20 packages matching opengrep

opengrep

v1.0.0 · 1 year ago

95
0-100 score computed by this site from verifiable signals only: known OSV.dev advisories affecting this exact version, how recently it was published, and the repository's OpenSSF Scorecard.

No description provided.

10Downloads across all versions in the last 7 days, from the official npm downloads API.

No known vulnerabilities

Known vulnerabilities affecting v1.0.0 (the latest release), from the OSV.dev database.

@codacy/tools-opengrep-1

v0.23.1 · 13 days ago

100
0-100 score computed by this site from verifiable signals only: known OSV.dev advisories affecting this exact version, how recently it was published, and the repository's OpenSSF Scorecard.

Opengrep adapter — CLI-mode multi-language SAST scanner

865Downloads across all versions in the last 7 days, from the official npm downloads API.MITLicense declared in the package manifest.

No known vulnerabilities

Known vulnerabilities affecting v0.23.1 (the latest release), from the OSV.dev database.

@stefan412/opengrep-win32-x64

v1.30.0 · 14 days ago

100
0-100 score computed by this site from verifiable signals only: known OSV.dev advisories affecting this exact version, how recently it was published, and the repository's OpenSSF Scorecard.

Opengrep engine binary for Windows x64. Bundled as a per-platform optionalDependency (sharp pattern) so probatio's install is offline and --ignore-scripts safe.

5Downloads across all versions in the last 7 days, from the official npm downloads API.LGPL-2.1License declared in the package manifest.

No known vulnerabilities

Known vulnerabilities affecting v1.30.0 (the latest release), from the OSV.dev database.

@stefan412/opengrep-rules

v1.30.1 · 13 days ago

100
0-100 score computed by this site from verifiable signals only: known OSV.dev advisories affecting this exact version, how recently it was published, and the repository's OpenSSF Scorecard.

The opengrep-rules corpus the floor scans with. Its own package because its licence differs from the engine's: LGPL-2.1 + Commons Clause is NOT open source, and must not contaminate probatio's Apache-2.0 manifest.

325Downloads across all versions in the last 7 days, from the official npm downloads API.SEE LICENSE IN LICENSELicense declared in the package manifest.

No known vulnerabilities

Known vulnerabilities affecting v1.30.1 (the latest release), from the OSV.dev database.

secret-monitoring-cli

v1.0.0 · 27 days ago

100
0-100 score computed by this site from verifiable signals only: known OSV.dev advisories affecting this exact version, how recently it was published, and the repository's OpenSSF Scorecard.

CLI that pairs OpenGrep AST analysis with BetterLeaks secret scanning to block credential leaks before they reach your repository.

5Downloads across all versions in the last 7 days, from the official npm downloads API.MITLicense declared in the package manifest.

No known vulnerabilities

Known vulnerabilities affecting v1.0.0 (the latest release), from the OSV.dev database.

@stefan412/opengrep-linux-x64

v1.30.0 · 14 days ago

100
0-100 score computed by this site from verifiable signals only: known OSV.dev advisories affecting this exact version, how recently it was published, and the repository's OpenSSF Scorecard.

Opengrep engine binary for Linux x64. Bundled as a per-platform optionalDependency (sharp pattern) so probatio's install is offline and --ignore-scripts safe.

8Downloads across all versions in the last 7 days, from the official npm downloads API.LGPL-2.1License declared in the package manifest.

No known vulnerabilities

Known vulnerabilities affecting v1.30.0 (the latest release), from the OSV.dev database.

@stefan412/opengrep-darwin-x64

v1.30.0 · 14 days ago

100
0-100 score computed by this site from verifiable signals only: known OSV.dev advisories affecting this exact version, how recently it was published, and the repository's OpenSSF Scorecard.

Opengrep engine binary for macOS x64. Bundled as a per-platform optionalDependency (sharp pattern) so probatio's install is offline and --ignore-scripts safe.

