security products
A filtering engine and database focused on kernel security patches that have not yet been propagated to downstream distributions or systems. It allows users to search and track unpropagated patches to identify potential security gaps in their kernel versions. The tool is aimed at security researchers and system administrators monitoring kernel patch coverage.
SSO Zen is an open-source tool hosted on GitHub under CloudSnorkel that helps manage AWS Single Sign-On (SSO) configurations. It provides utilities for organizing and simplifying SSO permission sets and account assignments. The project is designed for teams looking to streamline IAM Identity Center administration.
VulnCast is an open-source tool by Vulners that delivers vulnerability intelligence as a structured data feed. It integrates with the Vulners database to provide security teams with up-to-date CVE and vulnerability information. The project is hosted on GitHub and designed for use in security monitoring and threat intelligence workflows.
SecretScout is a Chrome extension that scans for exposed API keys and secrets in web pages and developer environments. It helps developers and security professionals identify accidental credential leaks before they become a security risk. The tool is designed for use alongside developer workflows and browser-based debugging.
A Capacitor plugin that generates and stores post-quantum cryptographic signing keys inside the iPhone's Secure Enclave, ensuring private keys never leave the hardware security module. It enables mobile applications built with Capacitor to perform post-quantum signing operations without exposing key material to the application layer. The library targets iOS devices that support the Secure Enclave coprocessor.
Digital Will Locker is a secure storage platform for organizing and preserving digital wills and end-of-life documents. It provides a private space to store important files and messages intended for designated recipients. The service focuses on privacy and controlled access to sensitive personal information.
DomeSOC is an autonomous Security Operations Center platform designed to avoid false attribution by only acting on causation it can verify. It automates threat detection and response workflows while enforcing evidence-based decision-making before flagging or escalating incidents. The platform targets organizations seeking to reduce alert fatigue and unsubstantiated threat conclusions in their security operations.
MyTempMail provides disposable temporary email addresses for receiving OTP and verification messages. It helps users protect their primary inbox from spam while signing up for services or testing applications. The tool is suited for privacy-conscious users and developers needing throwaway email addresses.
A free API providing access to 248 million aggregated VEX (Vulnerability Exploitability eXchange) statements for CVEs. The dataset indicates that approximately 45% of CVEs are marked as not affected, helping security teams prioritize remediation efforts. The API is available at getreel.dev/vex and aggregates VEX data from multiple sources.
TailMux is a Mac developer tool focused on security workflows. It appears to combine terminal multiplexing capabilities with security-oriented features for developers. The tool is designed for Mac users who work in security and development environments.
Honeyprompt is an open-source honeypot designed to mimic large language model APIs and endpoints. It supports multiple protocols and includes load-balancing capabilities to distribute decoy traffic across instances. The tool is intended to detect and monitor unauthorized or malicious access attempts targeting LLM infrastructure.
AgentKey is a security tool designed to manage and control API keys for AI agents and automated workflows. It provides oversight and access management for credentials used by AI-powered applications. The tool sits at the intersection of productivity, artificial intelligence, and data security.
ScamCheck is a tool that helps users determine whether a message they have received is a scam. It is designed to analyze suspicious communications across contexts such as fintech, e-commerce, and general security threats. Users can submit messages for evaluation to help identify potential fraud or phishing attempts.
CoverMyCamera is a macOS menu bar app focused on camera privacy. It provides controls to monitor or manage camera access on Apple devices. The app is designed for users who want visibility into when their camera is in use.
Destructive Command Guard is an open-source tool that intercepts and blocks dangerous Git and shell commands before they can be executed by AI agents or automated scripts. It acts as a safety layer to prevent accidental or malicious destructive operations such as force pushes, branch deletions, and file removals. The tool is designed to integrate into agentic workflows where autonomous processes have shell access.
ScamCheck AI is an Android app that uses artificial intelligence to help users identify potential scams. It analyzes messages, links, or other content to flag suspicious activity. The tool is designed to assist with everyday scam detection in a mobile productivity context.
A Trust Index for MCP Servers is a curated directory that rates and evaluates the trustworthiness of Model Context Protocol (MCP) servers. It provides transparency into server security posture to help developers and organizations make informed decisions when integrating MCP servers into their workflows. The index aggregates signals relevant to server reliability and safety.
SecureIntent is a security tool designed for software engineers and developers working with GitHub repositories. It focuses on identifying and managing security intentions within codebases. The tool integrates into developer workflows to help enforce security practices at the code level.
Basedash SCIM provides automated user provisioning and deprovisioning for Basedash using the SCIM protocol. It allows organizations to manage team member access through their existing identity provider, keeping user accounts in sync automatically. This helps teams maintain consistent access control without manual user management.
Hidetext.sh is a command-line tool for concealing sensitive text within files or output streams. It is designed to help users redact or obscure confidential information in shell environments. The tool operates via a simple shell script interface accessible through its web endpoint.
AuthLX is a security-focused tool designed for SaaS applications and developer workflows. It provides authentication and authorization capabilities for developers building secure software. The product is categorized under developer tools and security.
SafeTrakX is an Android-based security and productivity tool available as a SaaS platform. It incorporates artificial intelligence to support tracking and safety-related workflows. The product is listed on Product Hunt under the Android, Productivity, SaaS, and AI categories.
Purili is a privacy-focused search tool with API access. It is designed to help users and developers search the web without compromising personal data. The product sits at the intersection of search, privacy, and API integration.
Constellation Gate AI is a security-focused tool designed for developers working with artificial intelligence systems. It provides access control and gating capabilities to help manage and secure AI-driven workflows. The tool sits at the intersection of developer tooling and AI security.