security products
Bifrost is an enterprise-grade gateway for the Model Context Protocol (MCP) that provides built-in security controls. It includes OAuth 2.0 authentication and role-based access control (RBAC) to manage and secure access to MCP servers. The project is open source and available on GitHub.
Aegisora is a security tool designed for developers that incorporates artificial intelligence to assist with security workflows. It is listed under developer tools and security categories, indicating a focus on integrating security practices into the development process. Specific features are not detailed, but it targets the intersection of AI and application security.
AuditBadger is a security auditing tool designed to help teams identify and manage vulnerabilities or compliance issues. It provides structured audit workflows to track security findings and remediation progress. The platform targets organizations looking to streamline their security review and reporting processes.
DNSight is a DNS monitoring and analytics tool aimed at developers and security professionals. It provides visibility into DNS activity to help identify potential security issues and anomalies. The tool falls within the intersection of network security and developer utilities.
SIEMatic is a fair-sourced platform combining observability and security information and event management (SIEM) capabilities. It is hosted on GitHub and designed to provide transparency through its fair-source licensing model. The project aims to help teams monitor infrastructure and detect security events in a single platform.
cMCP is an open-source tool that allows operators to deny an AI agent's tool call within the Model Context Protocol (MCP). When a tool call is blocked, cMCP generates a signed receipt that cryptographically records the denial event. This provides an auditable trail for AI agent actions and refusals.
ThinkNEO is a security-focused tool listed under developer tools and artificial intelligence categories. It is designed to assist developers with security-related workflows. Specific features are based on its positioning at the intersection of AI and security tooling.
XTokenChecker is a tool for validating and inspecting tokens used in authentication and authorization workflows. It allows users to analyze token structure, check validity, and identify potential security issues. The tool is designed to assist developers and security professionals in auditing token-based systems.
mcpvessel is an open-source tool that runs untrusted MCP (Model Context Protocol) servers in an isolated environment with network egress denied by default. It provides a sandboxed execution context to contain potentially unsafe MCP servers and limit their ability to make outbound network connections. The project is hosted on GitHub and targets security-conscious developers working with MCP server integrations.
GHScan is a web-based tool for scanning GitHub repositories for potential security issues. It allows users to analyze repositories by entering a GitHub URL and reviewing findings through a hosted interface. The tool is designed to help developers identify vulnerabilities or misconfigurations in their GitHub projects.
A mobile app that lets users share proof of identity without exposing personal details. It separates identity verification from identity disclosure, allowing users to confirm who they are without revealing sensitive information. Designed for situations where ID is required but full personal data sharing is undesirable.
HostBlock is a security tool for managing and blocking hosts at the system level. It allows users to control network access by editing and maintaining hosts file entries. The app is designed to help block unwanted domains, ads, or malicious sites.
Robinscan is a security scanning tool accessible at robinscan.io. It is designed to help identify vulnerabilities or security issues within digital assets or systems. The platform falls within the security category, offering scanning capabilities for users seeking to assess their security posture.
One Privacy is a privacy-focused SaaS tool designed for developers and businesses. It provides features to help manage and enforce privacy compliance within applications. The platform targets teams looking to integrate privacy controls into their development workflows.
Encrypted Vault by Clavex is an Android app focused on securing private data through encryption. It is designed for users who want to protect sensitive files and information on their mobile devices. The app falls within the privacy and security category on the Android platform.
CleanScan is a security-focused tool listed on BetaList for scanning and identifying potential threats or vulnerabilities. It is designed to help users detect issues within their digital environment. Specific features and supported platforms are based on its security scanning category.
Warpgate is an open-source privileged access gateway that serves as a self-hosted alternative to Teleport. Version 0.27 adds support for RDP and VNC protocols alongside existing SSH and HTTP capabilities. It allows administrators to manage and audit remote access sessions through a centralized web interface.
CSP Validator and Generator is a web tool for creating and validating Content Security Policy headers. It helps developers check existing CSP directives for errors and generate properly formatted policy strings. The tool is part of the DMARCGuard suite focused on web security configurations.
SmokeVPN is a VPN service designed to provide private and encrypted internet connections. It routes user traffic through secure servers to help protect online privacy and bypass network restrictions. The service falls within the security and privacy tooling category.
Halo by Scam AI is a security tool designed to protect users during meetings and online interactions. It leverages artificial intelligence to detect and flag potential scams or fraudulent activity in real time. The product targets individuals and organizations looking to reduce exposure to deceptive communications.
PrivacyThing is a browser extension that controls fingerprinting surfaces across multiple browsers. It allows users to manage and restrict the browser attributes and APIs that websites commonly use to identify and track visitors. The extension targets fingerprinting vectors to reduce the uniqueness of a user's browser profile.
Prizm is a security-focused product available at prizmkey.com. Based on the domain name, it appears to be related to hardware or software security keys for authentication. Specific features and capabilities were not available from the provided information.
DMARC.quest is an educational resource explaining SPF, DKIM, and DMARC email authentication protocols. It breaks down how these standards work together to prevent email spoofing and improve deliverability. The site targets users looking to understand or implement email security configurations.
A free GitHub scanner that analyzes repositories to identify gaps relevant to ISO 27001 and SOC 2 compliance frameworks. It examines code and configuration signals to surface findings mapped to specific control requirements. Results are intended to help teams understand their current compliance posture before a formal audit.