The AI movement's repository database

The best AI repositories

224 living projects — from agent frameworks to prompt-injection defense. Each comes with our own note: why it matters, who it is for and how to start in three steps.

Stars, forks and activity refresh daily via the GitHub API · updated October 6, 2026

repositories
224
categories
11
stars in total
11M
new stars in 30 days
+235K

Last 30 days

Growing fastest

The most new stars over the last 30 days.

Full growth ranking
Growing fastestRookie of the month

A skills set and methodology for coding agents: clarify the task, plan, write tests, then code. The agent works with more discipline.

296Kstars+15K in 30 dShell

firecrawl

firecrawl

Growing fastest

A service that turns any website into clean Markdown or structured data for models. It can search, scrape, crawl a whole site and even click through a page.

189Kstars+12K in 30 dTypeScript

microsoft

markitdown

Growing fastest

A small Microsoft utility that converts PDF, Word, PowerPoint, Excel and other files into Markdown that is easy to hand to a language model.

189Kstars+11K in 30 dPython

anomalyco

opencode

Growing fastest

An open coding agent for the terminal with a desktop app. It is not tied to one provider: plug in whichever models you have.

212Kstars+7.6K in 30 dTypeScript

github

spec-kit

Growing fastest

A toolkit for spec-driven development: principles and a spec first, then a plan and tasks, and only then code. Works with several coding agents.

140Kstars+7.1K in 30 dPython

openai

codex

Growing fastest

OpenAI's lightweight coding agent that runs in the terminal and works on your project's code. Written in Rust.

128Kstars+6.8K in 30 dRust

Categories

Agent frameworksFrameworks and orchestration: what agents and multi-agent systems are built from.23 repositoriesCoding agents & CLIAgents that write code in the terminal and editor, and the methods for working with them.21 repositoriesMCPThe Model Context Protocol spec, official SDKs and the best servers.20 repositoriesOpen models & inferenceOpen weights, local runs, fast inference and fine-tuning.38 repositoriesRAG & vector DBsSearch over your own data: document parsing, crawlers, vector databases, knowledge graphs.19 repositoriesEvals & observabilityHow to measure a model or agent and see what happens inside it.17 repositoriesPrompting & contextPrompts, structured output, skills and context engineering.16 repositoriesVoice, video, multimodalSpeech recognition and synthesis, voice agents, images and video.19 repositoriesAutomationNo-code workflows, browser and computer-use agents.15 repositoriesAwesome lists & learningCourses, books and awesome lists worth starting with.21 repositoriesSecurityPrompt injection, guardrails, red teaming and agent scanners.15 repositoriesMissing your favorite?Suggest a repository — we will review it and add it if it earns a spot.Suggest a repo →

Catalog

15 repositories

data-privacy-stack

presidio

A framework that finds and masks personal data in text, images and tables. It detects the data, then redacts or replaces it so it can be safely sent to a model.

11Kstars+430 in 30 d1.3KPythonCommit 2 days ago

NVIDIA

garak

A vulnerability scanner for LLMs: it runs a model through a set of probes for prompt injection, data leakage, toxicity and other failures. Works as a command-line tool.

9.4Kstars+325 in 30 d1.3KPythonCommit 3 days ago

guardrails-ai

guardrails

A Python framework that checks LLM inputs and outputs with ready validators from Guardrails Hub and helps produce structured answers. It catches risks before a reply reaches the user.

7.5Kstars+137 in 30 d712PythonCommit 5 days ago

NVIDIA-NeMo

Guardrails

NVIDIA's toolkit for programmable rails in LLM-based conversational systems. Rules live in config and control what the bot talks about and does.

7.2Kstars+183 in 30 d862PythonCommit today

microsoft

PyRIT

Microsoft's framework for proactively finding risks in generative AI systems. It helps automate red teaming against models and applications.

4.6Kstars+174 in 30 d927PythonCommit 1 day ago

meta-llama

PurpleLlama

Meta's generative AI safety project: the Llama Guard and Prompt Guard filter models, the Code Shield scanner and the CyberSec Eval test suites. It pairs defense with attack-based testing.

4.4Kstars+45 in 30 d777PythonCommit 6 days ago

A security scanner for AI agents, MCP servers and skills. It checks configs and SKILL.md files for risky spots.

3.1Kstars+112 in 30 d286PythonCommit 1 day ago

greshake

llm-security

Materials for research on indirect prompt injection: how malicious instructions in emails, web pages and code break LLM-integrated apps. Includes attack demos.

2.1Kstars+12 in 30 d161Jupyter NotebookCommit 1 year ago

A curated list of tools, papers and projects on LLM security: white-box and black-box attacks, backdoors, defense, platform security. A handy starting point for surveying the field.

1.7Kstars+18 in 30 d392Commit 1 year ago

The archive of the OWASP Top 10 for LLM Applications: the ten main risks with descriptions and mitigations. The current 2026 release has moved to the GenAI Security Project repository.

1.4Kstars+49 in 30 d361PythonCommit 2 months ago

utkusen

promptmap

An automated prompt injection scanner for your own LLM applications. It sends attack prompts and checks whether the model gave in.

1.3Kstars+14 in 28 d135PythonCommit 10 months ago

cisco-ai-defense

mcp-scanner

Cisco's scanner for MCP servers: it looks for threats and security issues in them. It can scan a server by URL, over stdio, or all known configs at once.

1.1Kstars+22 in 30 d138PythonCommit today

A security scanner for agentic workflows: it analyzes LangGraph, CrewAI, n8n and other code, builds a report and can test agents for vulnerabilities.

1.1Kstars+10 in 29 d150PythonCommit 10 months ago

ethz-spylab

agentdojo

A dynamic environment for evaluating attacks and defenses against LLM agents. It runs an agent on user tasks and checks whether a malicious instruction gets through.

892stars+91 in 30 d234PythonCommit 4 months ago

protectai

modelscan

A scanner for model files that detects serialization attacks, such as malicious code inside a pickle. It checks the file before you load it.

778stars+10 in 30 d167PythonCommit 7 days ago

Did we miss something?

Suggest a repository

Send a GitHub link and a few words on why it belongs here. Every suggestion is reviewed by hand — not everything gets in.