10Downloads across all versions in the last 7 days, from the official npm downloads API.LGPL-2.1License declared in the package manifest.

No known vulnerabilities

Known vulnerabilities affecting v1.30.0 (the latest release), from the OSV.dev database.

@stefan412/opengrep-darwin-arm64

v1.30.0 · 14 days ago

100
0-100 score computed by this site from verifiable signals only: known OSV.dev advisories affecting this exact version, how recently it was published, and the repository's OpenSSF Scorecard.

Opengrep engine binary for macOS arm64. Bundled as a per-platform optionalDependency (sharp pattern) so probatio's install is offline and --ignore-scripts safe.

6Downloads across all versions in the last 7 days, from the official npm downloads API.LGPL-2.1License declared in the package manifest.

No known vulnerabilities

Known vulnerabilities affecting v1.30.0 (the latest release), from the OSV.dev database.

@stefan412/opengrep-linux-arm64

v1.30.0 · 14 days ago

100
0-100 score computed by this site from verifiable signals only: known OSV.dev advisories affecting this exact version, how recently it was published, and the repository's OpenSSF Scorecard.

Opengrep engine binary for Linux arm64. Bundled as a per-platform optionalDependency (sharp pattern) so probatio's install is offline and --ignore-scripts safe.

6Downloads across all versions in the last 7 days, from the official npm downloads API.LGPL-2.1License declared in the package manifest.

No known vulnerabilities

Known vulnerabilities affecting v1.30.0 (the latest release), from the OSV.dev database.

argus-ci

v2.0.8 · 3 months ago

100
0-100 score computed by this site from verifiable signals only: known OSV.dev advisories affecting this exact version, how recently it was published, and the repository's OpenSSF Scorecard.

6-pass security & quality agent — Opengrep + Bearer + quality linter + ESLint/tsc + dep audit + Sonar — MCP server for Cursor/Claude + pre-commit gate

12Downloads across all versions in the last 7 days, from the official npm downloads API.MITLicense declared in the package manifest.

No known vulnerabilities

Known vulnerabilities affecting v2.0.8 (the latest release), from the OSV.dev database.

foxguard

v0.14.0 · 8 days ago

100
0-100 score computed by this site from verifiable signals only: known OSV.dev advisories affecting this exact version, how recently it was published, and the repository's OpenSSF Scorecard.

A security scanner as fast as a linter, written in Rust. 200+ built-in rules across 12 source languages.

234Downloads across all versions in the last 7 days, from the official npm downloads API.MIT OR Apache-2.0License declared in the package manifest.

No known vulnerabilities

Known vulnerabilities affecting v0.14.0 (the latest release), from the OSV.dev database.

tackbox

v0.1.99 · 3 days ago

100
0-100 score computed by this site from verifiable signals only: known OSV.dev advisories affecting this exact version, how recently it was published, and the repository's OpenSSF Scorecard.

ESLint and Markdown lint plugins, an Oh My Pi extension, plus direct error-reporting helpers for JavaScript and TypeScript.

95Downloads across all versions in the last 7 days, from the official npm downloads API.MITLicense declared in the package manifest.

No known vulnerabilities

Known vulnerabilities affecting v0.1.99 (the latest release), from the OSV.dev database.

oauthlint

v0.15.0 · 29 days ago

100
0-100 score computed by this site from verifiable signals only: known OSV.dev advisories affecting this exact version, how recently it was published, and the repository's OpenSSF Scorecard.

Catch the OAuth, OIDC, JWT, and MCP security bugs AI coding tools produce. CLI for the oauthlint-rules Semgrep pack, low false positives, CWE/OWASP-mapped fixes.

23Downloads across all versions in the last 7 days, from the official npm downloads API.MITLicense declared in the package manifest.

No known vulnerabilities

Known vulnerabilities affecting v0.15.0 (the latest release), from the OSV.dev database.

oauthlint-mcp

v0.2.7 · 29 days ago

100
0-100 score computed by this site from verifiable signals only: known OSV.dev advisories affecting this exact version, how recently it was published, and the repository's OpenSSF Scorecard.

