
enforcement-coverage
Finds API routes carrying weaker authorization than their siblings. Recovered CVE-2026-45316 from source. Includes the negative results.

Finds API routes carrying weaker authorization than their siblings. Recovered CVE-2026-45316 from source. Includes the negative results.

[Moved to Codeberg] Simple local scanner for vulnerable log4j instances

This is a script designed for deployment on ubuntu instances patching the CVE-2026-3888 exploit

Upgrade to Apache 2.4.67 to fix CVE-2026-23918 vulneribility

Read-only audit tooling for CVE-2026-0300 (PAN-OS User-ID Authentication Portal exposure)

Open-source sandboxed runtime for AI agents — gVisor/Docker isolation, credential vault, immutable audit log. Built after CVE-2026-25253.

The Secure Coding Framework



Mitigate CVE-2018-6389 WordPress load-scripts / load-styles attacks

Run any command inside a restricted filesystem view on Linux

DEPRECATED: Chef cookbook to audit & remediate "Shellshock" (BASH-CVE-2014-7169)

AI coding agents that can't exfiltrate secrets or merge their own PRs.

Verified tool registry manager. Manages developer toolchains from git-based registries.

A software supply chain framework powered by Nix.

Identify hardcoded secrets in static structured text

Open Cloud Security Posture Management Engine

Create actionable data from your Vulnerability Scans