Public catalog
Browse tools
13 shown. Search ranks against problem language; browsing defaults to stronger public signals.
Anthropic Sandbox Runtime (srt)
An AI agent or local MCP server executes arbitrary shell commands and you need to block reads of SSH keys and confine writes to the workspace without building a container
Verified 2026-08-10
Bubblewrap
sandbox an untrusted command with a minimal filesystem and no network
Verified 2026-08-10
Docker CLI
package an application into a reproducible container image
Verified 2026-08-10
Gitleaks
scan Git history and working trees for leaked credentials before push
Verified 2026-08-10
HashiCorp Vault
broker short-lived secrets and encryption operations behind identity policies
Verified 2026-08-10
hermes-gpt
You want ChatGPT or Codex to operate a local Hermes Agent install (files, skills, cron jobs, gateway) over MCP without granting unrestricted write or shell access
Verified 2026-08-10
Infisical
centralize application secrets with environment and project access controls
Verified 2026-08-10
Microsoft Presidio
detect and redact personal data before sending text to an LLM
Verified 2026-08-10
Renovate
automate dependency update pull requests across repositories
Verified 2026-08-10
Semgrep
run fast static analysis and security rules across a codebase
Verified 2026-08-10
SOPS
store encrypted configuration in Git while preserving reviewable structure
Verified 2026-08-10
Trivy
scan containers and dependencies for known vulnerabilities in CI
Verified 2026-08-10
TruffleHog
find and optionally verify exposed credentials across repositories and filesystems
Verified 2026-08-10