ive been working on a side project called hecate (foss) and looking for some people to give it a try and give some feedback.

its basically a local vuln db + SCA tool aimed at sec admins and devs:

  • vuln info collection + api access
  • SCA scans for repos and containers
  • AI part is fully opt-in/out (so nothing touches ai if you dont want it)

its based on a prototype i built for my research thesis so still some rough edges.. but the core works.

demo: https://hecate.pw/ -> system page & AI pages are locked on the demo site
selfhost: https://github.com/0x3e4/hecate

any feedback is welcome.. especially from people doing vuln mgmt, container scanning or dependency review day to day.. thanks in advance!

all 5 comments

sorted by: hot top controversial new old
[–] 2 points 2 months ago

Hello there

I will look into that thanks for this projet

  • source
  • [–] 2 points 2 months ago (1 child)

    It’s cool, just wish you could query strings and or regex.

  • source
  • hideshow 2 child comments
  • [–] 2 points 2 months ago (1 child)

    This looks very good! I'll definitely try it. Do you plan to maintain, extend it?

  • source
  • hideshow 2 child comments