An open API service indexing awesome lists of open source software.

Projects in Awesome Lists tagged with zero-trust

A curated list of projects in awesome lists tagged with zero-trust .

https://github.com/opennhp/opennhp

A lightweight, cryptography-powered, open-source toolkit built to enforce Zero Trust security for infrastructure, applications, and data in the AI-driven world.

cybersecurity zero-trust zero-trust-network-access zero-trust-security

Last synced: 22 Apr 2025

https://github.com/OpenNHP/opennhp

NHP: A lightweight cryptography-driven Zero Trust networking protocol at the OSI 5th layer to hide your server and data from attackers.

cybersecurity zero-trust zero-trust-network-access zero-trust-security

Last synced: 10 Mar 2025

https://github.com/gravitl/netmaker

Netmaker makes networks with WireGuard. Netmaker automates fast, secure, and distributed virtual networks.

cloud devsecops k8s kubernetes mesh mesh-network network networking overlay-network security self-hosted virtual-network virtual-networking vpn vpn-server wg-quick wireguard wireguard-ui wireguard-vpn zero-trust

Last synced: 22 Apr 2025

https://github.com/codenotary/immudb

immudb - immutable database based on zero trust, SQL/Key-Value/Document model, tamperproof, data change history

auditable compliance cryptographic database gdpr go immutable immutable-database key-value merkle-tree pci-dss performance sql tamper-evident tamperproof timetravel verification verify zero-trust

Last synced: 18 Apr 2025

https://github.com/build-trust/ockam

Orchestrate end-to-end encryption, cryptographic identities, mutual authentication, and authorization policies between distributed applications – at massive scale.

authentication authorization credentials distributed-systems e2ee encrypted-connections encrypted-messages encryption end-to-end-encryption identity kafka key-management messaging rust security snowflake trust zero-trust

Last synced: 22 Apr 2025

https://github.com/pomerium/pomerium

Pomerium is an identity and context-aware access proxy.

beyondcorp gateway go iam identity identity-aware-proxy pomerium reverse-proxy vpn zero-trust

Last synced: 23 Apr 2025

https://github.com/hashicorp/boundary

Boundary enables identity-based access management for dynamic infrastructure.

hacktoberfest hashicorp security zero-trust

Last synced: 22 Apr 2025

https://github.com/i5ik/Viewfinder

🌀 Browse the whole web from a web page. Remote browser isolation. For compliance, integration, security, privacy and more! By https://dosyago.com

browser cdr chrome cobrowsing cybersecurity embeddable hidden-services multiplayer onion-service proxy-server rbi remote-browser-isolation remote-browsers reverse-proxy sanitization tor web-browser web-isolation webrtc zero-trust

Last synced: 07 Feb 2025

https://github.com/openziti/ziti

The parent project for OpenZiti. Here you will find the executables for a fully zero trust, application embedded, programmable network @OpenZiti

appsec golang mesh netsec network networking overlay overlay-network secure-networking vpn vpn-2 zero-trust zero-trust-cloud zero-trust-network zero-trust-network-access zero-trust-security zerotrust ztaa ztha ztna

Last synced: 23 Apr 2025

https://github.com/openziti/zrok

Geo-scale, next-generation peer-to-peer sharing platform built on top of OpenZiti.

file-sharing golang network peer-to-peer reverse-proxy security zero-trust

Last synced: 23 Apr 2025

https://github.com/lunasec-io/lunasec

LunaSec - Dependency Security Scanner that automatically notifies you about vulnerabilities like Log4Shell or node-ipc in your Pull Requests and Builds. Protect yourself in 30 seconds with the LunaTrace GitHub App: https://github.com/marketplace/lunatrace-by-lunasec/

compliance continuous-delivery cve-scanning cybersecurity dependency-analysis devsecops gdpr log4shell pci-dss sbom sbom-generator scanning scanning-tool security security-tools soc2 software-composition-analysis tokenization web-security zero-trust

Last synced: 14 Apr 2025

https://github.com/warrant-dev/warrant

Warrant is a highly scalable, centralized authorization service based on Google Zanzibar. Use it to define, enforce, query, and audit application authorization and access control.

abac access-control acl authorization authz ciam entitlements fgac fine-grained-access-control fine-grained-authorization golang iam permissions pricing-tiers rbac rebac relationship-based-access-control role-based-access-control zanzibar zero-trust

