SCA
Track vulnerable dependencies and keep package risk visible across every project.
Everything developers need to keep code and environments secure end to end. Gain clear visibility across your stack, avoid exposure to known CVEs and already-fixed issues, and build more securely in the AI era.
Platform / Overview
Scans e vulnerabilidades em todos os assets.
33
Assets
150
Scans
158
Vulnerabilidades
39
Critical/High
platform
Run security scans across your applications, infrastructure, and runtime surface from one open source workspace.
Track vulnerable dependencies and keep package risk visible across every project.
Inspect images before release and see the vulnerable packages inside your containers.
Audit Linux hosts and root filesystems so infrastructure risk stays in view.
Find security issues in source code and route findings into one triage workflow.
Test running applications for exposed behavior before attackers can rely on it.
Review clusters, workloads, exposure, and RBAC posture from the same workspace.
Get started with a managed workspace and bring security visibility to your team in minutes. For stricter data requirements, self-host the platform and keep every scan, finding, and environment detail inside your own infrastructure.
$ curl -fsSL https://runtz.dev/home/docker-compose.yml -o docker-compose.yml
printf 'JWT_SECRET=%s\nRUNTZ_INGEST_TOKEN=%s\n' "$(openssl rand -base64 32)" "$(openssl rand -base64 24)" > .env
docker compose up -druntz is an open source platform, so you can inspect it, extend it, and run it in your own environment when privacy, compliance, or internal policy requires it. Keep scans, findings, and reports under your control with no vendor lock-in.
View source on GitHubFollow the docs and start scanning in minutes.
Open documentation