
ssh-tpm-agent
SSH agent that creates and manages TPM-sealed keys for hardware-bound authentication, supporting key generation, import, wrapping, PIN protection,…

SSH agent that creates and manages TPM-sealed keys for hardware-bound authentication, supporting key generation, import, wrapping, PIN protection,…


Centralized, TPM 2.0 hardware-backed cryptographic identity enclave and multi-protocol bridge for Linux (FIDO2/CTAP2 WebAuthn Passkeys, OpenSSH…

Local-first encrypted password manager for logins, notes, and API keys, using a SQLite vault sealed with Argon2id and XChaCha20-Poly1305; no cloud or…

Working implementation: cryptographically verified short-lived identities for AI decision authentication — CVE-2025-59536 (Patent Pending US…

Protect your SSH keys with your Mac's Secure Enclave

Open source smart card tools and middleware. PKCS#11/MiniDriver

The ADSyncDump BOF is a port of Dirk-Jan Mollema's adconnectdump.py / ADSyncDecrypt into a Beacon Object File (BOF) with zero dependencies.

Using @charmbracelet to create an Ethereum browser with style

Bitwarden client apps (web, browser extension, desktop, and cli).

Local-first password manager with direct device-to-device sync

SRO PKCS11 – SSH Agent CNG est un agent Windows souverain, ultra‑léger et zéro‑dépendance qui unifie PKCS#11, SSH-agent, Pageant et CNG/Smartcard…

A fingerprint module, That also adds support of passkeys to linux


Shadow Vault – Add shadow users with SHA-512 hash, auto aging match, multiple write fallbacks.

Authentication, authorization, traceability and auditability for SSH accesses.