Skip to content
Change the repository type filter

All

    Repositories list

    • OWASP Benchmark is a test suite designed to verify the speed and accuracy of software vulnerability detection tools. A fully runnable web app written in Java, it supports analysis by Static (SAST), Dynamic (DAST), and Runtime (IAST) tools that support Java.
      Java
      GNU General Public License v2.0
      1.2k008Updated Apr 29, 2025Apr 29, 2025
    • bearer

      Public
      Code security scanning tool (SAST) to discover, filter and prioritize security and privacy risks.
      Go
      Other
      1232.3k914Updated Apr 28, 2025Apr 28, 2025
    • Rules for Bearer SAST
      JavaScript
      Other
      82700Updated Apr 15, 2025Apr 15, 2025
    • OWASP Juice Shop: Probably the most modern and sophisticated insecure web application
      TypeScript
      MIT License
      13k003Updated Mar 18, 2025Mar 18, 2025
    • Ruby on Rails application like RailsGoat
      Ruby
      6207Updated Mar 18, 2025Mar 18, 2025
    • OWASP Benchmark Project Utilities - Provides scorecard generation and crawling tools for Benchmark style test suites.
      Java
      GNU General Public License v3.0
      55001Updated Mar 14, 2025Mar 14, 2025
    • Packages from Bearer on homebrew
      Ruby
      1000Updated Feb 19, 2025Feb 19, 2025
    • gon

      Public
      Sign, notarize, and package macOS CLI tools and applications written in any language. Available as both a CLI and a Go library.
      Go
      MIT License
      97820Updated Jan 6, 2025Jan 6, 2025
    • HTML grammar for Tree-sitter
      C
      MIT License
      83000Updated May 20, 2024May 20, 2024
    • Run Bearer as a GitHub Action
      Other
      82130Updated Apr 26, 2024Apr 26, 2024
    • Web application build Golang with Vulnerability
      Go
      141000Updated Feb 19, 2024Feb 19, 2024
    • railsgoat

      Public
      A vulnerable version of Rails that follows the OWASP Top 10
      HTML
      MIT License
      724000Updated Feb 13, 2024Feb 13, 2024
    • NodeGoat

      Public
      The OWASP NodeGoat project provides an environment to learn how OWASP Top 10 security risks apply to web applications developed using Node.js and how to effectively address them.
      HTML
      Apache License 2.0
      1.8k001Updated Feb 13, 2024Feb 13, 2024
    • go-vcsurl

      Public
      VCS repository URL parsing library for Go
      Go
      BSD 2-Clause "Simplified" License
      7000Updated Jan 12, 2024Jan 12, 2024
    • DefectDojo is a DevSecOps and vulnerability management tool.
      HTML
      BSD 3-Clause "New" or "Revised" License
      1.6k000Updated Jun 20, 2023Jun 20, 2023
    • WebGoat

      Public
      WebGoat is a deliberately insecure application
      JavaScript
      Other
      6.6k100Updated Apr 10, 2023Apr 10, 2023
    • actions

      Public
      [Deprecated] GitHub Actions to run Bearer Broker
      Shell
      1700Updated Feb 27, 2023Feb 27, 2023
    • A plugin for Kong to remediate security & compliance risks by automatically mapping your data flows
      Lua
      MIT License
      0100Updated Feb 5, 2021Feb 5, 2021