PyRank
  • Insights
  • PyPI
  • GitHub
  • Search
  • Compare
  • Advisories
  • Ecosystem
  • About

Devsecops Python Packages

Python packages with the GitHub topic devsecops. Sorted by relevance, with stars and monthly downloads.
pyupio
safety

Safety checks Python dependencies for known security vulnerabilities and suggests the proper remediations for vulnerabilities detected.

6M 2K 180
CrowdStrike
crowdstrike-falconpy

The CrowdStrike Falcon SDK for Python

2M 491 164
GitGuardian
ggshield

Detect and validate 500+ types of hardcoded secrets with advanced checks. Use it as a pre-commit hook, GitHub Action, or CLI for proactive secret detection and security.

592K 2K 196
GitGuardian
pygitguardian

Python API client library for the GitGuardian API

536K 87 15
xonsh
xonsh

🐚 Python-powered shell. Full-featured, cross-platform and AI-friendly.

411K 9K 724
prowler-cloud
prowler

Prowler is the world’s most widely used open-source cloud security platform that automates security and compliance across any cloud environment.

211K 14K 2K
anthonyharrison
lib4sbom

Library to ingest and generate SBOMs

197K 42 21
dxa4481
trufflehog

Find, verify, and analyze leaked credentials

154K 26K 2K
ajinabraham
njsscan

njsscan is a semantic aware SAST tool that can find insecure code patterns in your Node.js applications.

150K 426 103
duriantaco
skylos

Open-source PR gate for Python, TS/JS, Java, and Go. Stop merging dead code, secrets, security flows, and AI-code regressions.

88K 437 20
duriantaco
ca9

Open source Python CVE reachability analysis for evidence-backed SCA triage. Turn Snyk, Dependabot, Trivy, pip-audit, and OSV alerts into fix, suppress, or investigate decisions.

69K 5 0
anthonyharrison
distro2sbom

Generates SBOM files from system packaging information

53K 39 17
anthonyharrison
lib4vex

Library to ingest and generate VEX documents

49K 20 4
anthonyharrison
csaf-tool

CSAF generator and validator

41K 9 3
intel
cve-bin-tool

The CVE Binary Tool helps you determine if your system includes known vulnerabilities. You can scan binaries for over 350 common, vulnerable components (openssl, libpng, libxml2, expat and others), or if you know the components used, you can get a list of known vulnerabilities associated with an SBOM or a list of components and versions.

21K 2K 621
msaad00
agent-bom

Open security scanner for AI supply chain and infrastructure: agents, MCP, containers, cloud, GPU, and runtime with blast-radius analysis.

20K 20 7
owasp-dep-scan
owasp-depscan

OWASP dep-scan is a next-generation security and risk audit tool based on known vulnerabilities, advisories, and license limitations for project dependencies. Both local repositories and container images are supported as the input, and the tool is ideal for integration.

18K 1K 131
ncouture
mockssh

Mock an SSH server and define all commands it supports (Python, Twisted)

16K 130 25
ochronasec
ochrona

A command line tool for detecting vulnerabilities in Python dependencies and doing safe package installs

16K 51 8
anthonyharrison
sbom2doc

Transform SBOM contents into a formatted document including markdown and PDF formats

15K 41 9
owasp-dep-scan
ds-analysis-lib

OWASP dep-scan is a next-generation security and risk audit tool based on known vulnerabilities, advisories, and license limitations for project dependencies. Both local repositories and container images are supported as the input, and the tool is ideal for integration.

15K 1K 131
owasp-dep-scan
ds-xbom-lib

OWASP dep-scan is a next-generation security and risk audit tool based on known vulnerabilities, advisories, and license limitations for project dependencies. Both local repositories and container images are supported as the input, and the tool is ideal for integration.

15K 1K 131
owasp-dep-scan
ds-reporting-lib

OWASP dep-scan is a next-generation security and risk audit tool based on known vulnerabilities, advisories, and license limitations for project dependencies. Both local repositories and container images are supported as the input, and the tool is ideal for integration.

15K 1K 131
bancolombia
devsecops-engine-tools

Toolchain for the evaluation of different devsecops practices

14K 45 18
    • Data from PyPI, GitHub, ClickHouse, and BigQuery