OWASP-BLT Projects¶
Welcome to the OWASP-BLT ecosystem! Our organization maintains a comprehensive suite of open-source projects designed to democratize bug bounties and enhance application security. Below you'll find all of our projects organized by category.
🏆 Core Platform¶
BLT - Bug Logging Tool¶
The flagship platform that powers the OWASP-BLT ecosystem. A community-driven platform for discovering, reporting, and tracking security vulnerabilities.
- Repository: OWASP-BLT/BLT
- Website: owaspblt.org
- Language: HTML, Python, Django
- License: AGPL-3.0
- Stars: 224+ | Forks: 279+
Key Features:
- 🔍 Bug discovery and reporting system
- 🏆 Rewards and recognition for researchers
- 👥 Community-driven collaboration
- 🎮 Gamification with leaderboards
- 💰 Innovative blockchain-based rewards
- 📊 Comprehensive analytics dashboard
📱 Mobile & Desktop Apps¶
BLT-Flutter¶
The official OWASP BLT mobile application built with Flutter for iOS and Android.
- Repository: OWASP-BLT/BLT-Flutter
- Website: OWASP Project Page
- Language: Dart, Flutter
- License: BSD-3-Clause
- Stars: 24+ | Forks: 37+
Key Features:
- Native mobile experience for bug hunters
- Cross-platform iOS and Android support
- On-the-go vulnerability reporting
🌐 Web Extensions & Tools¶
BLT-Extension¶
Chrome extension that allows you to take screenshots of websites and report vulnerabilities directly from your browser.
- Repository: OWASP-BLT/BLT-Extension
- Language: JavaScript
- License: BSD-3-Clause
Key Features:
- Screenshot capture functionality
- Direct bug reporting from browser
- Seamless integration with BLT platform
BLT-on-Cloudflare¶
Modern implementation of BLT running on Cloudflare's edge infrastructure for improved performance and scalability.
- Repository: OWASP-BLT/BLT-on-Cloudflare
- Demo: blt-on-cloudflare.pages.dev
- Language: JavaScript
- License: AGPL-3.0
Key Features:
- Serverless architecture on Cloudflare Workers
- Global edge deployment
- Enhanced performance and scalability
OWASP-BLT-Lyte¶
A lightweight, streamlined version of the BLT platform optimized for performance.
- Repository: OWASP-BLT/OWASP-BLT-Lyte
- Language: TypeScript
- License: AGPL-3.0
Key Features:
- Lightweight implementation
- Optimized for speed and efficiency
- Modern TypeScript codebase
🤖 Bots & Automation¶
BLT-Action¶
GitHub Action that enables automatic issue assignment and management with the /assign command.
- Repository: OWASP-BLT/BLT-Action
- Language: JavaScript
- License: BSD-3-Clause
- Stars: 6+ | Forks: 16+
Key Features:
/assigncommand for self-assignment- Automatic issue de-assignment after 24 hours
- Improves contributor workflow
- CI/CD and security scanning integration
BLT-Lettuce¶
Advanced Slack bot for the BLT community with AI-powered features and automation.
- Repository: OWASP-BLT/BLT-Lettuce
- Language: Python
- License: GPL-3.0
Key Features:
- Slack workspace integration
- Automated community management
- Security alerts and notifications
BLT-Sammich¶
Dedicated Slack bot for BLT community interactions and support.
- Repository: OWASP-BLT/BLT-Sammich
- Language: Python
Key Features:
- Community engagement tools
- Bug bounty notifications
- Team collaboration features
Github_Sportscaster¶
GitHub activity monitoring bot that provides real-time updates on repository events.
- Repository: OWASP-BLT/Github_Sportscaster
- Topics: API, Bot, GitHub, Sportscaster, Tool
Key Features:
- Real-time GitHub activity tracking
- Automated event notifications
- Repository statistics and insights
🔧 Development Tools & Utilities¶
OWASP-BLT-API¶
RESTful API built on Cloudflare Workers that interfaces with the PostgreSQL database.
- Repository: OWASP-BLT/OWASP-BLT-API
- Topics: API, Backend, REST, Security
Key Features:
- Cloudflare Workers implementation
- PostgreSQL database integration
- RESTful API endpoints
Fresh¶
Privacy-focused time tracking system for developers with GitHub integration and local LLM analysis.
- Repository: OWASP-BLT/Fresh
- Language: TypeScript
- License: MIT
Key Features:
- Privacy-first design
- GitHub integration for activity tracking
- Local LLM analysis capabilities
- Developer-focused time management
SelfErase¶
Open-source, hybrid local+edge privacy toolkit for managing and deleting personal data online.
- Repository: OWASP-BLT/SelfErase
- Language: Dart
- License: AGPL-3.0
Key Features:
- Personal data management
- Privacy-focused data deletion
- Hybrid local and edge processing
- Self-destruct capabilities
OWASP-Wich¶
OWASP Project compliance checker that can be used on any repository to ensure project standards.