Model Context Protocol server for OAuthLint. Lets AI coding tools scan their own generated OAuth/OIDC/JWT/session/CORS code for the anti-patterns OAuthLint catches, in-loop.

3Downloads across all versions in the last 7 days, from the official npm downloads API.MITLicense declared in the package manifest.

No known vulnerabilities

Known vulnerabilities affecting v0.2.7 (the latest release), from the OSV.dev database.

@assertumai/crown

v0.1.0-beta.1 · 2 months ago

100
0-100 score computed by this site from verifiable signals only: known OSV.dev advisories affecting this exact version, how recently it was published, and the repository's OpenSSF Scorecard.

Local companion CLI for the Crown security method MCP

2Downloads across all versions in the last 7 days, from the official npm downloads API.UNLICENSEDLicense declared in the package manifest.

No known vulnerabilities

Known vulnerabilities affecting v0.1.0-beta.1 (the latest release), from the OSV.dev database.

argus-codescan

v0.5.0 · 1 month ago

100
0-100 score computed by this site from verifiable signals only: known OSV.dev advisories affecting this exact version, how recently it was published, and the repository's OpenSSF Scorecard.

Security scanner for React, Next.js & Node — SCA, SAST, secrets. CSV reports. For SARIF/policy/CI use pip install argus-scan.

2Downloads across all versions in the last 7 days, from the official npm downloads API.MITLicense declared in the package manifest.

No known vulnerabilities

Known vulnerabilities affecting v0.5.0 (the latest release), from the OSV.dev database.

ai-repo-safety

v0.1.9 · 21 days ago

100
0-100 score computed by this site from verifiable signals only: known OSV.dev advisories affecting this exact version, how recently it was published, and the repository's OpenSSF Scorecard.

AI/vibe-coding repo safety skill with secret scanning, SAST, GitHub read guard, MCP safety, and incident cleanup.

7Downloads across all versions in the last 7 days, from the official npm downloads API.MITLicense declared in the package manifest.

No known vulnerabilities

Known vulnerabilities affecting v0.1.9 (the latest release), from the OSV.dev database.

codeinspectus

v3.2.0 · 17 days ago

100
0-100 score computed by this site from verifiable signals only: known OSV.dev advisories affecting this exact version, how recently it was published, and the repository's OpenSSF Scorecard.

CodeInspectus, by Synvoya — a local-first security MCP server and CLI with CI policy, versioned exports, evidence bundles, history, baselines, and approval-gated agent workflows. Zero network egress at scan time.

90Downloads across all versions in the last 7 days, from the official npm downloads API.Apache-2.0License declared in the package manifest.

No known vulnerabilities

Known vulnerabilities affecting v3.2.0 (the latest release), from the OSV.dev database.

@heyanon-arp/shield

v1.2.3 · 1 month ago

100
0-100 score computed by this site from verifiable signals only: known OSV.dev advisories affecting this exact version, how recently it was published, and the repository's OpenSSF Scorecard.

Mandatory content-security middleware for @heyanon-arp/cli — defends inbound briefs/deliverables and screens outbound payloads for credential leakage.

60Downloads across all versions in the last 7 days, from the official npm downloads API.MITLicense declared in the package manifest.

No known vulnerabilities

Known vulnerabilities affecting v1.2.3 (the latest release), from the OSV.dev database.

@symbioticsec/symbiotic-mcp-server

v1.0.1 · 9 months ago

100
0-100 score computed by this site from verifiable signals only: known OSV.dev advisories affecting this exact version, how recently it was published, and the repository's OpenSSF Scorecard.

Symbiotic CLI MCP Server for security scanning and analysis

64Downloads across all versions in the last 7 days, from the official npm downloads API.ISCLicense declared in the package manifest.

No known vulnerabilities

Known vulnerabilities affecting v1.0.1 (the latest release), from the OSV.dev database.