Last synced: 13 Apr 2025

https://github.com/mrash/fwknop

Single Packet Authorization > Port Knocking

authentication authorization firewall hmac port-knocker spa zero-trust

Last synced: 12 Apr 2025

https://github.com/OpenIdentityPlatform/OpenAM

OpenAM is an open access management solution that includes Authentication, SSO, Authorization, Federation, Entitlements and Web Services Security.

aaa access access-management accounting active-directory authentication authorization federation kerberos oauth oauth2 oidc openam opensso policy saml sso webauthn zero-trust zta

Last synced: 30 Mar 2025

https://github.com/openidentityplatform/openam

OpenAM is an open access management solution that includes Authentication, SSO, Authorization, Federation, Entitlements and Web Services Security.

aaa access access-management accounting active-directory authentication authorization federation kerberos oauth oauth2 oidc openam opensso policy saml sso webauthn zero-trust zta

Last synced: 10 Apr 2025

https://github.com/pritunl/pritunl-zero

Zero trust system

beyondcorp smartcard u2f zero-trust

Last synced: 30 Mar 2025

https://github.com/vatsi2/bitcoin-investor-software

Bitcoin whales slash taxes 47%, lock millions offline, and trade undetected. Royen: 2025’s elite crypto fortress. Become untouchable.

bitcoin bitcoin-halving bitcoin-secure bitcoin-tax-application cold-storage crypto-tax fifo hodlers irs lifo liquidity-management multisig-wallets otc-exchange regulatory-reporting self-custody tax-calculation whale-tracker zero-trust

Last synced: 02 Apr 2025

https://github.com/openidentityplatform/opendj

OpenDJ is an LDAPv3 compliant directory service, which has been developed for the Java platform, providing a high performance, highly available, and secure store for the identities managed by your organization. Its easy installation process, combined with the power of the Java platform makes OpenDJ the simplest, fastest directory to deploy and manage.

ldap ldap-client ldap-server ldap-service opendj opends replication rest rest-api rest2ldap zero-trust zta

Last synced: 13 Apr 2025

https://github.com/OpenIdentityPlatform/OpenDJ

OpenDJ is an LDAPv3 compliant directory service, which has been developed for the Java platform, providing a high performance, highly available, and secure store for the identities managed by your organization. Its easy installation process, combined with the power of the Java platform makes OpenDJ the simplest, fastest directory to deploy and manage.

ldap ldap-client ldap-server ldap-service opendj opends replication rest rest-api rest2ldap zero-trust zta

Last synced: 06 Apr 2025

https://github.com/dosyago/chai

chai - Experience Zero Trust security with Chai! Convert and view documents as vivid images right in your browser. No mandatory downloads, no hassle—just pure, joyful security! 🌈

chai clientless content-disarm-and-reconstruction converter docspunk document-spark document-viewer-app document-vpn docx-converter pdf pdf-viewer-application secure-view zero-trust

Last synced: 09 Apr 2025

https://github.com/dosyago/documentspark

chai - Experience Zero Trust security with Chai! Convert and view documents as vivid images right in your browser. No mandatory downloads, no hassle—just pure, joyful security! 🌈

chai clientless content-disarm-and-reconstruction converter docspunk document-spark document-viewer-app document-vpn docx-converter pdf pdf-viewer-application secure-view zero-trust

Last synced: 14 Feb 2025

https://github.com/wecooperate/iMonitorSDK

The world's most powerful System Activity Monitor Engine · 一款功能强大的终端行为采集防御开发套件 ~ 旨在帮助EDR、零信任、数据安全、审计管控等终端安全软件可以快速实现产品功能, 而不用关心底层驱动的开发、维护和兼容性问题,让其可以专注于业务开发

access-control defender edr endpoint-security etw kernel monitoring-tool procmon security sysmon zero-trust

Last synced: 21 Nov 2024

https://github.com/otterize/intents-operator

Manage network policies, AWS, GCP & Azure IAM policies, Istio Authorization Policies, and Kafka ACLs in a Kubernetes cluster with ease.

acl auth authentication authorization controller go golang hacktoberfest ibac intents kafka kubernetes mtls networkpolicies operator otterize zero-trust

Last synced: 17 Nov 2024

https://github.com/cogolabs/transcend

BeyondCorp-inspired HTTPS/SSO Access Proxy. Secure internal services outside your VPN/perimeter network during a zero-trust transition.

beyondcorp federation golang http-proxy openid-connect perimeter-network proxy proxy-server relying-party security trust-transition vpn zero-trust

