

Vendor Access Vault is a credential management platform for teams that work with external vendors. It vaults vendor credentials with AES-256-GCM encryption, gates plaintext reveals behind just-in-time access requests with admin approval and auto-expiration, and maintains an append-only audit log of every action with actor, IP, and user agent. Features include role-based access control with owner, admin, and viewer tiers, TOTP two-factor authentication, Google OAuth login, rotation tracking with automated email reminders, multi-tenant organization isolation, CSV audit export, and an in-app notifications inbox.

DiligenceDesk is a free federal contractor due diligence tool that reconciles eight public U.S. data sources including SAM.gov, DOL, OSHA, the Consolidated Screening List, USAspending, SEC EDGAR, GLEIF, and NIST NVD into a deterministic PASS, WARNING, FAIL, or NEUTRAL verdict. Includes a Section 889 prohibited-hardware registry, batch CSV multi-entity auditing, interactive risk graph visualization, sector-risk overlay for 32 NAICS and 44 PSC codes, local-first audit history, and an 18-page reference knowledge base. PDF and CSV export included. No account required.

WebShield is a production security scanner that checks any URL across transport, network, and application layers. Scans security headers, TLS handshakes, CVEs via OSV.dev, cookies, DNS including CAA, MX, and DNSSEC, email authentication covering SPF, DMARC, DKIM, MTA-STS, and BIMI, exposed paths such as .env and .git, third-party trackers, and technology fingerprints. Includes a 22-article knowledge base and copy-paste remediation configs for Nginx, Apache, Vercel, Netlify, and Cloudflare. No account required.
Beaconly is a free AI discoverability audit tool that checks whether a website is properly configured for AI crawler discovery and citation. Audits three layers: crawler access including robots.txt permissions for GPTBot, ClaudeBot, PerplexityBot, and Google-Extended, plus llms.txt structure and sitemap presence; structured data including JSON-LD Organization identity, sameAs links, dateModified, FAQPage schema, and SpeakableSpecification; and page structure including meta description, canonical URL, Open Graph tags, heading structure, HTTPS, and response speed. Returns specific pass or fail results with actionable fixes. No account or signup required.

File X-Ray is a browser-first metadata inspector supporting 20+ file formats including images such as JPEG, PNG, WebP, TIFF, HEIC, AVIF, and GIF, documents including PDF, DOCX, XLSX, and PPTX, video formats MP4 and MOV, and audio formats MP3, FLAC, WAV, M4A, OGG, and AIFF. Features GPS coordinate mapping on an interactive map, per-field privacy risk classification, AI-powered metadata summaries via Gemini, byte-level PDF forensics, metadata stripping with strip-diff reports, and a 9-section field guide. All processing happens in the browser with no server uploads.

BitSeal is a cryptographic provenance system that seals files with BLAKE3 Merkle trees and Ed25519 Authority signatures, anchored to the Bitcoin blockchain via OpenTimestamps. All file hashing happens in the browser with no server uploads. Seals persist in a tamper-evident ledger with a published Authority verification key. Includes an open-source Python SDK for full offline verification. Features SHA3-512 dual digest, daily cron proof upgrades, and a well-known URL for the Authority verification key.

OPA MCP is an open-source Model Context Protocol server that gives Claude, Cursor, VS Code, and any MCP-compatible client a structured interface to Open Policy Agent and Regal. Author, evaluate, debug, and deploy Rego policies through 39 tools with stable error codes and schema-validated input. Features include Rego policy authoring, formatting, and linting, OPA evaluation with explain, profile, and coverage modes, Regal linter integration, OPA bundle build and sign, OPA server REST API management, test skeleton generation, security audit tool, and input schema inference. Available as a multi-arch Docker image and npm package with provenance attestations. Listed in the official OPA Ecosystem.
Orygn builds custom software, automation systems, and security tools for businesses that need things built and built right. We're a small, focused operation, which means faster turnaround, direct communication, and solutions designed around your actual workflow. Not a template. Not a generic package. What we work on: - Custom software and web applications - Internal tools, dashboards, and portals - Workflow automation and integrations - Website design and development - Security scanning and infrastructure hardening We also ship our own example products/demos - WebShield, DiligenceDesk, File X-Ray, BitSeal, and more - available at orygn.tech. Small business, growing team, or something in between - if you have a project that needs to move, reach out.