Showing 20 of 20 projects
A tool for securely accessing secrets, providing encryption as a service, and managing privileged access.
A tool for secrets management, encryption as a service, and privileged access management.
An open-source platform for secrets management, certificate lifecycle, and privileged access management with self-hosting options.
A secrets scanning tool that discovers, classifies, validates, and analyzes leaked credentials across multiple sources.
A secrets scanning tool that discovers, classifies, validates, and analyzes leaked credentials across multiple sources.
A zero-dependency module that loads environment variables from a .env file into process.env for Node.js applications.
A standalone tool that finds unprotected secrets like passwords and API keys in container images and file systems.
A universal secret manager CLI for developers that centralizes secrets from multiple providers and prevents secret sprawl.
A system for distributing and managing secrets, now deprecated in favor of HashiCorp Vault.
The largest open-source database of regex patterns for detecting secrets, API keys, passwords, and tokens in code.
An OWASP training app with 62 challenges demonstrating real-world secrets management mistakes and how to find them.
A Go program that reverse engineers Docker images to reconstruct the original Dockerfile.
A GitHub Action for securely publishing Python packages to PyPI using trusted publishing (OIDC) without requiring API tokens.
A high-performance open-source secret scanner with live validation, blast radius mapping, and 700+ detection rules for code, Git, CI, cloud, and SaaS platforms.
An open-source secrets management and machine identity solution for securing privileged access in modern infrastructure.
A security tool that scans code for secrets and passwords in JSON, JavaScript, and YAML files via CLI or GitHub PR webhooks.
A secure, self-destructing message service using HashiCorp Vault for temporary secret storage.
A GitHub Action that synchronizes secrets from a single source repository to multiple target repositories using regex patterns.
Integrates SPIFFE SVID authentication with Hashicorp Vault to enable secretless authentication and keyless operations.
A Clojure library for generating cryptographically strong random numbers, tokens, and secrets.
Open-Awesome is built by the community, for the community. Submit a project, suggest an awesome list, or help improve the catalog on GitHub.