bagel, a CLI that inventories security-relevant metadata on developer workstations
☆190Jul 21, 2026Updated 2 weeks ago
Alternatives and similar repositories for bagel
Users that are interested in bagel are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- ☆15Sep 22, 2025Updated 10 months ago
- poutine, a supply chain vulnerability scanner for build pipelines☆503Jul 9, 2026Updated last month
- Supply Chain Security Research - Living Off The Pipeline tools☆161Jul 31, 2026Updated last week
- A CI/CD Red Team Framework for demonstrating Build Pipeline security risks.☆373Updated this week
- Inline proxy for software package registries to provide observability and policy controls to installs.☆51Jun 5, 2026Updated 2 months ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Sealed execution environment for GitHub Actions. Stop supply chain attacks dead in their tracks.☆56Updated this week
- Detection tells you a key is real; geiger tells you whether it's dangerous.☆34Updated this week
- A VS Code/Cursor extension capable of performing realtime security monitoring from inside the IDE☆117Aug 3, 2026Updated last week
- A GitHub Actions Supply Chain CTF / Goat☆28Apr 13, 2026Updated 3 months ago
- A multi-platform CI/CD vulnerability detection and attack automation tool for identifying security weaknesses in pipeline configurations.☆176Updated this week
- API security testing framework for REST, GraphQL, and gRPC that validates authorization logic using role-based testing and YAML-driven te…☆73Aug 3, 2026Updated last week
- This JavaScript CLI "undeletes' packages that have been removed from the NPM registry☆33Apr 29, 2026Updated 3 months ago
- Demos for Black Hat Europe 2025's The Forensic Trail On GitHub: Hunting For Supply Chain Activity☆26Dec 5, 2025Updated 8 months ago
- GitHub Workflows Insights☆47Jun 27, 2026Updated last month
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Local forensic scanner that extracts credentials from AI tool conversation history. For authorized red team and DLP use only.☆57Updated this week
- Build and query a graph database representation of source code☆461Jul 28, 2026Updated last week
- TrailAlerts is a AWS-native, serverless cloud-detection tool that lets you define simple rules as code and get rich alerts about events i…☆52May 2, 2026Updated 3 months ago
- AI-driven vulnerability discovery and live validation☆339May 5, 2026Updated 3 months ago
- Nova-Proximity is a MCP and Agent Skills security scanner powered with NOVA☆303Mar 26, 2026Updated 4 months ago
- Autonomous, read-only endpoint investigation via MCP. Ask a question about your fleet, get a narrative answer with containment recommenda…☆22Jul 6, 2026Updated last month
- Create tar/zip archives that try to exploit zipslip vulnerability.☆48Sep 20, 2024Updated last year
- A golang-written credential harvesting framework leveraging eBPF for kernel-level monitoring with anti-detection capabilities.☆49Apr 13, 2026Updated 3 months ago
- Audit content (pdfs, media files, images) sensitivity on urls☆45Jun 2, 2026Updated 2 months ago
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- A tool to help pentesters quickly identify privileged principals and second-order privilege escalation opportunities in unfamiliar AWS ac…☆160Jun 10, 2026Updated last month
- Detect phantom IAM users, decode leaked AWS Bedrock and Claude Platform API keys, and prevent LLMjacking. CLI + SCPs + SIEM detection rul…☆36Updated this week
- Security configuration scanner for Claude Code☆45Updated this week
- Nord Stream is a tool that allows you to extract secrets stored inside CI/CD environments by deploying malicious pipelines. It currently …☆370Jul 10, 2026Updated last month
- ☆37Apr 29, 2025Updated last year
- ☆42Nov 13, 2025Updated 8 months ago
- Organizational asset discovery tool with 20+ plugins covering certificate transparency, passive DNS, and all 5 Regional Internet Registri…☆86Updated this week
- Proper sandboxing for agentic coding and web browsing☆275Updated this week
- A security tool that detects malicious packages from external vulnerability feeds and searches for them in your package registries or art…☆70Nov 27, 2025Updated 8 months ago
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- Open-source cloud security reconnaissance framework☆64Updated this week
- Detect shadow AI agents by monitoring network traffic and classifying process-to-domain pairs.☆72May 20, 2026Updated 2 months ago
- ☆66May 21, 2024Updated 2 years ago
- 🛡️ High-performance WAF & CDN detection tool. Identify protection layers (Cloudflare, Akamai, AWS, Fastly, and more), run effectiveness …☆115Mar 9, 2026Updated 5 months ago
- A CLI tool for managing DigitalOcean droplets with automated setup, SSH configuration, and lifecycle management.☆127Updated this week
- A tool to check the security settings of Github Organizations.☆77Feb 9, 2026Updated 6 months ago
- A tool for folks who `git clone` first and ask questions later☆71Apr 15, 2026Updated 3 months ago