Shift-left attack-path analysis for DevSecOps. Correlates the scanners you already run into a live graph and flags, in the pull request, any reachable path from internet exposure through excessive privilege to a sensitive asset - then ships the fix as a PR. Open source (Apache-2.0).

0 stars 0 forks 0 watchers Go Apache License 2.0
apache-age appsec attack-graph attack-path aws azure cnapp cspm devsecops golang graphql kubernetes open-source react sast sbom security supply-chain
5 Open Issues Need Help Last updated: Aug 3, 2026

Open Issues Need Help

View All on GitHub
good first issue

Shift-left attack-path analysis for DevSecOps. Correlates the scanners you already run into a live graph and flags, in the pull request, any reachable path from internet exposure through excessive privilege to a sensitive asset - then ships the fix as a PR. Open source (Apache-2.0).

Go
#apache-age#appsec#attack-graph#attack-path#aws#azure#cnapp#cspm#devsecops#golang#graphql#kubernetes#open-source#react#sast#sbom#security#supply-chain
feat: Add SUPPORT.md about 2 hours ago
good first issue

Shift-left attack-path analysis for DevSecOps. Correlates the scanners you already run into a live graph and flags, in the pull request, any reachable path from internet exposure through excessive privilege to a sensitive asset - then ships the fix as a PR. Open source (Apache-2.0).

Go
#apache-age#appsec#attack-graph#attack-path#aws#azure#cnapp#cspm#devsecops#golang#graphql#kubernetes#open-source#react#sast#sbom#security#supply-chain
good first issue

Shift-left attack-path analysis for DevSecOps. Correlates the scanners you already run into a live graph and flags, in the pull request, any reachable path from internet exposure through excessive privilege to a sensitive asset - then ships the fix as a PR. Open source (Apache-2.0).

Go
#apache-age#appsec#attack-graph#attack-path#aws#azure#cnapp#cspm#devsecops#golang#graphql#kubernetes#open-source#react#sast#sbom#security#supply-chain
good first issue

Shift-left attack-path analysis for DevSecOps. Correlates the scanners you already run into a live graph and flags, in the pull request, any reachable path from internet exposure through excessive privilege to a sensitive asset - then ships the fix as a PR. Open source (Apache-2.0).

Go
#apache-age#appsec#attack-graph#attack-path#aws#azure#cnapp#cspm#devsecops#golang#graphql#kubernetes#open-source#react#sast#sbom#security#supply-chain

Shift-left attack-path analysis for DevSecOps. Correlates the scanners you already run into a live graph and flags, in the pull request, any reachable path from internet exposure through excessive privilege to a sensitive asset - then ships the fix as a PR. Open source (Apache-2.0).

Go
#apache-age#appsec#attack-graph#attack-path#aws#azure#cnapp#cspm#devsecops#golang#graphql#kubernetes#open-source#react#sast#sbom#security#supply-chain