Everything here is v0. Experimental code, technical deep-dives, and core logic.
Everything here is v0. Experimental code, technical deep-dives, and core logic.
A visual explainer for software supply chain security: six stages, six real attacks, six defenses.
Collect, score, and surface deep-dive candidates across OAuth WG, WIMSE, and OpenID Foundation specs
Static MUST-clause compliance checker for SPIFFE artifacts (SPIFFE-ID, X.509-SVID, JWT-SVID, Trust Bundle). Each failure cites the spec section.
MCP server exposing Open Policy Agent (OPA) Rego evaluation as a tool — for Claude Code, Cursor, and other MCP clients
MCP server fronting an OpenID AuthZEN 1.0 PDP — lets LLM agents query a real Policy Decision Point
SPIFFE-compatible workload identity + OpenID AuthZEN 1.0 authorization in a single Apache-2.0 binary. Cedar PDP, SPIFFE federation, tamper-evident audit log, Kubernetes operator.
secure-by-default github template for oss: signed commits, sha-pinned actions, slsa v1.0 provenance, sigstore keyless signing, npm oidc publishing.
Loading…
Loading…