Cupdate auto-detects container images in Kubernetes, Docker or Podman, finds newer versions and exposes results via a UI, API and RSS feed with vulnerability metadata.

311 stars8 forksMITlast commit Actively maintained
Vulnerability assessment scanner that identifies security weaknesses, misconfigurations, and missing patches across hosts, networks, and applications. Generates vulnerability findings, risk ratings, and reports to support remediation and compliance workflows.
Cupdate auto-detects container images in Kubernetes, Docker or Podman, finds newer versions and exposes results via a UI, API and RSS feed with vulnerability metadata.

311 stars8 forksMITlast commit Actively maintained
Secrover generates human-readable HTML security audit reports for repositories and domains. Scans dependencies, code, and domains; supports scheduling and remote exports.

252 stars3 forksGPL-3.0last commit Actively maintained
Every option on this page is open source and free to run on your own hardware, so you own the data and there is no subscription to cancel. 2 of 2 shipped a commit in the last six months. Licences in this list: MIT, GPL-3.0. In exchange you take on hosting, backups and updates yourself.
Browse everything in Vulnerability Management, Compliance & Audit.