Mantis is a security framework that automates the workflow of discovery, reconnaissance, and vulnerability scanning.
-
Updated
Jul 7, 2026 - Python
Mantis is a security framework that automates the workflow of discovery, reconnaissance, and vulnerability scanning.
Watchdog - A Comprehensive Security Scanning and a Vulnerability Management Tool.
Open-source security agents for cloud, code and runtime. 45 built-in agents audit AWS, GCP, Azure, Kubernetes, GitHub and GitLab for privilege escalation, public exposure, supply chain and more, or build your own in one markdown file. Live, read-only access to your infrastructure.
The security workflow engine!
Curated resources for the EU Cyber Resilience Act (Regulation 2024/2847): regulation, harmonised standards, EUCC, SBOM, vulnerability management, conformity assessment
Damn Vulnerable SCA Application
📚A curated list of product security resources.
Custom gitleaks configuration
Managing GitHub Advanced Security (GHAS) Controls at Scale
Browser-based Yocto CVE dashboard for analyzing cve-summary.json, reviewing embedded Linux vulnerabilities, and exporting HTML/PDF security reports.
Self-hosted open-source cybersecurity governance platform for ISO 27001, NIS2, DORA, CRA, product security and AI governance.
An ongoing & curated collection of awesome software best practices and techniques, libraries and frameworks, E-books and videos, websites, blog posts, links to github Repositories, technical guidelines and important resources about Product Security in Cybersecurity.
20 hands-on security engineering labs covering attack surface discovery, reverse engineering, protocol analysis, fuzzing, CVSS scoring, and responsible disclosure.
AS{2} aims to provide visibility, compliance, alerting, and reporting capabilities. The primary focus is to integrate open-source tools used by AppSec teams in one place with better visibility.
Collection of insights and recommendations gathered from my time working in security.
GitHub Action for ForgeVault CRA product-security readiness checks
Public CRA Direct documentation for SBOM evidence, Article 14 workflows, HITL review, and audit trails.
Security Research and PoC
AI-readable pre-launch security checklist for vibe coding MVP projects
To associate your repository with the product-security topic, visit your repo's landing page and select "manage topics."