-
fse_dump
Dumps the fseventsd entries from a mac
-
sequoia-octopus-librnp
Reimplementation of RNP's interface using Sequoia for use with Thunderbird
-
nono-rs
The opposite of YOLO - a capability shell for AI agents
-
zeph
Lightweight AI agent with hybrid inference, skills-first architecture, and multi-channel I/O
-
signals_receipts
exfiltration of the receipt of POSIX signals
-
job-orchestrator
Asynchronous job orchestrator for managing and routing payloads between services and computing resources with quota tracking
-
passless-rs
FIDO2 security token emulator
-
ramparts
A CLI tool for scanning Model Context Protocol (MCP) servers
-
symbi
AI-native agent framework for building autonomous, policy-aware agents that can safely collaborate with humans, other agents, and large language models
-
thoughtjack
Adversarial agent security testing tool
-
hunt-scan
MCP agent scanning and vulnerability detection for clawdstrike hunt
-
cc-audit
Security auditor for Claude Code skills, hooks, and MCP servers
-
palisade-errors
Security-conscious error handling with operational security principles
-
longline
System-installed safety hook for Claude Code
-
mcpdome
Protective Dome for AI Agents — MCP security gateway proxy
-
lonkero
Web scanner built for actual pentests. Fast, modular, Rust.
-
ironclaw
Secure personal AI assistant that protects your data and expands its capabilities on the fly
-
hdbconnect-mcp
MCP server for SAP HANA database
-
lkr-cli
CLI for LLM Key Ring — manage LLM API keys via macOS Keychain
-
sigil-cli
Automated security auditing for AI agent code - quarantine-first scanning for pip, npm, git repos, and MCP servers
-
witchcraft-log
A structured logging facade for Witchcraft servers
-
pouch-run
Tiny process runner for Linux / Unix-like systems that securely hands off a secret to a child process over a dedicated file descriptor
-
klag-exporter
High-performance Kafka consumer group lag exporter with offset and time lag metrics
-
sem_safe
Safe usage of POSIX Semaphores (
sem_post,sem_wait, etc) -
aur-scanner-hook
Pacman hook for AUR package security scanning - blocks malicious packages during transactions
-
forge-sandbox
V8 sandbox for executing LLM-generated JavaScript via deno_core
-
dnsm
Toolkit for covert data exfiltration using DNS
-
pmcp-code-mode
Code Mode validation and execution framework for MCP servers
-
openpgp-ca
OpenPGP CA is a tool for managing and certifying OpenPGP keys
-
astrid-config
Unified configuration system for Astrid
-
toolcap
specifying tool use permissions in agentic applications
-
mcpsec
MCP Security Benchmark Framework — vendor-neutral security evaluation for MCP gateways
-
railgun
CLI - Claude Code security hook for LLM protection
-
securegit
Zero-trust git replacement with 12 built-in security scanners, LLM redteam bridge, universal undo, durable backups, and a 50-tool MCP server
-
hushspec
Portable specification types for AI agent security rules
-
scurl
Secure curl - AI-powered security review for install scripts
-
agentkernel
Run AI coding agents in secure, isolated microVMs
-
aivault
Standalone CLI for local vault lifecycle and secret management
-
m2m-protocol
M2M Protocol - Intelligent machine-to-machine LLM communication with learned compression
-
tower-sessions-cookie-store
Cookie-backed session store for tower-sessions (signed/private cookies via tower-cookies)
-
tool-orchestrator
Rhai-based tool orchestration for AI agents - implements Anthropic's programmatic tool calling pattern
-
rust-threat-detector
Advanced memory-safe SIEM threat detection with ML-based scoring, automated incident response, and threat hunting capabilities
-
exfiltrate
An embeddable debug tool for Rust
-
genesis-preflight
A zero-dependency CLI tool for validating and documenting scientific datasets in preparation for DOE Genesis Mission ingestion
-
armyknife-llm-redteam
LLM red-teaming security scanner — nmap for LLMs
-
fips
A powerful mock server supported by a plugin system
-
agentshield
AI Agent Egress Firewall - Default-deny egress control for AI agents
-
mcpkit-rs-cli
Command-line interface for mcpkit-rs
-
agent-fetch
A sandboxed HTTP client for AI agents with SSRF protection, domain policies, rate limiting, and resource controls
-
sequoia-keystore-backend
Traits for private key store backends
-
mcpmap
Discover MCP (Model Context Protocol) servers on network ranges
-
roche-cli
Universal sandbox orchestrator for AI agents — CLI
-
zeph-tui
Ratatui-based TUI dashboard with real-time metrics for Zeph
-
ai-coding-shield
Security auditing tool for AI development workflows, rules, skills, and MCPs
-
agent-shield
Security scanner for AI agent extensions — offline-first, multi-framework, SARIF output
-
railguard
Secure runtime for Claude Code. The safer alternative to --dangerously-skip-permissions.
