Protect against malicious open source packages π€
β1,093Jul 13, 2026Updated last week
Alternatives and similar repositories for vet
Users that are interested in vet are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- PMG protects developers, AI agents from malicious open source packages using proxy, sandbox and SafeDep's threat intelligence feed.β466Updated this week
- Reference architecture and proof of concept implementation for supply chain security gatewayβ23Apr 1, 2023Updated 3 years ago
- Security layer for AI coding agents. Works with Claude Code, Cursor, Windsurf, Gemini CLI, OpenCode, Pi Agent and more.β151Jun 19, 2026Updated last month
- Generate xBOMs enriched with AI, SaaS, Crypto and more using Static Code Analysisβ35Jan 22, 2026Updated 5 months ago
- A repository of reports of malicious packages identified in Open Source package repositories, consumable via the Open Source Vulnerabilitβ¦β573Updated this week
- GPU virtual machines on DigitalOcean Gradient AI β’ AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- OSV-SCALIBR: A library for Software Composition Analysisβ626Updated this week
- Detect and remediate misconfigurations and security risks across all your GitHub and GitLab assetsβ874Mar 28, 2025Updated last year
- Tool to detect and monitor GitHub org users' public repositories for secrets and sensitive filesβ233Apr 17, 2026Updated 3 months ago
- Witness is a pluggable framework for software supply chain risk management. It automates, normalizes, and verifies software artifact proβ¦β537Updated this week
- A compilation of Software Supply Chain Security resources including initiatives, standards, regulations, organizations, vendors, tooling,β¦β150Jan 28, 2024Updated 2 years ago
- Harden-Runner is a CI/CD security agent that works like an EDR for GitHub Actions runners. It monitors network egress, file integrity, anβ¦β1,229Jul 7, 2026Updated 2 weeks ago
- π Static code analysis engine to find security issues in code.β2,815Updated this week
- Detect leaked secrets + live validation. Map blast radius across your stack. Revoke fast. 1,000+ rules.β1,174Updated this week
- poutine, a supply chain vulnerability scanner for build pipelinesβ490Jul 9, 2026Updated last week
- Deploy on Railway without the complexity - Free Credits Offer β’ AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Enrich SBOMs with data from third party servicesβ231May 18, 2026Updated 2 months ago
- A vulnerability scanner for container images and filesystemsβ12,604Updated this week
- Generate a score for your sbom to understand if it will actually be useful.β241Aug 13, 2024Updated last year
- #supply #chain #attack #detectionβ671Updated this week
- Code security scanning tool (SAST) to discover, filter and prioritize security and privacy risks.β2,705Updated this week
- Supply Chain Firewall (SCFW) is a tool for preventing the installation of malicious npm and PyPI packagesβ377Updated this week
- Vulnerability scanner written in Go which uses the data provided by https://osv.devβ10,674Updated this week
- A universal SBOM representation in protocol buffersβ326Updated this week
- GuardDog is a CLI tool to Identify malicious PyPI and npm packagesβ1,162Jul 14, 2026Updated last week
- Virtual machines for every use case on DigitalOcean β’ AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- GitHub Attack Toolkit - Extreme Edition - A static analysis and exploit toolkit for GitHub Actions.β562Jul 13, 2026Updated last week
- Live validation proxy tool for testing web app vulnerabilitiesβ877Mar 24, 2026Updated 3 months ago
- Kubernetes Goat is a "Vulnerable by Design" cluster environment to learn and practice Kubernetes security using an interactive hands-on pβ¦β5,722Apr 16, 2026Updated 3 months ago
- Software Supply Chain Security Platformβ412Updated this week
- Scans Software Bill of Materials (SBOMs) for security vulnerabilitiesβ624Feb 10, 2026Updated 5 months ago
- OpenSSF Scorecard - Security health metrics for Open Sourceβ5,589Updated this week
- Pin your 3rd Party Github Actions and Docker Images dependencies.β16Mar 15, 2025Updated last year
- CLI tool and library for generating a Software Bill of Materials from container images and filesystemsβ9,257Updated this week
- Analyzes software dependencies across GitHub repositories to identify security vulnerabilities and health risks in your supply chain.