Top AI Repos — open-source AI, indexed and scored
Top AI Repos tracks AI repositories on GitHub and answers two different questions about each one: is it moving right now, and would you bet a product on it.
Top AI Repos tracks AI repositories on GitHub and answers two different questions about each one: is it moving right now, and would you bet a product on it.
Open Source Cloud Native Application Protection Platform (CNAPP)
| Date | Stars |
|---|---|
| 2026-07-24 | 5302 |
| 2026-07-25 | 5304 |
| 2026-07-28 | 5304 |
| 2026-07-30 | 5304 |
| 2026-08-06 | 5304 |
Today
— stars today
This week
— stars this week
This month
— stars this month
Momentum
0.0
growth rate 0.00%/day
 [](https://github.com/deepfence/ThreatMapper/blob/master/LICENSE) [](https://github.com/deepfence/ThreatMapper/stargazers) [](https://github.com/deepfence/ThreatMapper/issues) [](https://threatmapper.org/threatmapper/docs/v2.5/) [](https://join.slack.com/t/deepfence-community/shared_invite/zt-podmzle9-5X~qYx8wMaLt9bGWwkSdgQ) <a href="https://trendshift.io/repositories/171" target="_blank"><img src="https://trendshift.io/api/badge/repositories/171" alt="deepfence%2FThreatMapper | Trendshift" style="width: 250px; height: 55px;" width="250" height="55"/></a> # ThreatMapper - Runtime Threat Management and Attack Path Enumeration for Cloud Native > [!NOTE] > This project is maintained by https://threatmapper.org Deepfence ThreatMapper hunts for threats in your production platforms, and ranks these threats based on their risk-of-exploit. It uncovers vulnerable software components, exposed secrets and deviations from good security practice. ThreatMapper uses a combination of agent-based inspection and agent-less monitoring to provide the widest possible coverage to detect threats. With ThreatMapper's **ThreatGraph** visualization, you can then identify the issues that present the greatest risk to the security of your applications, and prioritize these for planned protection or remediation. * [Learn more about ThreatMapper](https://threatmapper.org/threatmapper/docs/v2.5/) in the product documentation. * [See ThreatMapper running](https://threatmapper.org/threatmapper/docs/v2.5/demo) in the live demo sandbox. ## When to use ThreatMapper ThreatMapper carries on the good 'shift left' security practices that you already employ in your development pipelines. It continues to monitor running applications against emerging software vulnerabilities, and monitors the host and cloud configuration against industry-expert benchmarks. Use ThreatMapper to provide security observability for your production workloads and infrastructure, across cloud, kubernetes, serverless (Fargate) and on-prem platforms. ## Planning your Deployment ThreatMapper consists of two components: * The **ThreatMapper Management Console** is a container-based application that can be deployed on a single docker host or in a Kubernetes cluster. * ThreatMapper monitors running infrastructure using agentless **Cloud Scanner** tasks and agent-based **Sensor Agents** ### The Management Console You [deploy the Management Console first](https://threatmapper.org/threatmapper/docs/v2.5/console/), on a suitable docker host or Kubernetes cluster. For example, on Docker: ```shell script # Docker installation process for ThreatMapper Management Console wget https://github.com/deepfence/ThreatMapper/raw/release-2.5/deployment-scripts/docker-compose.yml docker-compose -f docker-compose.yml up --detach ``` Once the Management Console is up and running, you can [register an admin account and obtain an API key](https://threatmapper.org/threatmapper/docs/v2.5/console/initial-configuration). ### Cloud Scanner tasks ThreatMapper [Cloud Scanner tasks](https://threatmapper.org/threatmapper/docs/v2.5/cloudscanner/) are responsible for querying the cloud provider APIs to gather configuration and identify deviations from compliance benchmarks. The task is deployed using a Terraform module. The ThreatMapper Management Console will present a basic configuration that may be deployed with Terraform, or you can refer to the expert configurations to fine-tune the deployment ([AWS](https://threatmapper.org/threatmapper/docs/cloudscanner/aws), [Azure](https://threa
Excerpt of 8,482 characters
Read on GitHub1.5k
1.5k
1.3k
1.0k
Thomas Legris · @softweavers @PlainProxies · Japan
648
247
149
120
101
Jatin Baweja · India
95
83
66
56
41
Owen Garrett · Tetrate · United Kingdom
36
13
Siddharth Satpathy · Element Energy · United States
10
6
5
ABHISHEK KUMAR SINGH · Deepfence · India
4
Would you bet a product on this? Bounded 0–100 and slow moving.
matched fp:8855ae017cb9d0df, topic:observability, readme:observability
matched fp:8855ae017cb9d0df, topic:kubernetes