Open-SSPM is a small “who has access to what” service. It syncs identities from Okta (IdP) and permissions from connected apps (GitHub, Datadog, AWS Identity Center). Demo: admin@admin.com / admin
Security & Observability for AI Agents — audit every tool call, enforce allow/block policies, catch prompt injection and data leaks. Local-first; works with Claude Code, Codex, Copilot CLI, OpenClaw, LangChain, and all major LLM APIs.
A library and SDK to redact sensitive content from GenAI/LLM telemetry (prompts, completions, tool arguments) before it reaches observability backends. Supports OpenTelemetry conventions.
Composable, non-opinionated authentication toolkit for Go — import the modules you need (identity, tokens/JWT, sessions, passkeys, OAuth/OIDC, MFA, OTP) and wire them with DI. Secure-by-default, no framework.
Open-source, invisible CAPTCHA that detects AI agents, bots, and headless browsers via 40+ behavioral signals, device & TLS fingerprinting, and SHA-256 proof of work. Self-hosted and privacy-first.
Opinionated PHP code-quality analyzer that scores findings across quality pillars and emits reports for terminals, CI, SARIF, HTML, and a local dashboard.