Skip to content
View inkz's full-sized avatar

Organizations

@semgrep @try-it-out

Block or report inkz

Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

Automagically reverse-engineer REST APIs via capturing traffic

HTML 9,269 347 Updated Mar 16, 2026

Extract URLs, paths, secrets, and other interesting bits from JavaScript

Go 1,784 138 Updated May 22, 2024

A tool for auditing endpoints defined in exposed (Swagger/OpenAPI) definition files.

Go 795 108 Updated Mar 20, 2026

A resources for who want to learn and get deep into client-side bugs

426 57 Updated Dec 8, 2024

Audit your GitHub Actions workflow runs to see exactly which Actions were downloaded

JavaScript 82 6 Updated Mar 21, 2026

tool designed for identifying vulnerabilities in open source codebases at scale. It can gather and filter on key repository metrics such as popularity and project size

Go 235 22 Updated Feb 6, 2025

Deobfuscate Javascript code using ChatGPT

TypeScript 3,144 197 Updated Feb 2, 2026

Mapping from bug bounty and vulnerability disclosure programs to respective GitHub organizations

Shell 85 22 Updated Mar 21, 2026

Static analysis for GitHub Actions

Rust 3,819 148 Updated Mar 21, 2026

RESTler is the first stateful REST API fuzzing tool for automatically testing cloud services through their REST APIs and finding security and reliability bugs in these services.

Python 2,878 322 Updated Mar 18, 2026

An interactive TLS-capable intercepting HTTP proxy for penetration testers and software developers.

Python 42,746 4,490 Updated Mar 18, 2026

Integrates Semgrep static analysis with AI-powered recommendations to enhance code security and automate remediation.

Python 4 Updated Feb 22, 2025

Available for legacy purposes. New users please see Jalangi2 https://github.com/Samsung/jalangi2

JavaScript 123 28 Updated May 29, 2015

Dynamic analysis framework for JavaScript

JavaScript 485 123 Updated Jan 10, 2026

A Node.js vulnerability finding tool.

JavaScript 96 18 Updated Aug 7, 2025

Burp Suite extension for testing Passkey systems.

Java 75 4 Updated Apr 1, 2025

🧪 Correlate Semgrep scans with Python test coverage to prioritize SAST findings and get bug fix suggestions via a self-hosted LLM.

Python 42 1 Updated Dec 12, 2024

Living Off The Land Binaries And Scripts - (LOLBins and LOLScripts)

XSLT 8,386 1,120 Updated Mar 16, 2026

Awesome secure by default libraries to help you eliminate bug classes!

701 26 Updated Dec 6, 2025

Treat EventEmitter-like object using Async/Await, Async Iterator.

TypeScript 35 Updated Sep 6, 2025

GitHub Actions Goat: Deliberately Vulnerable GitHub Actions CI/CD Environment

JavaScript 496 303 Updated Jun 27, 2025

:octocat: Static checker for GitHub Actions workflow files

Go 3,711 205 Updated Mar 20, 2026

Quick SQL Scanner, Dorker, Webshell injector PHP

PHP 251 39 Updated Mar 14, 2024

RIPS - A static source code analyser for vulnerabilities in PHP scripts

PHP 323 74 Updated Jan 3, 2022
Java 229 25 Updated Dec 18, 2025

Some personal stuff that I observed help frustrated and talented art students over 10+ years making, learning and teaching art professionally for no reason.

HTML 431 4 Updated Sep 1, 2022

Set of icons representing programming languages, designing & development tools

CSS 11,521 2,443 Updated Mar 16, 2026

Secure OpenVPN installer for Debian, Ubuntu and CentOS

Shell 42 18 Updated Feb 6, 2025

Former GUI client for gRPC services. No longer maintained.

TypeScript 9,006 470 Updated Jan 4, 2023

This project hosts security advisories and their accompanying proof-of-concepts related to research conducted at Google which impact non-Google owned code.

C 4,391 524 Updated Mar 18, 2026
Next