Last synced: 19 Mar 2025

https://github.com/cogolabs/beyond

BeyondCorp-inspired HTTPS/SSO Access Proxy. Secure internal services outside your VPN/perimeter network during a zero-trust transition.

beyondcorp federation golang http-proxy openid-connect perimeter-network proxy proxy-server relying-party security trust-transition vpn zero-trust

Last synced: 09 Apr 2025

https://github.com/miragenetwork/mirageserver

蜃境:基于Headscale修改的带WebUI开源版本Tailscale控制器

headscale mirage sdp tailscale web-ui zero-trust

Last synced: 09 Apr 2025

https://github.com/MirageNetwork/MirageServer

蜃境:基于Headscale修改的带WebUI开源版本Tailscale控制器

headscale mirage sdp tailscale web-ui zero-trust

Last synced: 26 Mar 2025

https://github.com/erisa/discord-oidc-worker

Sign into Discord on Cloudflare Access, powered by Cloudflare Workers!

cloudflare-access cloudflare-workers discord oauth2 oidc-provider workers zero-trust

Last synced: 04 Apr 2025

https://github.com/werbot/werbot

🔑 Team Access Sharing - a self-hosted solution with single sign-on for secure, easy shared access to servers, databases, and applications.

1password audit bastion cluster database-access firewall firewalls go golang hacktoberfest kubernetes kubernetes-access pam postgresql rdp security self-hosted ssh werbot zero-trust

Last synced: 09 Dec 2024

https://github.com/ssbostan/tondra

Continuous Development on Kubernetes environments with Skaffold

agile docker flask helm k8s kubernetes skaffold zero-trust

Last synced: 12 Nov 2024

https://github.com/microsoft/azureopenai-with-apim

Deploy APIM. Auto-configure it to work with your Azure Open AI.

api api-management apim azure azure-government azure-openai federal government open-ai zero-trust

Last synced: 05 Apr 2025

https://github.com/uatuko/ruek

🔐 Lightning fast, global scale authorization service without the overhead of a yet another DSL.

abac access-control authorization cmake cpp20 fga fine-grained-authorization grpc least-privilege rbac rebac zanzibar zero-trust

Last synced: 07 Apr 2025

https://github.com/openidentityplatform/openidm

OpenIDM is an open standards based Identity Management, Provisioning and Compliance solution. Experience shows that the most important features of an identity management product are: high flexibility in Business Process handling and compliance with open standards and interfaces. A highly flexible user interface combined with a very robust workflow engine make OpenIDM ready for any Identity Management project.

activiti compliance connector directory integration process-manager provision rest-api workflow zero-trust zta

Last synced: 05 Apr 2025

https://github.com/spiffe/spike

SPIKE is a lightweight secrets store that uses SPIFFE as its identity control plane. It protects your secrets and helps your ops, SREs, and sysadmins manage sensitive data securely with minimal overhead.

cloud-native devops devsecops identity-management infrastructure infrastructure-security secrets-management secrets-manager secrets-store security spiffe spire zero-trust

Last synced: 06 Apr 2025

https://github.com/azure/azure-spring-apps-landing-zone-accelerator

The Azure Spring Apps landing zone accelerator is an open-source collection of architectural guidance and reference implementation to accelerate deployment of Azure Spring Apps at scale.

application-gateway arm-templates azure azure-cli azure-spring-apps azure-spring-cloud bicep cloud database firewall lza on-premises spring-apps spring-boot spring-cloud tanzu terraform virtual-network vmware zero-trust

Last synced: 20 Dec 2024

https://github.com/Azure/azure-spring-apps-landing-zone-accelerator

The Azure Spring Apps landing zone accelerator is an open-source collection of architectural guidance and reference implementation to accelerate deployment of Azure Spring Apps at scale.

application-gateway arm-templates azure azure-cli azure-spring-apps azure-spring-cloud bicep cloud database firewall lza on-premises spring-apps spring-boot spring-cloud tanzu terraform virtual-network vmware zero-trust

Last synced: 18 Nov 2024

https://github.com/openidentityplatform/openig

Open Identity Gateway (OpenIG) is a high-performance reverse proxy server with specialized session management and credential replay functionality.

authorization gateway groovy-script oauth openam openid-connect openig opensso policy-agent replay reverse-proxy reverse-proxy-server rewrite saml saml2 sso throttling zero-trust zta

Last synced: 05 Apr 2025

https://github.com/openziti/edge

Application-embedded connectivity and zero-trust components

appsec netsec zero-trust zero-trust-network zero-trust-network-access zero-trust-security zerotrust

