Free automated security grading tool that checks a website's external security posture.
#security
245 tools curated in this category — including SecURL, Leadcode, Husk
techFind on mySelectas all sites and tools related to security. This selection of 245 resources is reviewed and maintained by the community. The most popular include SecURL, Leadcode, Husk. Each tool comes with a review, tags, comparisons and alternatives to help you make the best choice.
Terminal identity manager for freelancers juggling multiple clients, isolates GitHub, Claude, and API credentials per workspace.
A local-first security scanner that checks your machine for compromised packages, leaked secrets, and risky AI/MCP configs, no cloud, no login.
A Rust + WebAssembly HTML sanitizer built to strip XSS attack vectors roughly 70x faster than DOMPurify.
A self-hosted virtual LAN for Windows that creates encrypted peer-to-peer links between devices on different networks, with stable DNS names, file transfer, and a live network map — a free, self-run alternative to Tailscale.
An antivirus-style watchdog for AI coding agents that runs on your own machine, checking every shell command, file edit and package install before it happens and blocking anything that looks dangerous.
A compliance platform that pairs automated evidence-gathering software with actual licensed auditors on staff, so the same company that helps you prepare for SOC 2 or ISO 27001 can also perform the audit itself.
Automates the grinding paperwork behind security certifications like SOC 2 or ISO 27001 — connecting to your cloud tools, continuously collecting the evidence an auditor needs, and flagging anything that would fail before the real audit happens.
One of the most widely used API gateways — the layer that sits in front of a company's APIs to route, secure, rate-limit and monitor traffic — now expanding into managing AI model traffic and token costs the same way.
Double-checks what an AI agent is about to do against your real, live data before letting it happen — so it can't confidently take an action based on outdated or wrong information.
Lets you check on and control an AI coding assistant running on your computer from your phone, so a long task doesn't have to wait until you're back at your desk.
A checkpoint that sits between your AI agent and the real world, so risky actions (a big code change, a message to a client) need a human's okay before they actually happen.
An Android app that filters and organizes your notifications using custom rules, entirely offline.
A free health check for AI agents that scans for signs an AI is lying, manipulating, or behaving unpredictably before it causes real damage to your business — like a security scanner, but for an AI's honesty and behavior instead of its code.
A middleman that sits between your AI agents and the online services they need to use (GitHub, Slack, AWS, and more), so the agent can act on your behalf without ever seeing your actual passwords or API keys.
A free, open-source command-line tool that replaces a whole stack of separate testing tools — for APIs, load, security, and web pages — with one program, so QA engineers don't have to juggle Postman, k6, and browser scripts separately.
Identity verification API for KYC, KYB and fraud checks — document scanning, selfie liveness checks, and no-code workflows to route or auto-approve verifications.
AI-powered security platform combining automated pentesting, code review and cloud vulnerability scanning to find and fix exploitable issues before attackers do.
Community-governed, truly open-source secrets manager — a Linux Foundation fork of Vault, born when Vault went source-available.
Open-source LLM eval and red teaming: test prompts, compare models, catch jailbreaks and data leaks locally and in CI.