- Repository: OWASP-BLT/OWASP-Wich
- Topics: OWASP, Security, Tool
Key Features:
- OWASP project compliance verification
- Repository standards checking
- Automated compliance reporting
OWASP-Bumper¶
Automated version bumping tool for dependency management.
- Repository: OWASP-BLT/OWASP-Bumper
- Topics: OWASP, Security, Tool
Key Features:
- Automated version updates
- Dependency management
- Security-focused updates
🔐 Blockchain & Rewards¶
BLT-Bacon¶
Bitcoin-based token system (BACON) designed to incentivize engagement and contributions within the OWASP BLT ecosystem using the Runes protocol.
- Repository: OWASP-BLT/BLT-Bacon
- Language: Shell
- License: LGPL-2.1
- Stars: 4+ | Forks: 2+
Key Features:
- Bitcoin Core integration
- Runes protocol implementation
- Transparent reward system
- Gamified contributor incentives
- Blockchain-based security
📊 Monitoring & Analytics¶
OWASP-BLT-Website-Monitor¶
Automated website monitoring system using GitHub Actions to track uptime and performance.
- Repository: OWASP-BLT/OWASP-BLT-Website-Monitor
- Website: Monitor Dashboard
- Language: HTML
- License: AGPL-3.0
Key Features:
- GitHub Actions-based monitoring
- Uptime tracking and alerts
- Performance metrics
- Historical data visualization
BLT-Tomato¶
High-level OWASP project management scripts and utilities.
- Repository: OWASP-BLT/BLT-Tomato
- Website: Project Page
- Language: HTML
Key Features:
- OWASP project management tools
- Automation scripts
- Project compliance utilities
🎓 Community & Education¶
BLT-Hackathon¶
Self-hosted GitHub project to conduct hackathons with charts, leaderboards, and prize management.
- Repository: OWASP-BLT/BLT-Hackathon
- Website: Hackathon Dashboard
- Language: JavaScript
- License: MIT
Key Features:
- Self-hosted hackathon management
- Real-time leaderboards
- Prize tracking and distribution
- Community engagement tools
- GitHub integration
MY-GSOC-TOOL¶
Dashboard tool for Google Summer of Code students to track their contributions, feedback, and documentation.
- Repository: OWASP-BLT/MY-GSOC-TOOL
- Website: Student Dashboard
- Language: JavaScript
- License: AGPL-3.0
Key Features:
- GSoC contribution tracking
- Feedback management
- Documentation organization
- Progress visualization
- Mentor communication tools
🎨 Demo & Showcase Projects¶
Sizzle¶
Demonstration project showcasing BLT platform capabilities and integrations.
- Repository: OWASP-BLT/Sizzle
- Topics: Demo, JavaScript, Tool
- License: AGPL-3.0
Key Features:
- Platform demonstration
- Integration examples
- Feature showcase
Toasty¶
Web-based demonstration tool for testing and showcasing features.
- Repository: OWASP-BLT/Toasty
- Topics: Demo, Tool, Web
Key Features:
- Interactive demonstrations
- Feature testing environment
- Web-based interface
📚 Documentation & Meta¶
documentation¶
This repository! Comprehensive documentation for all OWASP-BLT projects using MkDocs Material theme.
- Repository: OWASP-BLT/documentation
- Website: owasp-blt.github.io/documentation
- Topics: Docs, Documentation, Guides, OWASP
Key Features:
- Centralized documentation hub
- MkDocs Material theme
- User and developer guides
- API documentation
- Contributing guidelines
.github¶
Organization-wide GitHub configuration, templates, and community health files.
- Repository: OWASP-BLT/.github
- Topics: Community, GitHub, Org-config, Templates
Key Features:
- Issue templates
- Pull request templates
- Community guidelines
- Organization profile
🚀 Getting Started¶
Interested in contributing or using our projects? Here are some quick links:
- Main Website: owaspblt.org
- Documentation: owasp-blt.github.io/documentation
- GitHub Organization: github.com/OWASP-BLT
- OWASP Project Page: owasp.org/www-project-bug-logging-tool
Contributing¶
All our projects welcome contributions! Here's how to get started:
- Choose a project that interests you from the list above
- Read the contributing guidelines in the project's repository
- Join our community on OWASP Slack
- Start contributing by picking up issues labeled
good first issue
Support¶
Need help or have questions?
- 💬 Slack: Join the BLT channel on OWASP Slack
- 🐛 Issues: Open an issue in the relevant project repository
- 📧 Email: Contact us through GitHub discussions
- 💰 Sponsor: Support the project on GitHub Sponsors
📊 Project Statistics¶
- Total Projects: 23
- Total Stars: 250+
- Total Forks: 350+
- Active Contributors: 100+
- Programming Languages: Python, JavaScript, TypeScript, Dart, HTML, Shell
- Primary License: AGPL-3.0, BSD-3-Clause, MIT, GPL-3.0, LGPL-2.1
⭐ Star our projects if you find them helpful!
Made with ❤️ by the OWASP BLT Community