A port of Rack::Honeypot to Stack for PHP. This middleware acts as a spam trap, inserting a hidden text field into every form that spambots will want to fill in, but is not used by the app. It checks incoming requests for unexpected values in the field, booting spambots to a dead end blank page. Options can be passed to customize the behavior.
FEATURES
EXPLORE BY TAGS
SIMILAR TOOLS
WordPress plugin to reduce comment spam with a smarter honeypot.
Argus-SAF is a static analysis framework for security vetting Android applications.
An API security platform that provides automated security testing, runtime protection, and lifecycle management for APIs through integrated tools and controls.
A developer-first, API-driven platform that provides development teams with a suite of tools to improve code quality, security, and engineering performance, seamlessly integrated into their existing development workflows.
A python open source CMS scanner that automates the process of detecting security flaws of the most popular CMSs.
A Dynamic Application Security Testing (DAST) platform that provides automated security testing for web applications, APIs, and LLM-powered applications throughout the software development lifecycle.
A command-line tool that scans NPM packages and ZIP files to detect exposed secrets and sensitive credentials in source code and configuration files.
Tracee is a runtime security and observability tool using eBPF technology.
PINNED

Mandos
Fractional CISO service that helps B2B companies implement security leadership to win enterprise deals, achieve compliance, and develop strategic security programs.

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.