{"owner":"synacktiv","github":"https://github.com/synacktiv","claimed":false,"inventory":[],"indexed":[{"repo":"synacktiv/nord-stream","github":"https://github.com/synacktiv/nord-stream","description":"Nord Stream is a tool that allows you to extract secrets stored inside CI/CD environments by deploying malicious pipelines. It currently supports Azure DevOps, GitHub and GitLab.","language":"Python","stars":371,"topics":["azuredevops","ci-cd","cicd","github","gitlab","gitlab-ci"],"license":"GPL-3.0","category":"deployment-docker-iac"},{"repo":"synacktiv/octoscan","github":"https://github.com/synacktiv/octoscan","description":"Octoscan is a static vulnerability scanner for GitHub action workflows.","language":"Go","stars":272,"topics":["cicd","exploit","github","github-actions","vulnerability"],"license":"GPL-3.0","category":"security-tools"}],"how_to_buy":"GET /r/synacktiv/<repo> (Accept: application/json) for any listed repo here: tree, README, price and the checkout to pay (x402; rehearse first at its test twin, simulated money). Repos under 'indexed' are free: clone them from GitHub."}