


Sandboxed runtime for autonomous AI agents with declarative YAML policies enforcing filesystem, network, and process constraints, plus endpoint-bound…

Declarative policy engine that enables authorization and policy enforcement across services, Kubernetes, Terraform, Docker, and APIs using the Rego…

A tool for secrets management, encryption as a service, and privileged access management

Secure CLI tool for managing environment secrets using native OS credential stores (macOS Keychain, Linux Secret Service, Windows Credential Manager)

Open Source Identity and Access Management For Modern Applications and Services

Bastillion gives you a clean, browser-based way to manage SSH access across all your systems—like a bastion host with a friendly dashboard.

Workload identity platform that attests running services, issues SPIFFE IDs/SVIDs, and enables mTLS and JWT authentication for Kubernetes,…

OpenID Connect (OIDC) identity and OAuth 2.0 provider with pluggable connectors

TrustedRouter.com repo for secure LLM proxying

Core framework for identity and access management, providing authentication, authorization, and identity governance capabilities for enterprise…

FreeRDP is a free remote desktop protocol library and clients

Zero-trust networking platform that makes services invisible with cryptographic identity, policy-based access, and end-to-end encryption. Replaces…

A reverse proxy like nginx, built on pingora, simple and efficient.

cMCP: Confidential MCP Gateway. Hardware-attested policy enforcement for MCP tool calls.

Open-source identity and access management platform providing SSO, MFA, passkeys, OIDC, SAML, SCIM, and multi-tenant access control for developers…

Runtime security for AI agents: discover agents, map their permissions, and enforce what they can do.

The Symfony PHP framework