Alternatives
Products that do what Releasing Vulnerabilities of Open Source Software does
Thrilled to announce that very soon The List Of Vulnerabilities collected from multiple platforms including ( npm, Maven, Go, NuGet, PyPI, RubyGems, crates.io, Packagist, Linux, OSS-Fuzz ) will be live at https://vulert.com/vuln-list. In short we are making sure that no vulnerability is left unreported and your software/service is always protected from unexpected attacks. Who doesn’t know Vulert Yet: Vulert, without any integration, notifies you if a Security Issue is found in any of the open-source software you are relying upon. HOW DOES VULERT PROTECT YOU ? PRIVACY: You…
- 1

- 2

- 3

- 4

- 5NF
2014 · vuln.pub
- 6VC
2020 · snyk.io
- 7AK
2015 · appcanary.com
- 8IB
Linux Foundation survey says 70-90% of modern software constitute OSS code. Yet we are stuck with tools that scan only for vulnerabilities in 3rd party libraries and that too with high degree of false positives. I built `vet` for policy and data driven analysis of 3rd party packages that goes beyond only vulnerability and allows codifying organisational policies related to OSS consumption. https://github.com/safedep/vet Looking forward to feedback and suggestions from HN :)
2023 · github.com
- 9AC
2016 · github.com
- 10VS
2015 · vulnia.com
- 117G
Happy to share the last week growth of https://vulert.com https://twitter.com/DevNackOfficial/status/1490993623026270214 Vulert notifies you if a security issue is found in any of the open-source software you use. Feedback or critics are welcome. Feel free to ask anything: info(@) vulert.com
2022
- 12CV
2023 · github.com
- 13OD
2021 · osv.dev
- 14VV
Apr 2026 · vulnetix.com
- 15LV
Hello HN! We've been working on a new hypervisor https://kwarantine.xyz that can run strongly isolated containers. This is still a WIP, but we wanted to give the community an idea about our approach, its benefits, and various use cases it unlocks. Today, VMs are used to host containers, and make up for the lack of strong security as well as kernel isolation in containers. This work adds this missing security piece in containers. We plan on launching a free private beta soon. Meanwhile, we'd deeply appreciate any feedback, and happy to answer any questions here or on our slack…
2021
- 16AU
A lot of vendors and open-source projects shared guidance on protecting users from downloading malicious NPM packages after the Shai-Hulud campaign — but almost nothing focused on protecting maintainers from accidentally (or maliciously) publishing them. So we built a small tool that continuously monitors your NPM packages and automatically unpublishes any version not produced by your CI workflow.
Nov 2025 · github.com
- 17AO
I’ve lost count of how many times a junior engineer accidentally pushed something into a dev branch that either contained secrets/credentials etc. or that leaked those into logs/std. out. Secure-log prevent logging for apps on production, scan for Secrets and remove them from logging. No more console.log().
2024 · github.com
- 18FF
2021 · spatcher.io
- 19IJ
.env files have always felt archaic, insecure, clunky and honestly just not fun to work with. I see my friends (and myself) accidentally committing them all the time. Managing secrets across projects becomes a mess of copy-pasting keys into scattered env files with no real way to sync anything. So I built better-env: a secure, developer-friendly alternative to .env. Store your secrets once in a global encrypted store, and load them per-project at runtime. I’d love feedback on whether this feels useful beyond solo devs, and what you’d want for teams or CI setups. Fully open source:…
Nov 2025 · better-env.dev
- 20AC
I have collected some of the front-end development tools that I use on a regular basis (and on not so regular basis). This list is still a work in progress and I would love any contributions to it. If you want to contribute just head over to https://github.com/KarlHerler/front-end-tools where you will find the entire source. If you find something that looks wrong but dont want to fix it you can head over to https://github.com/KarlHerler/front-end-tools/issues and submit a bug :P
2011 · karlherler.github.com
- 21CA
Hello HN! I built a pre-commit code scanner that checks your staged changes for security vulnerabilities every time you run 'git commit'. I am an inexperienced programmer and this is my first personal project. Any feedback, positive or negative, big or small, relevant or not, would be greatly helpful and appreciated! The tool requires Gitleaks and Python to run, you will also need to use your own AI API key, which I understand is a big setup friction. You can check out my demo video instead if that is more convenient: https://youtu.be/ZYe5vWFRTus?si=9Fv8DhTHktwDK4mV Thank you…
Jun 2026 · github.com
- 22

- 23LU
hello! After receiving some great traction here a few weeks back (65.03k unique visitors/ 539.22k total requests/ +11x user sign ups), Stephen and I rolled up our sleeves and made some improvements based on the feedback y'all had. → Migrated the entire infrastructure from Heroku to DigitalOcean w/ Docker → Added functionality for data exports to markdown (take your data anywhere) → Added in a sustainability model with Lemon Squeezy subscription payments → Migrated to a Vite-based build system → Migrated from vuex to pinia for Vue.js state management → Made improvements to the…
2024
- 24AN
2021 · docs.atomist.com
Ranked by how close each launch is in meaning, then by votes. Refine with a description →