-
photon-messenger
Decentralized messenger with rolling-chain encryption
-
httpjail
Monitor and restrict HTTP/HTTPS requests from processes
-
roche-core
Universal sandbox orchestrator for AI agents — core library
-
health-backend
Daily wellness check‑in that handles PHI securely
-
exfiltrate_proxy
Proxy application for the exfiltrate crate
-
kryptonclaw
GitHub Actions & CI/CD security scanner with org-level batch scanning and optional red-team probing
-
claude-code-bouncer
Security watchdog for Claude Code — monitors sessions in real-time and kills compromised ones
-
maec-rs
MAEC (Malware Attribute Enumeration and Characterization) data model library for Rust
-
exfiltrate_cli
Command line utility for the exfiltrate crate
-
adversaria
Adversarial Testing Harness for Large Language Models
-
nullsec-discord-shield
Discord token hardening and anti-theft protection - Monitors, encrypts, and protects Discord tokens from stealers and grabbers
-
secret-box
Safe boxing mechanism for sensitive values with automatic zeroization
-
yadacha
symmetric cipher that combines chacha20 and very large private keys
-
rg-policy
Policy engine for Railguard: secret scanning, dangerous command detection, path protection
-
dome-ward
Injection detection, schema integrity, and heuristic analysis for MCPDome
-
skg-hook-security
Security middleware for skelegent — redaction and exfiltration detection
-
rek2_httpserver
HTTP server that accepts POST data to exfiltrate files from remote servers to local computer during hacking and penetration testing
-
neuron-hooks
Hook registry and composition for neuron
-
leviathan-driver
Windows kernel-mode EDR/XDR driver framework in Rust - callbacks, filters, detection, forensics
-
neuron-hook-security
Security hooks for neuron — redaction and exfiltration detection
-
fubar-cli
Formidable Unix Binary Arsenal & Repository
-
quic-exfil
Covert data exfiltration by mimicking QUIC server-side connection migrations
-
telegram-claude-yolo-bot
A Telegram bot that bridges Claude CLI interactions
-
zeph-core
Core agent loop, configuration, context builder, metrics, and vault for Zeph
-
ansi-diff
diff successive buffers with embedded ansi codes, outputting a minimal change
-
crabby-webshell-generator
Crabby is a tool developed to generate webshells written in - insert your desired webshell language -. It is designed to be used by red teams to aid in lateral movement, privilege escalation, and data exfiltration.
-
isotope
scans AWS services and makes suggestions on how to improve them using Artificial Intelligence
-
brchd
Data exfiltration toolkit
-
exfiltrate_internal
Internal utilities for the exfiltrate crate
-
safe-package
A security wrapper for package managers
-
rental
A macro to generate safe self-referential structs, plus premade types for common use cases
-
attackerkb-api-rs
AttackerKB API
-
ctv_emulators
CTV Emulator Trait
-
html-safe-md
Convert untrusted HTML to safe markdown. No remote fetches, no scripts, no tracking pixels.
Try searching with DuckDuckGo or on crates.io.