months ago
- ☆66May 21, 2024Updated 2 years ago
- 🛡️ High-performance WAF & CDN detection tool. Identify protection layers (Cloudflare, Akamai, AWS, Fastly, and more), run effectiveness …☆116Aug 19, 2026Updated last week
- A CLI tool for managing DigitalOcean droplets with automated setup, SSH configuration, and lifecycle management.☆129Updated this week
- A tool to check the security settings of Github Organizations.☆77Feb 9, 2026Updated 6 months ago
- A tool for folks who `git clone` first and ask questions later☆71Apr 15, 2026Updated 4 months ago