
SecretSweep - Find Leaked Secrets in Your Code
SecretSweep finds leaked API keys, passwords, and credentials across your GitHub, GitLab, and Bitbucket repositories.
@MaksimHaydwv7j · X
完整作品展
技术栈
16 projects

SecretSweep finds leaked API keys, passwords, and credentials across your GitHub, GitLab, and Bitbucket repositories.
@MaksimHaydwv7j · X

纯前端马赛克隐藏敏感图片,仅你可以还原。
mqx · V2EX
图片转马赛克网站 简介:可以把敏感的图片生成马赛克,然后发送给别人,别人再上传还原,纯前端(隐私安全) 网站地址: https://e5660498.pinme.dev/ 放一张测试图片在一楼

用AI分析敏感数据,通过客户端加密实现端到端保护。
@JackiePeters · X

SecureDocs Cloud — 安全云存储,支持家庭成员共享重要文件。
@DwivediNitil · X
Go physical to digital

扫描应用和网站找出意外的数据泄露。
mrr7337 · HN
Rejourney – Finds user "leaks" in apps and websites

使用硬件认证和OTP保护GitHub拉取请求。
jallmann · HN
> want without a PR process that requires hardware authentication or proof of presence Just curious, what do you use for this? I built OTP Guard [1] a few years ago for exactly this problem, although I haven't seen any alternatives in the space. Does GitHub have something built-in now? The original framing was more "local malware compromising your GitHub account" ... it never occurred to me that the malware could be a LLM. I really should update the page. [1] https://otpguard.com

为网络设备自动备份配置并用E2EE端到端加密保护。
Willdom1986 · V2EX
多年前考过 CCNP 网络工程师,以前有一个很头疼的地方就是网络设备配置丢失引发的各种故障。后来越发觉得,网络设备的配置实际上是一个非常关键的数字资产。 为此,我利用周末时间开发了 XConf ( https://xconf.ai) 来解决这个问题。 产品主要就是想解决两个问题:**自动化的灾备高可用**,以及**端到端的安全**。 * **自动备份与灾备**:支持将配置定时备份到云端。如果网络断连了,探针会自动在本地离线队列里暂存配置,等连接恢复后自动重传。 * **端到端加密**:本地的 Go 探针是完全开源的,会自动在内存中对密码进行流式脱敏,并在上传前通过 AES-256-GCM 在本地加密。SaaS 后台拿到的只有密文,解密和版本比对( Diff )都完全在你的浏览器本地沙盒里通过 WebCrypto API 进行。 * **打磨版的配置对比 Diff**:我花了一些功夫打磨了浏览器端的配置版本对比功能,力求让日常比对的交互体验足够丝滑。 * **AI 安全基线审查**:系统集成了 AI 辅助的安全基线审查,可以一键检查和分析配置中的潜在风险。 因为目前完全是我利用业余时间(主要在周末)维护,所以确实没精力提供工作日的在线即时客服。大家使用过程中遇到任何 Bug ,欢迎随时去 GitHub 提 Issue ,我会在周末集中修复和跟进。 目前公测已开放,不需要邀请码即可注册,欢迎大家体验吐槽。 探针 agent 开源地址: https://github.com/willdom-lee/xconf-agent 官方网站: https://xconf.ai

使用加密思维签名解密 Claude Sonnet 5 的隐藏推理。
bayes-song · HN
Unlock Claude Sonnet 5's original reasoning

监控 SSL 证书和网站安全,包含自动续期检测、安全头部监控和 DNS 健康检查。
@di_spivak · X

免费的网站安全扫描器,检查 SSL、headers 和合规性,提供即时的信任分数和 AI 指导的修复。
@MrPenetratorTP · X
MrPenetrator helps businesses monitor their website’s trust, security and performance before problems affect their visitors.

Privitly scans 526+ data brokers for your personal information, automates opt-outs, monitors the dark web for breaches, and removes your data from people search sites. Start your f
@Privitly1 · X
privacy app that covers what similar apps miss for cheaper.

检查AI代理输出和操作是否符合策略,获得批准、拒绝、重写或升级决定。
u/danielbaker06072001 · Reddit
Most AI agent SaaS is just bad security with a nice dashboard Give a new employee access to Stripe, GitHub, Slack, and your CRM on day one, and you’d call it reckless. Give the same access to an AI agent, and we call it “autonomous.” That isn’t innovation. It’s skipping basic security because the demo looks cool. Full disclosure: I’m building TrustLoopGuard around this problem, so I’m obviously biased. While testing one MCP connection, I realized I had decided what the agent could a