Last synced: 09 Dec 2024

https://github.com/quicsec/quicsec

HTTP/3-enable existing HTTP apps. Leverage HTTP3 native features and auto-enable workload identity (SPIFFE), AuthN (mTLS/x509, OIDC/Auth0-Okta), AuthZ (OPA), defense-in-depth (WAAP/WAF), and observability (metrics, logs, alerting, dashboard).

auth0 authentication cert-manager cloud-native grafana http http3 kubernetes loki metrics mtls oidc okta open-policy-agent prometheus quic security spiffe waf zero-trust

Last synced: 12 Apr 2025

https://github.com/adamyi/CTFProxy

Your ultimate infrastructure to run a CTF, with a BeyondCorp-like zero-trust network and simple infrastructure-as-code configuration.

capture-the-flag ctf ctf-events ctf-framework ctf-platform ctf-scoreboard ctf-tools ctfd education proxy security zero-trust

Last synced: 30 Mar 2025

https://github.com/pomerium/pomerium-helm

Official helm charts for Pomerium.

beyondcorp chart cloud-native helm-charts pomerium zero-trust

Last synced: 28 Feb 2025

https://github.com/zscaler/terraform-provider-zpa

:cloud: Terraform Provider for Zscaler Private Access :cloud:

sase terraform terraform-provider zero-trust zscaler

Last synced: 09 Apr 2025

https://github.com/flowshield/flowshield

Global web3.0 decentralized private retrieval of data security network,Building Cyber Sovereignty. by @IceFireLabs

blockchain dao decentralized ethereum fvm ipfs libp2p nerovs network p2p security web3 zero-trust

Last synced: 13 Apr 2025

https://github.com/zscaler/terraform-provider-zia

:cloud: Terraform Provider for Zscaler Internet Access :cloud:

sase terraform terraform-provider zero-trust zscaler

Last synced: 16 Apr 2025

https://github.com/mithril-security/blind_llama_client

Zero-trust AI APIs for easy and private consumption of open-source LLMs

ai confidential llm open-source zero-trust

Last synced: 14 Dec 2024

https://github.com/pomerium/pomerium-operator

An operator for running Pomerium on a Kubernetes cluster.

beyondcorp cloud-native go helm-chart identity kubernetes kubernetes-operator pomerium zero-trust

Last synced: 12 Nov 2024

https://github.com/borgoat/farmfa

TOTP MFA for teams: Shamir's Secret Sharing and zero trust OTP generation

hotp least-privilege mfa otp otp-generator shamir-secret-sharing totp zero-trust

Last synced: 21 Apr 2025

https://github.com/opentdf/platform

Persistent data centric security that extends owner control wherever data travels

data-encryption data-tagging drm end-to-end-encryption file-encryption go golang open-source opensource opentdf tdf zero-trust zero-trust-security

Last synced: 17 Feb 2025

https://github.com/opentdf/spec

Trusted Data Format (TDF) is an Open, Interoperable, JSON encoded data format for implementing Data Centric Security for objects (such as files or emails) in zero-trust security world. This repository specifies the protocols and schemas required for TDF operation.

data-encryption data-tagging drm end-to-end-encryption file-encryption open-source opensource opentdf tdf zero-trust zero-trust-security

Last synced: 15 Mar 2025

https://github.com/zscaler/terraform-aws-cloud-connector-modules

Terraform Modules for Zscaler Cloud Connector on AWS

aws sase terraform zero-trust zscaler

Last synced: 21 Apr 2025

https://github.com/curityio/oauth-filter-for-java

A Servlet Filter that can be used for OAuth 2.0 protection in any Java-based Web API

api claims oauth2 scopes sdk zero-trust

Last synced: 03 Dec 2024

https://github.com/curityio/flask-of-oil

An OAuth 2.0 filter written in Python to protect APIs built using Flask

api claims jwt-validation oauth2 scopes sdk zero-trust

Last synced: 03 Dec 2024

https://github.com/gamussa/kuma4devs

Service Mesh for the Developer (with examples using Kuma Mesh kuma.io)

java kotlin mtls observability service-mesh zero-trust

Last synced: 06 Dec 2024

https://github.com/t0mer/cloudflared-mon

Cloudflared-Mon is a python based Cloudflare Zero Tunnel monitoring. With Cloudflare you will be notified when tunnel health has changed.

apprise bot cloudflare cloudflare-tunnel cloudflared docker docker-compose home-automation python3 zero-trust

