
claude-code-guardrails
Real-time guardrails for Claude Code tool calls.

Real-time guardrails for Claude Code tool calls.

Vimana is a modular security framework for auditing Python APIs and Web applications. The plugin-based architecture enables security professionals to…

🔐 Learn authentication by building it right. An extensible, standards-compliant reference implementation for Cloudflare Workers with Hono, Turso,…

TrustedRouter.com repo for secure LLM proxying

credential isolation for AI agents. Agents never see real API keys - structural guarantee, not policy.

Personal Access Token (PAT) recon tool for bug bounty hunters, pentesters & red teams

Unofficial api for cve.mitre.org

Just-in-time API keys for AI agents - and any other process you route through it: the caller only ever sees a placeholder.

Service that scans your Infrastructure as Code for common vulnerabilities

🔱 The only independent credential proxy for AI agents: bring-your-own-vault isolation & least-privilege request policies. Your keys stay where you…

MCP is being adopted rapidly. Security guidance is lagging behind. This checklist gives security engineers, platform teams, and technical leaders a…

Async API security scanner in Rust for CORS, CSP, GraphQL, JWT, OpenAPI, and active API posture checks.

A transparent PII redaction proxy for LLM API traffic. Sits between an application and an LLM provider (currently Anthropic), pseudonymizing…

POC for utilizing wikipedia API for Command and Control

PoC for CVE-2021-43557

Pre-launch security checklist for AI-generated apps (Lovable, v0, Bolt, Cursor). 69 checks covering Supabase RLS, exposed keys, and prompt injection.…

Scan LLM outputs and AI-generated content for data exfiltration signals (EchoLeak, CVE-2025-32711) before they reach users or downstream systems

Open-source framework for embedding realistic decoy routes and honey fields into APIs to detect attackers probing business logic, converting…