Best Open Source Security Tools

Open source security tools, ranked by score and analyzed honestly. Part of our Security & Auth coverage.

Ranked by score. Updated weekly.

1

Gitleaks

83

Find secrets with Gitleaks

26,970Gopermissive
2

Pi-hole

81

Network-wide ad blocking DNS

58,600Shellweak-copyleft
3

Infisical

81

Open source secret management platform

26,824TypeScriptpermissive
4

CrowdSec

81

Participative open-source security engine

13,329Gopermissive
5

Trivy

79

Vulnerability, misconfiguration, and secrets scanner

35,000Gopermissive
6

Falco

79

Cloud native runtime security

8,942C++permissive
7

SOPS

78

Simple and flexible tool for managing secrets

21,782Goweak-copyleft
8

maltrail

77

Malicious traffic detection system

8,442Pythonpermissive
9

Vaultwarden

76

Lightweight Bitwarden-compatible server

60,270Ruststrong-copyleft
10

SafeLine

76

21,294Gocopyleft
11

Modlishka

75

5,318Gopermissive
12

TruffleHog

73

Find and verify leaked credentials

26,237Gostrong-copyleft
13

deepsec

73

Deepsec is a security harness for finding vulnerabilities in your codebase powered by coding agents

2,520TypeScriptpermissive
14

Vault

71

Secrets management and encryption as a service

35,617Gosource-available
15

teller

71

3,206Rustpermissive
16

METATRON

71

AI-powered penetration testing assistant using local LLM on linux (Parrot OS)

2,946Pythonpermissive
17

nono

71

Kernel-enforced agent sandbox and security CLI/SDKs with capability-based isolation.

2,393Rustpermissive
18

cloudquery

70

Data pipelines for cloud config and security data. Build cloud asset inventory, CSPM, FinOps, and vulnerability management solutions. Extract from AWS, Azure, GCP, and 70+ cloud and SaaS sources.

6,404Goweak-copyleft
19

leak-check

63

个人信息 “泄漏” 检测接口

3,871Python
20

Passbolt

53

Passbolt Community Edition (CE) API. The JSON API for the open source password manager for teams!

5,898PHP

Explore More Categories