PyPI Stats
  • Insights
  • PyPI
  • GitHub
  • Search
  • Compare
  • Advisories
  • Ecosystem
  • About
Home

Search Packages

Find Python packages by name, description, GitHub topic, or filter by metrics
sqlmapproject
sqlmap

Automatic SQL injection and database takeover tool

82K 37K 6K
dalisecurity
fray

Open-source WAF Security Testing Platform — 7,200+ attack payloads, 98 WAF/CDN fingerprints, AI-powered bypass engine, recon pipeline, beautiful CLI output

35K 50 4
Usta0x001
phantom-agent

Autonomous Offensive Security Intelligence AI-powered multi-agent penetration testing

34K 14 4
Pantheon-Security
medusa-security

AI-first security scanner with 76 analyzers, 9,600+ detection rules, and repo poisoning detection for AI/ML, LLM agents, and MCP servers. Scan any GitHub repo with: medusa scan --git user/repo

8K 259 41
0xSteph
ptai

The most autonomous pentesting AI on the market. MCP server + Python agents with 150+ security tools, exploit chaining, and PoC validation.

4K 159 39
AgentSeal
agentseal

Security toolkit for AI agents. Scan your machine for dangerous skills and MCP configs, monitor for supply chain attacks, test prompt injection resistance, and audit live MCP servers for tool poisoning.

4K 235 34
wordfence
wordfence

Wordfence malware and vulnerability scanner command line utility.

4K 151 31
quodeq
quodeq

AI-powered code quality and security scanner. Open source, MIT, runs locally. <🧭>

4K 12 1
Cope-Labs
selvo

Linux dependency blast-radius ranker — surfaces highest-value CVE patch opportunities

3K 0 0
adudley78
mcp-audit-scanner

Security scanner for MCP (Model Context Protocol) server configurations. Detects prompt injection, credential exposure, supply chain risks, and more.

3K 1 0
ExploitCraft
reconninja

⚡ ReconNinja v8.2.1 — 38-phase recon framework for pentesters & bug bounty hunters. Subdomain enum → port scan → web recon → WAF/CORS/JS/cloud bucket detection → GitHub OSINT → CVE lookup → AI threat analysis → HTML report. Domains, IPs, CIDRs, target lists. Plugin system. 598 tests.

3K 39 6
Metbcy
securescan

Security scanning without the SaaS tax. Multi-scanner orchestration, baseline diffing, SBOM + SARIF, signed everything — runs in your terminal, your CI, or a dashboard you own.

3K 0 0
gebalamariusz
cloud-audit

Fast, opinionated AWS security scanner. Curated checks. Zero noise. Copy-paste fixes.

3K 53 10
FrancescoStabile
numasec

AI agent for penetration testing. Like Claude Code, but for security. Open source, MCP-native, works with any LLM.

3K 119 17
HeadyZhang
agent-audit

Static security scanner for LLM agents — prompt injection, MCP config auditing, taint analysis. 49 rules mapped to OWASP Agentic Top 10 (2026). Works with LangChain, CrewAI, AutoGen.

1K 161 16
h33min
contractscan-mcp

ContractScan MCP Server — multi-engine Solidity vulnerability scanner for LLM agents

1K 0 0
BobongKu
nodriver-proxy-mcp

Unified MCP Server for Web Security — 39 tools for autonomous pentesting

990 2 1
regaan
wshawk

Open source toolkit for WebSocket security testing, web application penetration testing, and stateful attack validation. It combines a CLI scanner, web dashboard, Electron desktop app, browser companion, and project-backed workflows for authorized security assessments.

930 6 1
momenbasel
vulnhawk

AI-powered code security scanner that finds vulnerabilities Semgrep and CodeQL miss

917 45 5
OWASP
nettacker

Automates information gathering, vulnerability scanning and aids penetration testing engagements in general

833 5K 1K
regaan
basilisk-ai

Basilisk — Open-source AI red teaming framework with genetic prompt evolution. Automated LLM security testing for GPT-4, Claude, Grok, Gemini. OWASP LLM Top 10 coverage. 32 attack modules.

742 17 0
Nuulz
vaultbreaker

Minecraft server vulnerability scanner with local AI risk scoring and HTML reports

677 0 0
VanirLab
commi3

Commi3 is an Automated Commando Line Tool (ACLT) that can be used from web developers and so on.

669 1 0
madpah
osv-lib

Python library for calling OSV (https://osv.dev/)

580 1 2
    • Data from PyPI, GitHub, ClickHouse, and BigQuery