Showing 36 of 1010 projects
A tiny Flask app to create encrypted secrets and share them securely, keeping sensitive info out of emails and chat logs.
A Rust CLI tool to automate validation and invalidation workflows for API keys and secrets across 30+ providers.
A command-line tool to quickly share files via encrypted, password-protected HTTP links.
React Native mobile application for the Buttercup password manager, offering secure on-device vault management.
A Rust implementation of the OPAQUE password-authenticated key exchange protocol for secure password-based authentication.
A serverless toolkit for routing, normalizing, and enriching security event and audit logs in AWS.
A Go HTTP middleware that protects web services from OWASP Top 10 threats, known vulnerabilities, malicious actors, and brute force attacks.
A configurable, accessible, and secure visual CAPTCHA solution with support for multiple front-end and back-end frameworks.
A Swift wrapper around iOS Security framework for RSA/AES encryption, decryption, signing, and keychain key-pair management.
A framework to help organizations formulate and implement a strategy for software security tailored to their specific risks.
A comprehensive guide to security best practices and known vulnerabilities for EOS smart contract developers.
Audited, minimal JavaScript implementation of Salsa20, ChaCha, and AES encryption algorithms.
A versatile Rust tool for generating and mutating wordlists using patterns, web scraping, and password formats.
A command-line tool for managing SSH keys from GitHub users to enable secure pair programming sessions.
A customizable modal passcode input and validation view controller for iOS apps requiring extra security.
A flexible authorization layer for OpenSSH certificate-based authentication using host identities and grants.
A tool that simplifies running single commands over SSH and manages authorized keys for secure remote execution.
A collection of native security controls for major cloud platforms mapped to MITRE ATT&CK techniques to enable threat-informed defense decisions.
A lightweight static analyzer for developers that finds code patterns across multiple programming languages.
Two-factor authentication bundle for Symfony applications, supporting TOTP, Google Authenticator, and email codes.
A static security scanner for PHP code that identifies potential vulnerabilities without executing the code.
A GitHub Action to import a GPG private key into a runner's keychain for signing commits, tags, and pushes.
A command-line utility written in Go that provides encryption, decryption, and masking functionality for Terraform state and output.
A collection of cryptographic primitives and protocols written in pure Lua for cross-platform reference implementations.
A command-line TOTP/HOTP authenticator with strong encryption, import capabilities, and an interactive dashboard.
A Python toolkit for security Capture The Flag (CTF) challenges, providing utilities for crypto, shellcodes, and network connections.
A Guardian extension that tracks JWT tokens in a database to enable immediate revocation and prevent replay attacks.
A simple and extensible user authentication library for Ruby on Rails applications.
A community-driven collection of pre-built security analytics queries and rules for auditing and threat detection in Google Cloud.
A Java bytecode analyzer that detects and blocks forbidden API calls during builds with Ant, Maven, or Gradle.
An experimental CLI tool that enables AI assistants to manage and operate Terraform environments via the Model Context Protocol (MCP).
A sample application demonstrating Phalcon Framework features including ACL, authentication, and security.
A PHP helper package for integrating Google's reCAPTCHA v2 and v3 with easy setup and Laravel support.
A GitHub scanning tool that identifies hardcoded credentials and filters false positives using machine learning models.
A packer for Windows x86 executable files that transforms and encrypts PE files to obstruct reverse engineering.
A security scanning CLI tool that detects vulnerabilities, secrets, and outdated dependencies across multiple programming languages.
Open-Awesome is built by the community, for the community. Submit a project, suggest an awesome list, or help improve the catalog on GitHub.