Heimdall is a JavaScript based security results viewer and review tool supporting multiple security results formats, such as: InSpec, SonarQube, OWASP-Zap, and Fortify which you can load locally or from S3 and other data sources.
OpenAPI client for @mitre/emass_client
Schema definitions, classes on top, and utilities to deal with HDF files
Typescript objects for normalizing between InSpec profiles and XCCDF benchmarks
A TypeScript API for the MITRE ATT&CK data model
Converters for transforming security tool outputs and HDF formats
AI security skills grounded in mid-2026 threat reality, not stale framework documentation. 51 skills, 11 catalogs (439 CVEs / 177 CWEs / 805 ATT&CK + ICS / 170 ATLAS / 468 D3FEND / 8888 RFCs), 35 jurisdictions, 10-class catalog gap detector + budget gate,
The MITRE Security Automation Framework (SAF) Command Line Interface (CLI) brings together applications, techniques, libraries, and tools developed by MITRE and the security community to streamline security automation for systems and DevOps pipelines.
Utility functions for HDF libraries (JSON parsing, validation helpers)
Simple representation of MITRE ATT&CK data
Parse and load HDF documents with validation
JSON Schema validation for HDF documents (Results and Baselines)
CCI/NIST/CIS/CMMC security framework mappings for HDF
Complete MCP server for MITRE ATT&CK threat intelligence framework with 50+ tools
JSON schemas and multi-language type definitions for Heimdall Data Format (HDF)
Componente de formulário de captação de leads para ser usado em projetos da Mitre Realty.
A library that provides import of data from MITRE Matrices
Componente flutuante de botões com ações de contato para ser usado em projetos da Mitre Realty. Totalmente encapsulado sem conflitos de estilos.
SPDX license expressions for OSI-approved licenses
Componente flutuante de botões com ações de contato para ser usado em projetos da Mitre Realty.
Generate InSpec profile stubs from HDF Baseline definitions
The first open-source AI agent built for offensive security. Autonomous pentesting from your terminal.
Simple React-based FHIR Visualizers
Bidirectional extension graph processing for HDF profile/baseline hierarchies