OpenRadar

Tag

#security

16 open-source projects filed under this tag.

01 Go

agent-vault

Agent Vault is an open-source credential proxy by Infisical that prevents AI agents from leaking secrets — brokered access instead of direct credentials.

#secrets-management#ai-agents#security#go
1.6k 84 Read
02 Python

anthropic-defending-code-reference-harness

Anthropic's open-source autonomous vulnerability discovery framework for Claude — scan, triage, and patch security bugs with AI agents.

#security#ai-agents#vulnerability-scanning#claude
1k 79 Read
03 Rust

astrid

Astrid is a Rust microkernel OS that treats AI agents like Linux treats processes — WASM sandboxing, capsule architecture, capability tokens, and cryptographic audit trails.

#ai-agents#rust#microkernel#security
8.7k 95 Read
04 Go

bumblebee

Bumblebee is a Go-based supply-chain scanner from Perplexity AI that inventories npm, pip, Go, and MCP packages across developer machines to detect exposure to compromised dependencies.

#supply-chain-security#go#developer-tools#security
4.3k 377 Read
05 Go

crabtrap

Open-source HTTP proxy by Brex that uses LLM-as-a-judge to secure AI agents in production. Static rules + AI policy evaluation with full audit trail.

#security#ai-agents#proxy#go
673 51 Read
06 Rust

cubesandbox

CubeSandbox is a high-performance, hardware-isolated sandbox for AI agents — sub-60ms cold starts, under 5MB memory overhead, and E2B SDK compatibility.

#ai-agents#sandbox#rust#security
6.2k 496 Read
07 Rust

cupcake

Cupcake is a Rust-based policy enforcement layer for AI coding agents using OPA/Rego. Deterministic guardrails for Claude Code, Cursor, and OpenCode without consuming model context.

#ai-agents#security#opa#policy-as-code
270 23 Read
08 TypeScript

deepsec

Deepsec is an AI-powered vulnerability scanner from Vercel Labs that uses coding agents to find hard-to-find security issues in large codebases.

#security#ai-agents#vulnerability-scanning#vercel
3.1k 217 Read
09 Python

claude-bughunter

Claude-BugHunter is a 71-skill bundle for Claude Code that turns your AI agent into a senior bug-hunting researcher with 681 disclosed-report patterns across 24 vulnerability classes.

#security#bug-bounty#claude-code#pentesting
2.2k 331 Read
10 Python

audit

Evilsocket/audit is an 8-stage vulnerability-discovery agent that uses multiple AI agents to find real security bugs in your codebase — built on Claude Code Agent SDK.

#security#ai-agents#code-audit#vulnerability-scanning
590 86 Read
11 Python

microsoft-agent-governance-toolkit

Microsoft's open-source toolkit for governing autonomous AI agents — policy enforcement, zero-trust identity, execution sandboxing, and audit logging. Covers 10/10 OWASP Agentic Top 10.

#ai-agents#security#governance#python
3.9k 539 Read
12 TypeScript

microsoft-mxc

Microsoft MXC is a sandboxed code execution system with a TypeScript SDK for safely running untrusted code, plugins, and AI agent output across Windows, Linux, and macOS.

#sandbox#security#typescript#ai-agents
549 24 Read
13 Rust

nvidia-openshell

NVIDIA OpenShell is a sandboxed runtime for autonomous AI agents with declarative YAML policies, MicroVM isolation, and network-level security controls.

#ai-agents#sandbox#security#rust
7k 834 Read
14 TypeScript

osiris

Osiris is an open-source real-time OSINT dashboard built with Next.js and MapLibre GL — a Palantir alternative with 16 intelligence layers, RECON toolkit, and GPU-accelerated map rendering.

#osint#nextjs#typescript#intelligence
4.2k 840 Read
15 TypeScript

shannon

Autonomous AI penetration tester for web applications and APIs that finds real vulnerabilities with proof-of-concept exploits before they hit production

#security#ai-agent#pentesting#web-security
44.8k 5.2k Read
16 Rust

vigils

Vigils is a local-first control plane for AI agents — audit logs, secret redaction, sandboxed execution, and human-in-the-loop approvals. Rust + Tauri + Chrome MV3.

#ai-agents#security#rust#tauri
204 12 Read