🚀 Useful README.md, LICENSE, CONTRIBUTING.md, CODE_OF_CONDUCT.md, SECURITY.md, GitHub Issues, Pull Requests and Actions templates to jumpstart your projects.
-
Updated
Aug 10, 2024 - Python
🚀 Useful README.md, LICENSE, CONTRIBUTING.md, CODE_OF_CONDUCT.md, SECURITY.md, GitHub Issues, Pull Requests and Actions templates to jumpstart your projects.
GitHub Advance Security Compliance Action
Code scanner to check for issues in prompts and LLM calls
CodeScanAI is an open source tool that utilizes powerful AI models (OpenAI, Gemini, and even self-hosted servers) to scan your codebase for possible security vulnerabilities.
A GitHub action for organizations that enables advanced security code scanning on all new repos
Codeaudit - Modern Python source code security analyzer based on distrust.
A secret scanner wrapper to aggregate results across multiple secret scanning tools
Lets Threat Model is an AI-driven tool that helps teams identify and manage threats early in the development lifecycle. Built with extensibility and automation in mind, it brings security into agile workflows by generating actionable threat models.
Aggressive regex based code scanner for Wordpress Themes/Plugins
Git secrets, vulnurabilities scanner with rich reporting
🕵️🐍 Generate requirements.txt and pyproject.toml extras across modules, with configurable starting points, using import graph traversal and the python AST. Fully configurable and works with pre-commit.
Ansible role for 'terrascan'. Available on Ansible Galaxy.
Code scanning and security analysis tools
The first GitHub Action that scans MCP servers, AI agents & LLM pipelines for security vulnerabilities. 24 checks: tool poisoning, SSRF, prompt injection, DataFlow taint. Results in GitHub Security tab via SARIF. No API key required.
The first GitHub Action that checks AI systems for EU AI Act conformity: Annex III classification, Art.9/13/14/22. SARIF output. No API key required.
Quick and Dirty VB6/VBA scanner that integrates with GHAS
Automated security auditing CLI for AI agent code — quarantine-first workflow for repos, packages, and agent tooling
Map every integration point in your AI codebase — 13 CWE categories, attack surface score, test coverage gaps. SARIF 2.1.0. No API key.
Add a description, image, and links to the code-scanning topic page so that developers can more easily learn about it.
To associate your repository with the code-scanning topic, visit your repo's landing page and select "manage topics."