
wardn
credential isolation for AI agents. Agents never see real API keys - structural guarantee, not policy.

credential isolation for AI agents. Agents never see real API keys - structural guarantee, not policy.

TrustedRouter.com repo for secure LLM proxying

Enforce least-privilege delegation for AI agents with signed, scoped credentials. Grant sub-agents narrow capabilities and resources, verify actions…

🔱 The only independent credential proxy for AI agents: bring-your-own-vault isolation & least-privilege request policies. Your keys stay where you…

Personal Access Token (PAT) recon tool for bug bounty hunters, pentesters & red teams

MCP is being adopted rapidly. Security guidance is lagging behind. This checklist gives security engineers, platform teams, and technical leaders a…

Better PHP rate limiting using Redis.

Corelight Sensor API command-line client

A small, auditable, terminating, deterministic micro-policy engine

Security gateway for MCP servers with per-tool policy enforcement, Ed25519-signed audit receipts, and shadow-mode logging. Supports Cedar, OPA, and…

An implementation of a vulnerable MCP server using mcp-go

SAML v2.0 bindings in Java using JAXB

Cryptographically signed delegation receipts for AI agents. Define exactly what an AI can and can't do — signed, verifiable, tamper-proof.

A high-performance TAXII (Trusted Automated eXchange of Indicator Information) server written in Rust.

SecDim Challenge Builder repro inspired by CVE-2026-88861: AAL1 MFA bypass at privileged credential boundary

PlaceOS authentication service and API gatekeeper.

Proof-of-concept exploit for Apache ShenYu Admin JWT authentication bypass (CVE-2021-37580). Includes a scanning script to detect vulnerable…

Zero-knowledge privacy platform for confidential API key management, encrypted vault, and secure chat. Built on Oasis Sapphire TEEs