GitStar
TrendingExploreTop 100Insight
โŒ˜K
GitStar

A ranking dashboard for GitHub momentum, durable repository leaders, package adoption, and editorial context.

Data source ยท GitHub API and package ecosystem snapshots

Home

HomeTrendingMomentumPulseExplore

Discover

CategoriesLanguagesOrganizationsAI / MLMCP

Workflow

CompareWatchlistRandom

Knowledge

InsightGuideMethodology

Support

FAQAbout GitStarContactPrivacyTerms

ยฉ 2026 GitStar. All rights reserved.

Data sourced from GitHub API

  1. Home
  2. Organizations
  3. OWASP
OWASPOrganization

OWASP

@owasp โ€ข The OWASP Foundation. Use this route to separate flagship concentration from portfolio breadth before you treat a publisher as broadly strong.

Portfolio concentration

69%

Top three share

Shows whether the organization is driven by one breakout repo or several visible projects.

Breadth

30 repos

Visible snapshot

28 repositories updated in the last 90 days.

Leading language

Unknown

Portfolio mix

Unknown (21), Python (2), TypeScript (2)

Average size

3

Stars per repository

Useful for distinguishing one flagship-heavy publisher from a repeatable portfolio.

Back to organizationsCompare repositories
Updated: 2026-07-30(3d ago)GitHub API fallback30 repositories

Portfolio Shape

69%

of the visible star count comes from this organization's top three repositories.

Average Repository Size

3

stars per repository in this same snapshot.

Current Mix

Unknown

is the most common language here, with 28 repositories updated in the last 90 days.

Why this rank

This organization stands out because its public portfolio is relatively balanced across 30 repositories.

Balanced portfolio across 30 reposTop 3 share 69%

Organization pages work best when you separate portfolio breadth from flagship concentration. In OWASP's case, the visible top three repositories account for about 69% of total stars in this snapshot, which helps explain whether the organization is known for one breakout project or for a broader repeatable portfolio.

The dominant language mix here is Unknown (21), Python (2), TypeScript (2). That makes this page useful not just for popularity checks, but also for seeing what technical shape an organization's public ecosystem actually has.

Source: GitHub API fallback. This is the same cache-first snapshot used by the organization ranking list, so the summary view and the detail view should stay aligned.

Top Repositories

#RepositoryLanguageStars๐Ÿด ForksUpdated
1owasp/Agent-Security-Regression-Harness

Executable security regression testing for agentic applications and MCP-integrated systems.

Python41286 days ago
2owasp/MOSAICCSS1333 weeks ago
3owasp/VulnReach

Runtime-aware SCA โ€” proves which CVEs are actually reachable, not just installed.

Python811 weeks ago
4owasp/appsec-agent

A TypeScript package that provides AI-powered agents for Application Security (AppSec) tasks, built on top of the frontier models.

TypeScript72Yesterday
5owasp/Basileak

Intentionally vulnerable LLM

HTML711 months ago
6owasp/OWASP-Subtractive-Hardening-Top-1050Yesterday
7owasp/GitHub-Workflow-Updater-Extension

Pin and update your github actions, from within vscode (and forks)

TypeScript41Today
8owasp/MCP-Security-Testing-Guide211 months ago
9owasp/Community-Security-PromptsHTML10Today
10owasp/Citizen-Vibe-Coder-Security-Model101 weeks ago
11owasp/OWASP-CRT

An automated tool to verify contributions and generate verifiable credentials for OWASP community members.

JavaScript14Yesterday
12owasp/www-chapter-atme-college-of-engineering-mysuru

ATME College of Engineering, Mysuru

Ruby003 days ago
13owasp/OWASP-Integrity-Pipeline-Validation-and-Control006 days ago
14owasp/OWASP-Model-Card-Security-Standard006 days ago
15owasp/OWASP-Top-10-AI-Infrastructure-Security-Risks006 days ago
16owasp/OWASP-TriSuElla-AIDLCA-Framework001 weeks ago
17owasp/OWASP-OpenShield001 weeks ago
18owasp/OWASP-Open-Source-Intelligence-Standard001 weeks ago
19owasp/SCATO001 weeks ago
20owasp/Offensive-Fraud-Prevention-Testing-Framework001 weeks ago
21owasp/OWASP-MCP-Governance-and-Risk-Project001 weeks ago
22owasp/OWASP-MCP-Threat-Modeling001 weeks ago
23owasp/Audio-Video-Communications-Top-10001 weeks ago
24owasp/OWASP-MCP-Verification-Standard001 weeks ago
25owasp/OWASP-Claw001 weeks ago
26owasp/oasis003 weeks ago
27owasp/gitsec003 weeks ago
28owasp/MCP-Taxonomy

OWASP MCP Taxonomy

012 months ago
29owasp/Precogly

Open Source Threat Modeling

013 months ago
30owasp/CVE-Lite-CLI-temp003 months ago

Next step after the organization read

Open a flagship repository, compare a couple of portfolio leaders, or return to the organization map when you want a broader concentration read.
Open flagship repoCompare repositoriesBack to organizations

Learn and methodology

Keep trust-building context reachable, but behind the first data read instead of ahead of it.
GuideMethodologyArticlesWeekly Digest

How to read this organization snapshot

Total stars are useful as a discovery signal, but they do not tell you whether a team maintains every repository equally. Pair this page with release cadence, maintainer activity, and the flagship concentration shown above before making adoption decisions.

For broader background on GitStar's ranking logic and editorial guidance, see Methodology & Editorial Standards.