
pipelock
Open-source AI agent firewall that scans HTTP, MCP, A2A, and WebSocket traffic for exfiltration, SSRF, and prompt injection, emitting verifiable…

Open-source AI agent firewall that scans HTTP, MCP, A2A, and WebSocket traffic for exfiltration, SSRF, and prompt injection, emitting verifiable…

Hunt every Endpoint in your code, expose Shadow APIs, map the Attack Surface.

Wire-level proxy firewall for AI agents that intercepts and gates SQL, Kubernetes, and HTTP traffic using HCL rules, with per-process tunnel…


TrustedRouter.com repo for secure LLM proxying

Zero-trust networking platform that makes services invisible with cryptographic identity, policy-based access, and end-to-end encryption. Replaces…

Declarative policy engine that enables authorization and policy enforcement across services, Kubernetes, Terraform, Docker, and APIs using the Rego…

Formal inter-procedural taint analysis engine for application security. Tracks untrusted data across function boundaries, persistence layers, and…

Takes third-party HTML and produces HTML that is safe to embed in your web application. Fast and easy to configure.

Traccar GPS Tracking System

cMCP: Confidential MCP Gateway. Hardware-attested policy enforcement for MCP tool calls.


The OWASP Cheat Sheet Series was created to provide a concise collection of high value information on specific application security topics.

A do everything Redfish, KVM, GUI, and DBus webserver for OpenBMC

A next-generation crawling and spidering framework.

Open-source API security platform for continuous API discovery, vulnerability testing, and runtime threat detection. Integrates with CI/CD pipelines…

Distributed SIP honeypot that detects and shares fraud data on VoIP attacks. Collects bad actor IPs and phone numbers via peer-to-peer network, with…

A reverse proxy like nginx, built on pingora, simple and efficient.