Last synced: 15 Apr 2025

https://github.com/zscaler/zscaler-sdk-go

Zscaler SDK for Golang (ZPA/ZIA/ZDX/ZCC APIs)

golang zero-trust zero-trust-security zia zpa zscaler

Last synced: 21 Apr 2025

https://github.com/curityio/express-oauth-jwt

A Node.js Express example API Secured with OAuth tokens

api claims jwt-validation oauth2 scopes sdk zero-trust

Last synced: 03 Dec 2024

https://github.com/curityio/example-java-oauth-protected-api

A Java Example of an OAuth protected RESTful API

api claims code-example jwt-validation oauth2 scopes zero-trust

Last synced: 03 Dec 2024

https://github.com/alisle/ZeroTrust-Track

Linux Endpoint which tracks and logs all incoming and outgoing TCP and UDP connections along with the name of the process and who owns the process

linux monitoring-daemon monitoring-tool rust security-tools zero-trust

Last synced: 24 Nov 2024

https://github.com/andreafortuna/cfpihole

Simple python script to import PiHole domain blocking lists into Cloudflare Zero-Trust Gateway configuration

cloudflare pihole zero-trust

Last synced: 09 Feb 2025

https://github.com/tetratelabs/zta-demo-2022

Demo delivered at the 2022 ZTA and DevSecOps for Cloud Native Applications NIST conference

ngac security service-mesh wasm zero-trust

Last synced: 11 Nov 2024

https://github.com/mohammed90/caddy-zero-trust-tls-everywhere

Example of zero-trust architecture with Caddy Server

caddy caddyserver devsecops infrastructure mtls tls zero-trust

Last synced: 18 Mar 2025

https://github.com/zscaler/ziacloud-ansible

Ansible collection that automates the configuration and operational tasks on Zscaler Internet Access, using the ZIA API.

ansible ansible-galaxy automation automation-hub redhat zero-trust zia zscaler

Last synced: 21 Apr 2025

https://github.com/zscaler/terraform-aws-zpa-private-service-edge-modules

Terraform Modules for Zscaler Private Service Edge on AWS

sase terraform zero-trust zscaler

Last synced: 21 Apr 2025

https://github.com/zscaler/cloud-native-aws-cloud-connector-deploy

CloudFormation Templates for Zscaler Cloud Connector on AWS

aws cloudformation sase zero-trust zscaler

Last synced: 21 Apr 2025

https://github.com/nathanjepson/wdac-framework

Easily create, deploy, and edit Windows Defender Application Control (WDAC) policies. Allows for careful review of app information before trusting WDAC rules. Manage your policies with WinRM (remote PowerShell) and SQLite.

application-control applicationcontrol defender enterprise-security operation-system-security powershell powershell-script security sqlite sqlite-database wdac windows windows-defender windows-defender-application-control windowsdefender winrm zero-trust

Last synced: 16 Mar 2025

https://github.com/ghassanmas/tutor-contrib-cloudflared

The tutor clouflared plugin, is a plugin that integrates Open edX tutor tool, with cloudflared service, so that it allows to run the platform, without the need to have the machine/server http/https 80/443 necessary open to the public internet

cloudflare openedx tutor zero-trust

Last synced: 03 Dec 2024

https://github.com/zscaler/terraform-azurerm-cloud-connector-modules

Terraform Modules for Zscaler Cloud Connector on Azure

azure sase terraform zero-trust zscaler

Last synced: 21 Apr 2025

https://github.com/neocky/it-security-for-humans

:guard: IT Security Guidelines for Humans written in an understandable language with examples

cybersecurity it-security security security-tools system-administration zero-trust zero-trust-network

Last synced: 21 Feb 2025

https://github.com/zscaler/crossplane-provider-zpa

Zscaler Private Access (ZPA) Provider for Crossplane.

cloud-security crossplane crossplane-provider kubernetes zero-trust zscaler

Last synced: 21 Apr 2025

https://github.com/orbiously/zerotier-orb

Join a ZeroTier network and use another ZeroTier member as a jump/bastion host.

circleci circleci-orbs vpn zero-trust zerotier

Last synced: 01 Apr 2025

https://github.com/paper-dragon/docker-transparent-proxy

Docker透明代理,给容器分配一个公网地址。通过共享网络命名空间将正在运行的容器的网络提供给另一个工作容器。

clash docker docker-tproxy private-network proxy proxy-server tproxy tun2proxy warp-docker zero-trust

Last synced: 12 Feb 2025