Guard Bands reference stack secures LLM inputs with cryptographic boundaries
Provides ready-to-deploy security layer for LLM apps
58 fresh security & privacy projects, scored by craft.
Guard Bands reference stack secures LLM inputs with cryptographic boundaries
Provides ready-to-deploy security layer for LLM apps
Lean formal verification library for Reed–Solomon proximity proofs
Machine‑checked SNARK proofs for Ethereum research
A .NET toolkit for managing GlobalPlatform smart cards
Comprehensive support for SCP02/03 and card emulation
Zig Signal Protocol library with C API for cross‑language use
Zero‑runtime, portable Signal crypto without Rust
CA-BPN: Cache-Aware Batch-Size Policy
Improves constant-time normalization
Open Auth Kit Studio – ready‑made React auth UI with safe demo and OAuth redirect
Rebrandable UI, demo mode, and easy OAuth integration
Open-source auth server for secure login and session management
Self-hosted Auth0 alternative with full SDK support
Secure, self‑hosted secrets vault with signed clients and tamper‑evident audit.
AES‑256‑GCM, replay‑proof, audit chain.
Cloudflare Worker that validates OAuth redirect URIs
Ensures safe OAuth callbacks, prevents open redirects
Pure‑Go library for silent Azure AD token acquisition via Windows WAM
No CGO, direct WinRT calls
Local-first secrets manager that encrypts and deploys .env files
AI‑safe CLI + UI for scoped secret distribution
A solution that streamlines access control
It addresses Telegram's need for secure token-gating using existing frameworks, ensuring efficient implementation.
FHE-powered network intrusion detector that analyzes encrypted traffic on FPGA.
Privacy-preserving IDS using homomorphic encryption.
Laravel IP intel package delivering offline country, ASN, and threat data
Fast offline-first IP lookups with clear outcome handling
Embeddable Swift TLS interception proxy for traffic inspection
Ready‑made MITM engine for Swift developers
Passive eBPF-powered LAN device fingerprinting and anomaly detection
Real-time device ID and anomaly alerts
WireGuard routing helper scripts for policy‑based traffic splits
Automates nft set updates for selective VPN routing
Enterprise WebSocket gateway with Rust threat detection
Combines Go routing with Rust scanning for secure websockets
Lakebed proxy tool for Mac: route traffic via Lakebed with auto-deployment and Wi-Fi setup
Auto-deploys Lakebed capsules rotates traffic configures Wi-Fi proxy
Zero‑knowledge age gate that keeps your birth year private
Privacy‑preserving age check on-chain
Fast, deterministic AI tool‑call guard that blocks unsafe actions in <1.5ms
Deterministic, zero‑latency safety for AI agents
Privacy‑first AI DLP agent that blocks secrets on desktop in seconds
Zero‑data, real‑time secret detection
Latenspect: local tool to detect hidden content and metadata in documents
Finds concealed data before sharing
OWASP VulnerableApp – modular vulnerable app for scanner benchmarking
Realistic, repeatable vulnerabilities for security tool evaluation
OWASP Juice Shop – a realistic vulnerable web app for security training
Provides hands‑on hacking practice
Ghostgate: a local MCP security gateway that blocks risky AI tool calls
Real-time policy, audit, and redaction for AI agents
Secure, auditable LLM proxy that logs and signs every call
Signed receipts for LLM calls
secret-guard: zero‑dependency Python scanner that finds hard‑coded secrets before git
no deps, CI‑ready, pre‑commit hook
BARAQ: Open-source SOC platform for real-time Windows threat detection
Combines rule‑based and ML detection
SessionSleuth: forensic audit tool for AI coding agents' sessions
Verifies AI agent actions and completions
Browser‑based X.509 certificate viewer that parses locally
Privacy‑first local inspection, no server
LeakGuard: FastAPI & Telegram bot for domain data‑leak checks
Combines multiple leak sources with a simple UI
XERA OSINT Framework automates passive web and dark‑web investigations
Integrates LLM, Tor, and search APIs for end‑to‑end OSINT
Vouchq – self‑hosted trust registry that pins AI tool definitions and detects drift
Ensures AI tools stay unchanged, flags tampering
Local-first Web3 repo scanner detecting malicious scripts and Solidity risks
Runs locally, no data upload, anchors proofs on-chain
AWS EC2 security scanner with multi‑threaded checks and compliance reports
Comprehensive, ready‑to‑run tool for EC2 hardening
Evaluates indirect prompt injection in LLM email agents with tool-call logging and detection mechanisms.
Tests email agent security against hidden malicious instructions.
On-premise data discovery and classification engine with NLP for secure internal metadata scanning
Enterprise-grade zero-trust data scanner with built-in ML classification, runs fully offline
Adjent: CLI for MCP server conformance and signed log verification
Fast, zero-dep Go tool for secure agent logs
Lightweight SIEM for real-time log correlation and alerting
Ready‑to‑run SIEM with dashboard and built‑in rules
Open-source security guardian that scans, audits, and hardens multi‑stack code
Combines Semgrep rules, fixtures, anti‑drift checks, and DAST
GitHub Security Monitor – auto‑track CVEs and repo activity via Actions
Runs on GitHub Actions, no server needed
C2Detector: DFIR tool that extracts C2 traffic from PCAP files
Detects Havoc/Nimplant C2, auto-decrypts payloads
Compliance audit tool
Simplifies compliance
dmarc-inspector parses DMARC XML reports into readable tables
CLI turns DMARC aggregates into clear tables
ShopOSINT extracts merchant info from payment links silently
Automates OSINT on Stripe, SumUp, Revolut, Lydia
Local Aadhaar card validator that checks QR code and OCR consistency offline
Verifies ID authenticity without sending data
Deliberately vulnerable PHP app for OWASP security training
Hands‑on labs with graded difficulty and diff view
Airlock: deterministic egress gate for locked‑down LLM agents
Enforces single‑domain, fail‑closed browsing for AI agents
Aegis IR: offline incident response tool for air‑gapped SOCs
Works without network, signs audit logs
Interactive web lab visualizing AI watermark robustness
Client‑side simulation, no backend, shows watermark fragility
iOS VM toolchain for parsing, mutating, and patching Apple Device Trees
CLI utilities for device‑tree hacking in QEMU
XEQM WALLET – a non‑custodial desktop wallet for the XEQM privacy network
Provides secure, self‑hosted crypto management
iOS app to generate and scan Apple Watch pairing Magic Codes via private VisualPairing framework
Demonstrates and tests Apple Watch pairing security vulnerabilities
A browser‑based hacking simulation game teaching Unix commands
Interactive terminal game for learning security basics
Security questionnaire copilot that seals answers to approved evidence
Streamlines enterprise deal processes by linking answers to verified sources
Rust-based Windows PE protector with encryption and virtualization
Provides layered obfuscation and anti‑analysis for Windows binaries
Cloud security architecture designs
Enterprise-grade security