
OpenAM
Open-source access management platform offering single sign-on, adaptive authentication, authorization, and federation for secure access to web,…

Open-source access management platform offering single sign-on, adaptive authentication, authorization, and federation for secure access to web,…

A lightweight, cryptography-powered, open-source toolkit built to enforce Zero Trust security for infrastructure, applications, and data in the…

TrustedRouter.com repo for secure LLM proxying

Ed25519 signed receipts + Cedar policies for AI agents. Finance mandate gate (Legate), proof packs, 3 IETF Internet-Drafts. npx protect-mcp

cMCP: Confidential MCP Gateway. Hardware-attested policy enforcement for MCP tool calls.

Provides open-source SSO and identity provider functionality with SAML, OAuth2/OIDC, LDAP, and RADIUS support for centralized authentication,…

WireGuard-based zero-trust access platform providing secure, peer-to-peer remote access with granular policy controls, SSO authentication, and audit…

Infisical is the open-source platform for secrets, certificates, and privileged access management.

A reverse proxy like nginx, built on pingora, simple and efficient.

Open source Dropbox-like file sharing with full client encryption !

Zero-trust networking platform that makes services invisible with cryptographic identity, policy-based access, and end-to-end encryption. Replaces…

Declarative policy engine that enables authorization and policy enforcement across services, Kubernetes, Terraform, Docker, and APIs using the Rego…

Core framework for identity and access management, providing authentication, authorization, and identity governance capabilities for enterprise…

Execution-Layer Security (ELS) for AI agents — policy-enforced shell with audit.

Sandboxed runtime for autonomous AI agents with declarative YAML policies enforcing filesystem, network, and process constraints, plus endpoint-bound…

Secure agents in seconds with permissions enforced at runtime.

Sandbox and MCP proxy that blocks AI coding agents from reading SSH keys, AWS credentials, and .env files, with deny-by-default policy and…

The Secure CommsOS™ for mission-critical operations