AI Dev Impact Lab JA
← Topics ranking · 2026-08
GITHUB TOPIC

#devsecops

GitHub repositories that have self-applied the topic "devsecops" — a creator-tagged metadata that surfaces how AI projects describe themselves.

19
tagged repos
58
top 19 stars
5
with tool sigs
19
shown

REPOS Repos for #devsecops (top 19 by stars)

JeongJaeSoon/agent-guard

Real-time secret-leak guardrails for AI coding agents (Claude Code, Codex), Git hooks, and CI.

Shell 19 AI 100 Solo live ↗
NovaCode37/claude-security-skills

Production-ready Claude Code skills for cybersecurity — secret scanning, SAST, prompt-injection testing, HTTP/JWT/dependency auditing. Zero dependencies.

Python 11 AI 100
RefuseHQ/refuse

Open-source server that refuses vulnerable package installs. The backend the refuse CLI shim calls.

TypeScript 10 AI 45 live ↗
Hao610/AI-Model-Atlas

Dual-track AI reference architecture: RAG system design & AI Security Engineering (EN/ZH) | 双轨 AI 参考架构:RAG 系统设计与 AI 安全工程

Python 5 AI 100 Solo live ↗
Actenon/actenon-scan

Find where agent-controlled intent reaches consequential actions without an authority check. Python + TypeScript + Go. Zero-dependency SAST for AI agents.

Python 4 AI 70
Connected-Mate/corporate-launcher

Turn any public AI coding CLI (Claude Code, Codex, Gemini, Cursor, Cline, Aider, opencode) into your company's internal, audit-grade, white-labeled launcher — one structured interview, 15 cyber controls, 30+ audit rules, compliance .docx, universal cost tracking.

Python 3 AI 70 Solo live ↗
ArisRhiannon/vibecheck

Offline, no-AI "safe to ship?" gate for vibe-coded apps — finds the security mistakes AI coding agents make (secrets, unprotected routes, eval-RCE, SQLi, CORS, JWT, leaked keys). CLI + MCP, agent-runnable.

TypeScript 2 AI 70 Solo 1 sig live ↗
imMamdouhaboammar/dokion

Cross-agent security & quality hardening engine for Claude Code, Codex, and Gemini CLI. Enforces user-authored playbooks, verifiable evidence gates, and auditable readiness reports.

TypeScript 2 AI 70 2 sig
BrendenKennedy/claude-for-ai-platforms

Claude Code scaffold for building AI platforms securely — agent/LLM security, Kubernetes, SRE, observability, identity, and supply chain, grounded in published framework canon (OWASP, NIST, CIS, SLSA). Data-science lanes included.

Shell 1 AI 100 1 sig
VerzCar/3powers

Make agents prove their work. Independent verification, deterministic quality gates, and signed evidence for AI-generated code.

Python 1 AI 70 Solo 3 sig live ↗
Gowrav-M/agent-skillguard

Policy-as-code admission controller for AI agent skills and MCP tools. SkillBOM, lockfiles, and supply-chain baselines.

TypeScript 0 AI 100
JSiapoDEV/vibeward

Stops the insecure prompt before your AI agent runs it - and audits what it already shipped. Deterministic Claude Code guardrail (no LLM) catching "disable RLS" or "service_role in the frontend" in en/es/pt, plus a read-only scanner for exposed secrets, open Supabase RLS and Firebase leaks.

TypeScript 0 AI 70 Solo live ↗
Arkessiah/Basalt

A purple-team of AI agents that audits code security and proves findings by execution — not by opinion.

Python 0 AI 70
actradeck/actradeck

Vendor-neutral cockpit for supervising AI coding agents in real time — secret redaction, approval gates, and an append-only audit trail. A local-first sidecar + web console for Claude Code, Codex, and beyond.

TypeScript 0 AI 70 live ↗
Munizada/project-audit-council

Evidence-based multi-pass repository audits for Codex, Claude Code, and Agent Skills-compatible coding agents.

Python 0 AI 70 Solo 2 sig live ↗
CrampsP/sentinelforge

Local-first security release checker for authorized code, AI apps, freelancers, and small teams

Python 0 AI 70
SYCO7/codemoat

Security scanner for AI-generated code — GitHub Action + CLI wrapping Semgrep, Gitleaks, and an AI-agent-specific rule pack.

TypeScript 0 AI 60 Solo live ↗
avgoai/aos-workflow-gate

GitHub Action + CLI for replayable CI/PR/release gate decisions - zero-config Self-Test turning checks, scanners, and AI-agent signals into deterministic, tamper-evident PASS/WARN/BLOCK records. Read-only, zero dependencies, Apache-2.0.

Python 0 AI 60
jpoindexter/security-skills

Agent skills for running security scans — secret scanning (gitleaks), dependency CVE audit (npm/cargo/osv), SAST (semgrep), and a composed pre-release gate. Grounded SKILL.md runbooks for Vanta / Claude Code / any skill-aware agent. MIT.

Shell 0 AI 60

RELATED Other topics · full topics ranking →

#claude-code

1,555

#ai-agents

1,156

#llm

1,066

#claude

936

#python

802

#ai

737

#developer-tools

723

#mcp

719

#codex

517

Aggregated by case-insensitive match against topics_json of each repo's latest content snapshot. methodology