securitytxt / security-txt
A proposed standard that allows websites to define security policies.
☆1,817Updated 2 years ago
Alternatives and similar repositories for security-txt:
Users that are interested in security-txt are comparing it to the libraries listed below
- Mozilla HTTP Observatory☆1,854Updated 5 months ago
- Chromium's HSTS preload list submission website.☆800Updated last week
- Certificate Transparency Log Monitor☆1,028Updated 2 months ago
- HTTPLeaks - All possible ways, a website can leak HTTP requests☆2,018Updated 5 months ago
- Find interesting Amazon S3 Buckets by watching certificate transparency logs.☆1,765Updated 3 weeks ago
- Ah shhgit! Find secrets in your code. Secrets detection for your GitHub, GitLab and Bitbucket repositories.☆3,875Updated 3 weeks ago
- A command-line reference-implementation client for SSL Labs APIs, designed for automated and/or bulk testing.☆1,723Updated 7 months ago
- SSH server auditing (banner, key exchange, encryption, mac, compression, compatibility, security, etc)☆2,971Updated 8 months ago
- Scan domains and return data based on HTTPS best practices☆678Updated last month
- A tiny web auditor with strong opinions.☆585Updated 2 months ago
- DEPRECATED - A prototype SSH configuration and policy scanner (Blog: https://mozilla.github.io/ssh_scan/)☆789Updated 3 years ago
- Tool to scan for secret files on HTTP servers☆2,084Updated 3 months ago
- A subdomain enumeration tool.☆897Updated 3 years ago
- Scan your code for security misconfiguration, search for passwords and secrets.☆644Updated last year
- Mozilla Observatory (Website)☆306Updated 5 months ago
- w3af: web application attack and audit framework, the open source web vulnerability scanner.☆4,683Updated 2 years ago
- Analyze the security of any domain by finding all the information possible. Made in python.☆1,858Updated 2 years ago
- Web Application Security Scanner Framework☆3,861Updated last year
- CLI tool that finds secrets accidentally committed to a git repo, eg passwords, private keys☆1,160Updated 2 years ago
- Nginx configuration static analyzer☆8,400Updated 7 months ago
- Collection of scripts, thoughts about CSP (Content Security Policy)☆492Updated 8 months ago
- Offensive Web Testing Framework (OWTF), is a framework which tries to unite great tools and make pen testing more efficient http://owtf.o…☆1,847Updated last week
- Public version of PagerDuty's employee security training courses.☆415Updated last year
- A pretty sweet vulnerability scanner☆4,113Updated 5 months ago
- grep rough audit - source code auditing tool☆1,592Updated 3 months ago
- XRay is a tool for recon, mapping and OSINT gathering from public networks.☆2,243Updated 8 months ago
- A DNS meta-query spider that enumerates DNS records, and subdomains.☆3,412Updated 3 years ago
- Reconnaissance tool for GitHub organizations☆6,014Updated 2 years ago
- A collected list of awesome security talks☆4,088Updated 3 years ago
- This version won't be maintained!☆1,219Updated 5 years ago