
domain-locker
Centralized domain portfolio manager with auto-fetched WHOIS, DNS, SSL data, expiry alerts, uptime monitoring, and visual analytics. Self-hostable…

Centralized domain portfolio manager with auto-fetched WHOIS, DNS, SSL data, expiry alerts, uptime monitoring, and visual analytics. Self-hostable…

AI-powered bug bounty hunting toolkit that works with or without subscription.

Real-time phishing & scam domain blocklist - 205k+ curated threats, 1M+ community, free API, multiple formats

80k+ WordPress Nuclei templates, updated daily from Wordfence intel—filter by severity/tags/CVE and scan in one line. 🚀🔒

Your Playwright code runs on a real anti-detect Firefox instead of a detectable one, with the same API and an undetected fingerprint, so web scraping…

The Single Sign-On Multi-Factor portal for web apps. OpenID Certified™ and Post-Quantum Cryptography Ready.

Local-first password manager with direct device-to-device sync

Security training for the apps you actually ship. Open your browser and start hacking.

Takes third-party HTML and produces HTML that is safe to embed in your web application. Fast and easy to configure.

An open testing platform that probes HTTP/1.1 servers against RFC 9110/9112 requirements, smuggling vectors, and malformed input handling. Add your…

Kubernetes-native security scanning orchestrator that automates continuous vulnerability detection by integrating multiple open-source scanners into…

Self-hosted WAF and reverse proxy that filters malicious HTTP traffic, blocks SQL injection, XSS, and bot attacks, with rate limiting and dynamic…

🔧 Fix vulnerable versions in Next.js and React RSC apps with one command to secure against CVE-2025-66478. Improve your app's safety effortlessly.

Bastillion gives you a clean, browser-based way to manage SSH access across all your systems—like a bastion host with a friendly dashboard.

Automate stopping bad bots from accessing your server

Autonomous AI pentesting engine, continuous offensive security across web, cloud, AD & Kubernetes. Agentic reasoning + real exploit execution deliver…

Collaborative application security testing between humans and agents via CLI and MCP

Semantic-aware SAST scanner for Node.js applications that detects insecure code patterns using libsast pattern matching and semgrep syntax-aware…