Alternatives
Products that do what DeltaRQ does
Detect AWS threats and generate SOC 2 evidence automatically
- 1

- 2

- 3

- 4CC
Dear HN community! Looking forward to hearing your feedback on ACE (assured confidential execution), technology that implements VM-based trusted execution environment (TEE) for embedded RISC-V systems with focus on a formally verified and auditable firmware. We target high-assurance systems that can benefit from compartmentalization and hardware-backed isolation. The key ingredient called security monitor (firmware) is implemented in Rust. The formal specification is defined as annotations directly in code and gets translated to Coq using RefinedRust automation. ACE design is now part of the…
2025 · github.com
- 5

- 6KD
I built this after seeing multiple teams accidentally ship API keys in their frontend code. The problem: Modern web development moves fast. You're vibe-coding, shipping features, and suddenly your AWS keys are sitting in a tag visible to anyone who opens DevTools. I've personally witnessed this happen to at least 3-4 production apps in the past year alone. KeyLeak Detector runs through your site (headless browser + network interception) and checks for 50+ types of leaked secrets: AWS/Google keys, Stripe tokens, database connection strings, LLM API keys (OpenAI, Claude, etc.), JWT…
Nov 2025 · github.com
- 7

- 8
- 9

- 10

devops, cloud, aws, saas, terraform, cloud security,
Jun 2026 · infraviewer.site
- 11

- 12

- 13WV
Honeytoken technology is becoming more and more important in the world of supply chain security. SaaS-Sentinel is an alerting platform based on this technology to notify subscribers when a honeytoken planted in a SaaS provider was triggered. This is the story of the project.
2023 · blog.gitguardian.com
- 14AQ
2016 · github.com
- 15

- 16GL
I wanted to do a complete audit of my AWS account but was dissatisfied with the existing tools. Many of them are clunky to use, and their verbose scan outputs are difficult to understand. So, I built my own open-source tool that uses LLMs to summarize the scan results.
2024 · guard.dev
- 17IO
Hi all, IaSQL maintains a two-way connection between an unmodified PostgreSQL database and an AWS account. IaSQL at it's core is a diffing system between the cloud infrastructure state and the desired state that is used to execute AWS SDK calls to update your infrastructure. But we also use the same mechanism to take changes in your infrastructure, perhaps made via the AWS console or an IaC tool like Terraform, and pull that into your IaSQL database. We use an audit log tracking who made changes where to determine which way the synchronization process goes, and this gives us a lot of…
2023 · github.com
- 18

Hi, Wanted to share something I've been working on for over a year. AuditBadger is a compliance management platform that uses AI to write policies (there are underlying "templates" with basic requirements), rewrite controls (or trust service criterions) to match the company context, help figure out your own controls, does initial risk assessment, and business continuity planning (which at least gives you an example of how the process should look like). Fun fact - I wanted to share this a year ago, but then I spotted something similar here. The most common comment was about lacking the SOC 2…
Aug 2026 · auditbadger.com
- 19

- 20

Cloud security assessment for misconfigs and IAM risks
Feb 2026 · cloudscanner.qualysec.com
- 21

- 22DD
Apr 2026 · flowtriq.com
- 23

- 24HO
Hello HN, I’m excited to share something we’ve been working on: Cloud Troubleshooting Labs. This tool provides on-demand environments for engineers to practice hands-on troubleshooting with AWS, GCP, Azure, and Kubernetes. What it does: We use Pulumi to spin up these environments. Each scenario includes a diagram and an explanation of the available IT infrastructure. Engineers are tasked with fixing configuration issues to make the application work. Depending on the test type, the environment could range from a simple terminal to a full cloud environment or a web-based VSCode. Many of our…
2024 · brokee.io
Ranked by how close each launch is in meaning, then by votes. Refine with a description →