Security and PKI

Keamanan & PKI

37 tools · Kategori asli: Security and PKI

  • aikido.dev

    All-in-one appsec platform covering SCA, SAST, CSPM, DAST, Secrets, IaC, Malware, Container scanning, EOL,... Free plan includes two users, scanning of 10 repos, 1 cloud, 2 containers & 1 domain.

    https://www.aikido.dev

  • CertKit

    Manage SSL Certificate issuance, renewal, and monitoring. Search the Certificate Transparency Logs. Free for 3 certificates and 1 user after the beta.

    https://www.certkit.io/certificate-management

  • CertObserver CT Search

    Find public SSL/TLS certificates recorded in Certificate Transparency logs. CT search is free but CT monitoring is not.

    https://certobserver.com/ct-search

  • CertPost

    Live SSL/TLS certificate monitoring on port 443 or custom ports (SMTP/IMAP). Reads the served certificate on the wire, full chain verification, and alerts via email or webhook before expiration. Free tier includes 3 certificates monitored forever.

    https://www.certpost.ai

  • Corgea

    Free autonomous security platform that finds, validates and fixes insecure code and packages across +20 languages and frameworks. Free plan includes 1 user and 2 repos.

    https://corgea.com/

  • crypteron.com

    Cloud-first, developer-friendly security platform prevents data breaches in .NET and Java applications

    https://www.crypteron.com/

  • CyberChef

    A simple, intuitive web app for analyzing and decoding/encoding data without dealing with complex tools or programming languages. Like a Swiss army knife of cryptography & encryption. All features are free to use, with no limit. Open source if you wish to self-host.

    https://gchq.github.io/CyberChef/

  • Datree

    Open Source CLI tool to prevent Kubernetes misconfigurations by ensuring that manifests and Helm charts follow best practices as well as your organization’s policies

    https://www.datree.io/

  • Dependabot

    Automated dependency updates for Ruby, JavaScript, Python, PHP, Elixir,

    https://dependabot.com/

  • DJ Checkup

    Scan your Django site for security flaws with this free, automated checkup tool. Forked from the Pony Checkup site.

    https://djcheckup.com

  • Doppler

    Universal Secrets Manager for application secrets and config, with support for syncing to various cloud providers. Free for five users with basic access controls.

    https://doppler.com/

  • Dotenv

    Sync your .env files, quickly & securely. Stop sharing your .env files over insecure channels like Slack and email, and never lose an important .env file again. Free for up to 3 teammates.

    https://dotenv.org/

  • GitGuardian

    Keep secrets out of your source code with automated secrets detection and remediation. Scan your git repos for 350+ types of secrets and sensitive files - Free for individuals and teams of 25 developers or less.

    https://www.gitguardian.com

  • HasMySecretLeaked

    Search across 20 million exposed secrets in public GitHub repositories, gists, issues,and comments for Free

    https://gitguardian.com/hasmysecretleaked

  • Have I been pwned?

    REST API for fetching the information on the breaches.

    https://haveibeenpwned.com

  • HimitsuShell

    A shell script DRM compiler that converts shell scripts into obfuscated binaries using an embedded shell interpreter and anti-debugging (alternative to shc). Free unlimited web edition.

    https://himitsushell.com

  • hostedscan.com

    Online vulnerability scanner for web applications, servers, and networks. Ten free scans per month.

    https://hostedscan.com

  • Infisical

    Open source platform that lets you manage developer secrets across your team and infrastructure: everywhere from local development to staging/production 3rd-party services. Free for up to 5 developers.

    https://infisical.com/

  • inspect.software

    Public record of automated open-source repository audits: security posture, maintainability, dependency health, and malicious-package checks, with a versioned methodology and grade badges. Free tier: full access to all published reports, automatic coverage of repositories above the public-interest threshold (≥500 stars, ≥50 forks, or org-owned with ≥250 stars), embeddable badges, and 100 starting credits (5 inspections) for below-threshold repositories.

    https://inspect.software/

  • Internet.nl

    Test for modern Internet Standards like IPv6, DNSSEC, HTTPS, DMARC, STARTTLS and DANE

    https://internet.nl

  • IntoDNS.ai

    DNS and email security analyzer that checks SPF, DKIM, DMARC, DNSSEC, BIMI, MTA-STS, and 40+ blacklists with AI-powered explanations and fix suggestions. 100% free, no signup required.

    https://intodns.ai

  • letsencrypt.org

    Free SSL Certificate Authority with certs trusted by all major browsers

    https://letsencrypt.org/

  • meterian.io

    Monitor Java, Javascript, .NET, Scala, Ruby, and NodeJS projects for security vulnerabilities in dependencies. Free for one private project, unlimited projects for open source.

    https://www.meterian.io/

  • Mozilla Observatory

    Find and fix security vulnerabilities in your site.

    https://observatory.mozilla.org/

  • Otterwatch

    Daily SSL/TLS certificate monitoring: expiry alerts (30/7/1 day), chain and OCSP revocation checks, and certificate transparency issuance history. Free forever for 5 domains, no credit card.

    https://otterwatch.dev/

  • Protectumus

    Free website security check, site antivirus, and server firewall (WAF) for PHP. Email notifications for registered users in the free tier.

    https://protectumus.com

  • Public Cloud Threat Intelligence

    High confidence Indicator of Compromise(IOC) targeting public cloud infrastructure, A portion is available on github (https://github.com/unknownhad/AWSAttacks). Full list is available via API

    https://cloudintel.himanshuanand.com/

  • pyup.io

    Monitor Python dependencies for security vulnerabilities and update them automatically. Free for one private project, unlimited projects for open source.

    https://pyup.io

  • qualys.com

    Find web app vulnerabilities, audit for OWASP Risks

    https://www.qualys.com/community-edition

  • SikkerKey

    Machine authenticated secrets manager, includes 2 projects, 2 bootstrapped machines, 20 secrets and 7 days audit log retention for free.

    https://sikkerkey.com

  • Smart Grow Vault

    Secure Enterprise-grade platform for managing environment variables and secrets. Free tier includes up to 3 applications and 150 secrets per project.

    https://vault.smart-grow.app/

  • Socket

    Free supply chain security for individual developers, small teams, and open source projects. Includes a free app and firewall CLI tool to protect your code from vulnerable and malicious dependencies. Detects 70+ indicators of supply chain risk.

    https://socket.dev

  • ssllabs.com

    Intense analysis of the configuration of any SSL web server

    https://www.ssllabs.com/ssltest/

  • Sucuri SiteCheck

    Free website security check and malware scanner

    https://sitecheck.sucuri.net

  • TestTLS.com

    Test an SSL/TLS service for secure server configuration, certificates, chains, etc. Not limited to HTTPS.

    https://testtls.com

  • Virgil Security

    Tools and services for implementing end-to-end encryption, database protection, IoT security, and more in your digital solution. Free for applications with up to 250 users.

    https://virgilsecurity.com/

  • semgrep

    Scan code for security issues and vulnerable dependencies with SAST and SCA. Free tier includes up to 10 contributors and 10 private repos (unlimited public repos).

    https://semgrep.dev

Menampilkan 37 dari 37 tools. Klik nama untuk membuka situs resmi (tercatat).

Kategori lain