Heeler is an application security platform that provides runtime threat modeling and vulnerability management capabilities for organizations developing software applications. The platform focuses on analyzing open-source vulnerabilities in production applications through several key functions: - Runtime threat modeling to identify which vulnerabilities are actually reachable and exploitable in production environments - Automated remediation workflow management to streamline the fixing of identified vulnerabilities - CI/CD pipeline integration for implementing security guardrails and detecting material changes before production deployment - Centralized risk management with ownership routing and SLA tracking - Integration capabilities with third-party security tools and platforms - Real-time validation of remediation efforts - Automated root cause analysis for security issues The system helps organizations prioritize vulnerabilities based on business impact and production context, while providing evidence-based remediation guidance to development teams. It includes features for tracking application dependencies, mapping deployments to source code, and maintaining visibility of the application security posture across the software development lifecycle.
FEATURES
EXPLORE BY TAGS
SIMILAR TOOLS
A simple Swagger-ui scanner that detects old versions vulnerable to various XSS attacks
A web application security testing platform that helps you test your knowledge on web application security through realistic scenarios with known vulnerabilities.
Threatspy is an application security testing platform that enables developers and security teams to discover, analyze, prioritize, and remediate vulnerabilities in web applications and APIs through an automated end-to-end process.
Cutting-edge technology for developing security applications within the Linux kernel.
A tool to profile web applications based on response time discrepancies.
A web security tool that scans for vulnerabilities and known attacks.
StaCoAn is a cross-platform tool for static code analysis on mobile applications, emphasizing the identification of security vulnerabilities.
A plugin for viewing, detecting weak configurations, and generating Content Security Policy headers.
PINNED

Mandos
Fractional CISO service that helps B2B companies implement security leadership to win enterprise deals, achieve compliance, and develop strategic security programs.

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.