The Contrast Runtime Security Platform is an application security solution that provides continuous security monitoring and protection throughout the application lifecycle. The platform combines several security capabilities: - Application Detection and Response (ADR) for identifying and responding to threats - Interactive Application Security Testing (IAST) for testing during development - Runtime Application Self-Protection (RASP) for production security - Static Application Security Testing (SAST) for code analysis - Software Composition Analysis (SCA) for managing software dependencies - API security testing and protection Key features include: - Real-time threat detection and blocking - Development-time security testing and feedback - Supply chain security monitoring - API security analysis - Compliance testing capabilities - CI/CD pipeline integration - DevSecOps workflow support The platform aims to provide visibility into application layer security issues and automate security testing throughout the software development lifecycle while protecting applications in production environments.
FEATURES
EXPLORE BY TAGS
SIMILAR TOOLS
A modular Python tool that obfuscates Android applications by manipulating decompiled smali code, resources, and manifest files without requiring source code access.
QIRA is a competitor to strace and gdb with MIT license, supporting Ubuntu and Docker for wider compatibility.
A comprehensive toolkit for web application security testing, offering a range of products and solutions for identifying vulnerabilities and improving security posture.
AndroBugs Framework is an Android vulnerability analysis system that scans mobile applications for security vulnerabilities, missing best practices, and dangerous shell commands.
ThreatLocker is an enterprise cybersecurity platform that provides comprehensive endpoint protection and zero-trust security to prevent ransomware, viruses, and other malicious software from running on endpoints.
A Nuxt 3 security module that automatically implements OWASP security patterns through HTTP headers, middleware, and various protection mechanisms including CSP, XSS validation, CORS, and CSRF protection.
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.
A deliberately vulnerable Java web application designed for educational purposes to teach web application security concepts and common vulnerabilities.
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.
PINNED

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.