agent runtime security - zero trust, zero setup, zero latency.
Top SUPPLY-CHAIN GitHub Repositories & Tools (2026)
Discover the most starred and trending open source tools tagged with #supply-chain.
Terminal security for developers and AI agents. Intercepts homograph URLs, pipe-to-shell, ANSI injection, obfuscated payloads, data exfiltration, and malicious AI skills/configs before they execute.
πOpen Source Security Foundation (OpenSSF) Best Practices Badge (formerly Core Infrastructure Initiative (CII) Best Practices Badge)
Creates CycloneDX Bill of Materials (BOM) for your projects from source and container images. Supports many languages and package managers. Integrate in your CI/CD pipeline with automatic submission to Dependency Track server
blint is a Binary Linter that checks the security properties and capabilities of your executables. It can also generate a Software Bill-of-Materials (SBOM) for supported binaries.
JavaScript & Node.js open-source SAST scanner. A static analyser for detecting most common malicious patterns π¬.
Catalogue all images of a Kubernetes cluster to multiple targets with Syft
ReARM - Release Governance Platform
Scan your dev machine for AI agents, MCP servers, IDE extensions, and suspicious packages - in seconds.