Audit docker-compose.yml for privileged mode, root execution, and leaked secrets.
Execution runs 100% locally inside the browser sandbox using HTML5 Canvas, Web Cryptography Subtle API, and Web Workers. Zero egress.
Zero network latency. Operates completely offline with zero dependencies on third-party backend servers or cloud services.
Built according to official RFC specifications, cryptographic test vectors, and enterprise-grade data transformation standards.
Paste docker-compose.yml content into the editor.
Inspect High, Medium, and Low severity vulnerability alerts.
Fix flagged security misconfigurations before deploying.
Privileged mode disables Linux kernel namespaces and security capabilities, allowing container breakouts to the host.
no-new-privileges prevents binaries inside the container from gaining additional setuid/setgid privileges.
Zero-egress companion tools in the Security & Network suite
Audit CSP, HSTS, X-Frame-Options, and security headers with OWASP grading (A+ to F).
Measure cryptographic randomness, Shannon entropy (0-8 bits/byte), Chi-square test, and byte distributions.
Generate secure RFC 6238 Base32 TOTP secret keys and standard otpauth:// URIs for Google Authenticator.
Construct and validate HTTP CSP headers and meta tags.