HTTP/2 200
date: Sat, 27 Dec 2025 23:31:00 GMT
content-type: text/html; charset=utf-8
vary: X-PJAX, X-PJAX-Container, Turbo-Visit, Turbo-Frame, X-Requested-With,Accept-Encoding, Accept, X-Requested-With
etag: W/"9f563a7ecc9ddc9fc7cf548506180513"
cache-control: max-age=0, private, must-revalidate
strict-transport-security: max-age=31536000; includeSubdomains; preload
x-frame-options: deny
x-content-type-options: nosniff
x-xss-protection: 0
referrer-policy: origin-when-cross-origin, strict-origin-when-cross-origin
content-security-policy: default-src 'none'; base-uri 'self'; child-src github.githubassets.com github.com/assets-cdn/worker/ github.com/assets/ gist.github.com/assets-cdn/worker/; connect-src 'self' uploads.github.com www.githubstatus.com collector.github.com raw.githubusercontent.com api.github.com github-cloud.s3.amazonaws.com github-production-repository-file-5c1aeb.s3.amazonaws.com github-production-upload-manifest-file-7fdce7.s3.amazonaws.com github-production-user-asset-6210df.s3.amazonaws.com *.rel.tunnels.api.visualstudio.com wss://*.rel.tunnels.api.visualstudio.com github.githubassets.com objects-origin.githubusercontent.com copilot-proxy.githubusercontent.com proxy.individual.githubcopilot.com proxy.business.githubcopilot.com proxy.enterprise.githubcopilot.com *.actions.githubusercontent.com wss://*.actions.githubusercontent.com productionresultssa0.blob.core.windows.net/ productionresultssa1.blob.core.windows.net/ productionresultssa2.blob.core.windows.net/ productionresultssa3.blob.core.windows.net/ productionresultssa4.blob.core.windows.net/ productionresultssa5.blob.core.windows.net/ productionresultssa6.blob.core.windows.net/ productionresultssa7.blob.core.windows.net/ productionresultssa8.blob.core.windows.net/ productionresultssa9.blob.core.windows.net/ productionresultssa10.blob.core.windows.net/ productionresultssa11.blob.core.windows.net/ productionresultssa12.blob.core.windows.net/ productionresultssa13.blob.core.windows.net/ productionresultssa14.blob.core.windows.net/ productionresultssa15.blob.core.windows.net/ productionresultssa16.blob.core.windows.net/ productionresultssa17.blob.core.windows.net/ productionresultssa18.blob.core.windows.net/ productionresultssa19.blob.core.windows.net/ github-production-repository-image-32fea6.s3.amazonaws.com github-production-release-asset-2e65be.s3.amazonaws.com insights.github.com wss://alive.github.com wss://alive-staging.github.com api.githubcopilot.com api.individual.githubcopilot.com api.business.githubcopilot.com api.enterprise.githubcopilot.com; font-src github.githubassets.com; form-action 'self' github.com gist.github.com copilot-workspace.githubnext.com objects-origin.githubusercontent.com; frame-ancestors 'none'; frame-src viewscreen.githubusercontent.com notebooks.githubusercontent.com; img-src 'self' data: blob: github.githubassets.com media.githubusercontent.com camo.githubusercontent.com identicons.github.com avatars.githubusercontent.com private-avatars.githubusercontent.com github-cloud.s3.amazonaws.com objects.githubusercontent.com release-assets.githubusercontent.com secured-user-images.githubusercontent.com/ user-images.githubusercontent.com/ private-user-images.githubusercontent.com opengraph.githubassets.com marketplace-screenshots.githubusercontent.com/ copilotprodattachments.blob.core.windows.net/github-production-copilot-attachments/ github-production-user-asset-6210df.s3.amazonaws.com customer-stories-feed.github.com spotlights-feed.github.com objects-origin.githubusercontent.com *.githubusercontent.com; manifest-src 'self'; media-src github.com user-images.githubusercontent.com/ secured-user-images.githubusercontent.com/ private-user-images.githubusercontent.com github-production-user-asset-6210df.s3.amazonaws.com gist.github.com github.githubassets.com; script-src github.githubassets.com; style-src 'unsafe-inline' github.githubassets.com; upgrade-insecure-requests; worker-src github.githubassets.com github.com/assets-cdn/worker/ github.com/assets/ gist.github.com/assets-cdn/worker/
