Simple representation of MITRE ATT&CK data
A TypeScript API for the MITRE ATT&CK data model
Heimdall is a JavaScript based security results viewer and review tool supporting multiple security results formats, such as: InSpec, SonarQube, OWASP-Zap, and Fortify which you can load locally or from S3 and other data sources.
GraphQL IDE for better development workflows (GraphQL Subscriptions, interactive docs & collaboration).
OpenAPI client for @mitre/emass_client
Typescript objects for normalizing between InSpec profiles and XCCDF benchmarks
Schema definitions, classes on top, and utilities to deal with HDF files
A library to find JS RegExp with super-linear worst-case time complexity for attack strings that repeat a single character.
Complete MCP server for MITRE ATT&CK threat intelligence framework with 50+ tools
GraphQL IDE for better development workflows (GraphQL Subscriptions, interactive docs & collaboration).
A library that provides import of data from MITRE Matrices
Converters for transforming security tool outputs and HDF formats
Strongly Typed GraphQL from the team at [GraphQL Editor](https://graphqleditor.com/)
Scrypt Key Derivation Function
Utility functions for HDF libraries (JSON parsing, validation helpers)
Generate Client Library for GraphQL Schema
AI security skills grounded in mid-2026 threat reality, not stale framework documentation. 51 skills, 11 catalogs (439 CVEs / 177 CWEs / 805 ATT&CK + ICS / 170 ATLAS / 468 D3FEND / 8888 RFCs), 35 jurisdictions, 10-class catalog gap detector + budget gate,
The MITRE Security Automation Framework (SAF) Command Line Interface (CLI) brings together applications, techniques, libraries, and tools developed by MITRE and the security community to streamline security automation for systems and DevOps pipelines.
Universal skill library for Claude, ChatGPT, Cursor, Gemini, and VS Code. Install once globally, use everywhere.
tar for node
Require scripts and styles to use Subresource Integrity
Sha1-Hulud 2.0 npm supply chain attack scanner - Real-time detection using Koi.ai data
Create a security plugin for node.js
Constant-time comparison algorithm to prevent timing attacks.