π Authentication, Authorization, and Accounting (AAA) App and Plugin for Caddy v2. π Implements Form-Based, Basic, Local, LDAP, OpenID Connect, OAuth 2.0 (Github, Google, Facebook, Okta, etc.), SAML Authentication. MFA/2FA with App Authenticators and Yubico. π Authorization with JWT/PASETO tokens. π
Top SECOPS GitHub Repositories & Tools (2026)
Discover the most starred and trending open source tools tagged with #secops.
The CVE Binary Tool helps you determine if your system includes known vulnerabilities. You can scan binaries for over 350 common, vulnerable components (openssl, libpng, libxml2, expat and others), or if you know the components used, you can get a list of known vulnerabilities associated with an SBOM or a list of components and versions.
Powerpipe: Dashboards for DevOps. Visualize cloud configurations. Assess security posture against a massive library of benchmarks. Build custom dashboards with code.
Open source local-first PR scanner that finds dead code, security bugs, secrets, quality regressions, and AI-code mistakes before merge. For first timers refer to https://duriantaco.github.io/skylos/repo-map/
Reconmap is a collaboration-first security operations platform for infosec teams and MSSPs, enabling endβtoβend engagement management, from reconnaissance through execution and reporting. With built-in command automation, output parsing, and AIβassisted summaries, it delivers faster, more structured, and highβquality security assessments.
Hunt every Endpoint in your code, expose Shadow APIs, map the Attack Surface.
π§ JetBrains Qodanaβs official command line tool
Open-source adversarial testing engine, SDK, and CLI for AI agents. Runs locally or against the Humanbound Platform.
Dependency-Track is an intelligent Component Analysis platform that allows organizations to identify and reduce risk in the software supply chain.