server: github.com
content-encoding: gzip
accept-ranges: bytes
set-cookie: _gh_sess=wGZQzjjCFW9TKkcwq8YDmojyucop%2BBsf7W3X%2BPmn4WCcbppMUSS5QAqD9YhZMM2aLKP8iHLSmFObhjwnhjxE7ALoPo49YvYhM4yXbfaApnbIf7TvtJqelvmObumAf7qlNlWEFD6Y3kq%2F4JvBvSEPWhLPwTJDf235ZVh1d4pIzzlWdv8plsDEW0dvPt53sNpMflvJrVVowz6nfh7cMyIXeCcwbCiZXINYdKZ4C7VSQp5pG%2Fwah8R0MsxgUrUJcm6cIGSpMBne0E11jXLX8D88pA%3D%3D--xW8dbLEK5AB8E5tv--WY2XYU%2BgUgRbw%2BFhxaelog%3D%3D; Path=/; HttpOnly; Secure; SameSite=Lax
set-cookie: _octo=GH1.1.310389760.1766878258; Path=/; Domain=github.com; Expires=Sun, 27 Dec 2026 23:30:58 GMT; Secure; SameSite=Lax
set-cookie: logged_in=no; Path=/; Domain=github.com; Expires=Sun, 27 Dec 2026 23:30:58 GMT; HttpOnly; Secure; SameSite=Lax
x-github-request-id: BD18:291923:49408FE:585607F:69506C32
PureSec · GitHub
Popular repositories
Loading
A curated list of awesome serverless security resources such as (e)books, articles, whitepapers, blogs and research papers.
627
96
Serverless Architectures Security Top 10 Guide
336
46
Serverless plugin for least privileges.
JavaScript
250
11
A Serverless Security Library for Developers. Regain Control Over Your AWS Lambda & Google Cloud Functions Runtimes.
40
12
Lambda-Proxy creates an HTTP proxy listening on localhost port 8082. When it receives an HTTP POST request with a very specific structure , it will parse the request, extract the relevant data requ…
Python
38
3
4 AWS Config rules that will boost your AWS Lambda security posture. Created as a companion to the AWS Config blog post by PureSec.
JavaScript
17
4
Repositories
Showing 10 of 31 repositories
aws-parsecf
Public
Parse AWS CloudFormation's intrinsic functions in the template
puresec/aws-parsecf’s past year of commit activity
Python
13
7
3
3
Updated Jun 11, 2023
awesome-serverless-security
Public
A curated list of awesome serverless security resources such as (e)books, articles, whitepapers, blogs and research papers.
puresec/awesome-serverless-security’s past year of commit activity
627
CC0-1.0
96
2
2
Updated May 5, 2022
puresec/serverless-puresec-cli’s past year of commit activity
JavaScript
250
11
6
1
Updated Aug 22, 2021
node-csocket
Public
Port for C's sys/socket.h methods for synchronous usage of sockets as file descriptors.
puresec/node-csocket’s past year of commit activity
JavaScript
3
1
0
0
Updated Oct 7, 2020
puresec/lambda-auth0-authorizer’s past year of commit activity
JavaScript
2
Apache-2.0
174
0
0
Updated Nov 6, 2019
FunctionShield
Public
A Serverless Security Library for Developers. Regain Control Over Your AWS Lambda & Google Cloud Functions Runtimes.
puresec/FunctionShield’s past year of commit activity
40
12
0
0
Updated Oct 29, 2019
sas-top-10
Public
Serverless Architectures Security Top 10 Guide
puresec/sas-top-10’s past year of commit activity
336
Apache-2.0
46
0
1
Updated Oct 24, 2019
puresec-cli
Public
PureSec CLI tools for improving the security of your serverless applications.
puresec/puresec-cli’s past year of commit activity
Python
15
7
1
0
Updated Oct 22, 2019
puresec/csocket-linux’s past year of commit activity
C++
0
2
0
0
Updated Aug 14, 2019
puresec/serverless-sentry-lib’s past year of commit activity
JavaScript
1
MIT
15
0
0
Updated Jun 5, 2019
People
This organization has no public members. You must be a member to see who’s a part of this organization.
You can’t perform that action at this time.