
rustnet
Per-process network monitoring for your terminal with deep packet inspection. Cross-platform, sandboxed.

Per-process network monitoring for your terminal with deep packet inspection. Cross-platform, sandboxed.

An embeddable, portable, branchable virtual machine to safely run Agents locally.

Wire-level proxy firewall for AI agents that intercepts and gates SQL, Kubernetes, and HTTP traffic using HCL rules, with per-process tunnel…

Open security scanner and self-hosted control plane for AI, MCP, and cloud. One evidence model — run scans in your environment, centralize findings,…

IAM for your AI agents. Set what Claude Code, Codex, Gemini, Cursor and any MCP server are allowed to do, review risky actions before they run, and…

Read-only AI agent that queries your cloud, code, and runtime infrastructure to surface misconfigurations, leaked secrets, and privilege escalation…

Declarative policy engine that enables authorization and policy enforcement across services, Kubernetes, Terraform, Docker, and APIs using the Rego…

Linux, macOS and Windows Install scripts for cnquery & cnspec

Operator to streamline renovate executions in Kubernetes

Snyk CLI scans and monitors your projects for security vulnerabilities.

Kubernetes-native security scanning orchestrator that automates continuous vulnerability detection by integrating multiple open-source scanners into…

☸️ The Open Testing Platform for AI-Driven Engineering Teams

Suppress vulnerabilities applying Kubernetes context to scans

Kubernetes-native security operator that automates vulnerability scanning, configuration auditing, secret detection, RBAC analysis, and compliance…

A secure* runtime for autonomous AI agents. Policy from plain-English constitutions. (*https://ironcurtain.dev)

A rootless Android app that boots Alpine Linux: run containers (Podman/Docker/LXC) and GUI desktop apps.

Validation of best practices in your Kubernetes clusters

Like Envoy xDS, but for eBPF filters