Ch3ck3r SAST
A local-first static application security testing tool with OWASP API Top 10 rules, OpenAPI analysis, SARIF reporting, and secure CI release evidence.
View project 02 · Secure code review trainingReviewer
An open-source training platform for identifying and remediating vulnerable web, API, AI, and MCP code through realistic review challenges.
View project 03 · API testing and security labPostman API Testing Framework
Postman and Newman automation with mock environments, CI reporting, and a localhost-only service for comparing secure and vulnerable API behavior.
View project 04 · Chrome extensionAPI Finder Extension
Passive API reconnaissance with endpoint discovery, request analysis, findings export, and a built-in request tester.
View project 05 · Interactive learning platformAPI Guardian Game
A hands-on API security learning experience built around real-world attack scenarios and defensive decisions.
View project