
alibi
Cross-check the views of your attack surface and find the endpoints that cannot corroborate each other.

Cross-check the views of your attack surface and find the endpoints that cannot corroborate each other.

Enforce least-privilege delegation for AI agents with signed, scoped credentials. Grant sub-agents narrow capabilities and resources, verify actions…

AI governance and evidence gateway for multi-provider LLM applications. FastAPI + optional Rust core for policy, WAF, egress, rate limits, sessions,…

Keep private data, internal infrastructure and secrets out of cloud coding agents without breaking your workflow.

Authorization engine for context-aware access control with YAML policies, RBAC/ABAC support, check/plan APIs, and GitOps-friendly deployment.

Declarative policy engine that enables authorization and policy enforcement across services, Kubernetes, Terraform, Docker, and APIs using the Rego…

Checklist of the most important security countermeasures when designing, testing, and releasing your API

The easiest, and most secure way to access and protect all of your infrastructure.

TrustedRouter.com repo for secure LLM proxying

Your gateway to OWASP. Discover, engage, and help shape the future!

A New Microsoft Windows Remote Administrator Tool [RAT] with Python by Sir.4m1R.

Takes third-party HTML and produces HTML that is safe to embed in your web application. Fast and easy to configure.

Async API security scanner in Rust for CORS, CSP, GraphQL, JWT, OpenAPI, and active API posture checks.

Wire-level proxy firewall for AI agents that intercepts and gates SQL, Kubernetes, and HTTP traffic using HCL rules, with per-process tunnel…

Just-in-time API keys for AI agents - and any other process you route through it: the caller only ever sees a placeholder.

Browser privacy-leak detector — eight detection modules, risk scoring, and per-account history, all in your browser.

An open-source framework for verifiably private AI inference

Knocker, a knock based access control service for your homelab