Skip to content
#

taint-tracking

Here are 57 public repositories matching this topic...

plumb-line

Stop uncertain data becoming confident-looking results. plumb-line carries provenance, confidence and mock-taint with values through JavaScript and Python, and its review-time checks and GitHub Action catch uncertainty laundered into a claim in AI-assisted code.

  • Updated Oct 6, 2026
  • Python

The EyalSec browser for security testing. Browse the web app you are testing and it reports DOM-XSS flows that really happened in the page: the source (URL, postMessage, storage, cookies), the sink, and the attacker-controlled characters. Linux x86_64.

  • Updated Oct 8, 2026

The Security Kernel for AI Agents — MCP/A2A gateway with policy enforcement, taint tracking, sandboxed execution, deterministic envelopes, and Sigstore audit. OWASP ASI 2026 compliant.

  • Updated Jun 16, 2026
  • Python

The EyalSec Python runtime. Run your existing Python app through it unchanged and it reports or blocks attacker-controlled data reaching SQL queries, shell commands, deserializers, file paths and dynamic imports. Django, Flask, FastAPI. Linux, Python 3.9 to 3.14.

  • Updated Oct 8, 2026

Add this topic to your repo

To associate your repository with the taint-tracking topic, visit your repo's landing page and select "manage topics."

Learn more