Cerbos is an open-source platform that lets you add scalable, fine-grained access control and authorization to your apps, keeping security simple and flexible.
Add secure access controls to your app fast
Cerbos is an open-source authorization layer designed to make adding robust access control to your applications fast and straightforward. With Cerbos, you can separate your authorization logic from your app’s core code, letting you focus on building features while ensuring your security needs are met.
Whether you’re a developer, architect, or part of a security team, Cerbos offers tools and workflows to help you define, test, and manage complex access control policies. Its scalable and extensible design means you can adapt your security as your app grows, and the platform provides plenty of resources—including documentation, a playground for experimenting, and community support—to guide you every step of the way.
Cerbos is ideal for teams looking to implement fine-grained, customizable access control without reinventing the wheel. By externalizing authorization, you can keep your codebase clean and maintain security best practices with less hassle.
Discover websites similar to Cerbos.dev based on shared categories, topics, and features.
SLSA offers an open framework and tools to secure your software supply chain, helping teams prevent tampering and improve project integrity.
gVisor is an open-source platform that adds an extra layer of security for containers, helping you run apps safely and meet compliance needs.
OpenSSF Scorecard helps you check open source projects for risky security practices and vulnerabilities, making it easy to build safer software.
Earn a free OpenSSF Best Practices badge for your open source project and show your commitment to secure, high-quality software development.
Suhosin adds advanced security features to PHP servers, helping protect websites and applications from vulnerabilities in PHP code and core.
Grsecurity offers a secure Linux kernel replacement with advanced exploit prevention, helping you protect systems from both known and unknown threats.
ModSecurity is a free, open source web application firewall that helps protect websites from online threats with customizable rules and real-time monitoring.
Snyk helps developers find and fix security risks in code, open source dependencies, containers, and AI-generated apps, all in one easy platform.
Oligo Security helps you detect and stop security threats in your applications at runtime, so you can focus on building features with peace of mind.
Runtime Verification helps secure blockchain and Web3 projects by using formal methods to verify smart contracts and system logic for safer computing.
Open Policy Agent lets you define and enforce policies across cloud-native systems. Explore docs, try Rego, and join the active community.
Astra Security offers a continuous pentesting platform with automated vulnerability scanning, helping you secure web, API, cloud, and mobile apps easily.
Hacken offers blockchain security audits, AI-powered compliance, and penetration testing to help crypto and Web3 projects stay secure and resilient.
EVVA offers mechanical and electronic locking and access control systems for homes, businesses, and institutions. Info and product finder available. (German site)
Tidelift helps you reduce security risks in open source software and ensures the packages you depend on stay secure and well-maintained over time.
Halborn offers blockchain and Web3 security services like smart contract audits, penetration testing, and code reviews for financial and decentralized projects.
Learn about reproducible builds—software development practices that ensure source code and binaries can be independently verified for security and trust.
Protect AI offers a unified platform to secure AI applications, providing tools and resources to proactively manage and defend against evolving AI threats.
Get expert consulting in PHP security, cryptography, and secure web development to protect your business applications beyond basic compliance.
ZAP lets you find and fix security issues in your web apps. Get started easily with guides, downloads, and a helpful community for web security testing.
Foundeo offers ColdFusion consulting, security training, and developer tools for CFML professionals seeking expert help and practical solutions.
Practice web security skills with this intentionally vulnerable PHP/MySQL app, designed for ethical hacking, learning, and teaching in a safe environment.
Veracode helps you find and fix security vulnerabilities in your software, including AI-generated code, with unified tools for safer app development and deployment.
Mend.io helps development and security teams manage application risks with tools for proactive security, code scanning, and automated risk insights.
MalCare protects WordPress sites with automatic malware scans, one-click malware removal, and a real-time firewall—without slowing your website down.
Anchore helps you secure your software supply chain with SBOM-powered analysis, automating compliance and managing open source risks for your projects.
mgm security partners offers comprehensive application security services, including automated testing, secure coding, and penetration testing for businesses.
Checkmarx offers AI-powered tools for application security testing, helping developers find and fix code vulnerabilities easily within their workflow.
OSTIF.org is a nonprofit helping secure open source apps by organizing security audits and reviews, making software safer for everyone.
Cycode is a platform for managing application security, helping you find, prioritize, and fix vulnerabilities across your software development lifecycle.
Cobalt Strike offers tools for adversary simulation and red team operations, helping security teams test defenses by emulating real-world cyber threats.