security products
CSP Validator and Generator is a web tool for creating and validating Content Security Policy headers. It helps developers check existing CSP directives for errors and generate properly formatted policy strings. The tool is part of the DMARCGuard suite focused on web security configurations.
SmokeVPN is a VPN service designed to provide private and encrypted internet connections. It routes user traffic through secure servers to help protect online privacy and bypass network restrictions. The service falls within the security and privacy tooling category.
Halo by Scam AI is a security tool designed to protect users during meetings and online interactions. It leverages artificial intelligence to detect and flag potential scams or fraudulent activity in real time. The product targets individuals and organizations looking to reduce exposure to deceptive communications.
PrivacyThing is a browser extension that controls fingerprinting surfaces across multiple browsers. It allows users to manage and restrict the browser attributes and APIs that websites commonly use to identify and track visitors. The extension targets fingerprinting vectors to reduce the uniqueness of a user's browser profile.
Prizm is a security-focused product available at prizmkey.com. Based on the domain name, it appears to be related to hardware or software security keys for authentication. Specific features and capabilities were not available from the provided information.
DMARC.quest is an educational resource explaining SPF, DKIM, and DMARC email authentication protocols. It breaks down how these standards work together to prevent email spoofing and improve deliverability. The site targets users looking to understand or implement email security configurations.
A free GitHub scanner that analyzes repositories to identify gaps relevant to ISO 27001 and SOC 2 compliance frameworks. It examines code and configuration signals to surface findings mapped to specific control requirements. Results are intended to help teams understand their current compliance posture before a formal audit.
QR Crypt is an open-source tool that encrypts data into QR codes for secure sharing. It focuses on privacy by ensuring encoded content remains protected from unauthorized access. The project is community-driven and available for transparency and self-hosting.
Alarium is a security-focused technology platform listed in the MarketHunt directory. Based on available signals, it operates in the security category, though specific feature details are limited at this time. Users interested in security tools may explore the product directly at the official site.
AI Security Leaderboard is a ranking platform that evaluates and compares AI models based on security-related benchmarks. It provides structured assessments to help researchers and practitioners understand the relative security posture of different AI systems. The leaderboard is maintained by Far.ai and draws on standardized evaluation criteria.
Nuberio Audit is a free, read-only scanning tool that analyzes AWS CloudWatch and alerting configurations to identify noisy or missing alerts. It requires no write permissions and produces a report highlighting gaps in your AWS monitoring setup. The tool is designed to help teams improve alert hygiene without modifying existing infrastructure.
Cordium is an open-source sandbox platform for zero trust remote access that eliminates the need for shared secrets or credentials. It provides controlled, isolated access to remote resources without relying on traditional secret-based authentication methods. The project is hosted on GitHub and is free to use under an open-source license.
Hamza is an open-source tool that intercepts and masks secrets and personally identifiable information (PII) before they are sent to AI coding assistants such as Claude Code or OpenAI Codex. It acts as a privacy layer to prevent sensitive data from being exposed to external AI services during development workflows. The project is hosted on GitHub under the softcane organization.
Prove Yourself is a tool that lets users privately timestamp a claim and schedule its public reveal at a future date. It provides a verifiable record that a claim existed before its disclosure, useful for establishing priority or accountability. The tool operates without exposing the claim contents until the chosen reveal time.
Tines is a no-code automation platform designed for security teams to build and run workflows without engineering support. It allows analysts to connect security tools, automate repetitive tasks, and orchestrate incident response processes. The platform is used to reduce manual workload in security operations centers.
Flashpaper is a web app for sharing sensitive information via self-destructing, one-time-read links. Once a recipient opens the link, the content is permanently deleted from the server. It is designed for securely transmitting passwords, secrets, or private messages without leaving a persistent record.
OpenOTP is an open-source one-time password application built as a first OSS project by a teenage developer. It provides OTP generation functionality for authentication use cases. The project is available as an open-source security tool at openotp.app.
Sekey.sh is a shell-based security utility hosted on GitHub. It provides command-line functionality for managing or handling security keys through shell scripting. The project is open source and intended for users comfortable working in a terminal environment.
Aitori is an open-source tool that monitors and governs AI-related network traffic leaving your machine. It provides visibility into outbound requests made by AI applications and agents running locally. The tool is designed to help users understand and control what data their AI workloads are sending externally.
Sabba is a security bug finder that validates each finding by actively running it, reducing false positives. It is designed to prove vulnerabilities are real and exploitable before reporting them. The tool is open source and available on GitHub.
Malinois is a security-focused tool listed under Developer Tools and Artificial Intelligence categories. It appears to be designed to assist developers or security professionals with security-related workflows. Specific features and capabilities are not detailed in the available information.
A Go library that enables mutual TLS (mTLS) authentication using keys stored in a Trusted Platform Module (TPM). Private keys never leave the TPM hardware, reducing exposure during TLS handshakes. Built for Go applications that require hardware-backed cryptographic operations.
ModelFuzz is a security testing tool focused on fuzzing AI and machine learning models to identify vulnerabilities and unexpected behaviors. It helps security researchers and developers probe model inputs systematically to uncover edge cases and failure modes. The tool targets the growing need for adversarial testing in AI systems.
Bounce is a distributed chat application designed to protect user metadata in addition to message content. It operates without a central server, reducing the exposure of communication patterns, contact graphs, and timing data. The project is open source and available on GitHub.