The security dashboard
for sysadmins

50+ modules for auditing, firewall management, VPN, SSL, DNS and network scanning. Runs entirely on your hardware. No cloud. No telemetry.

iptables / nftables WireGuard / OpenVPN BIND9 + RPZ Debian 13 AppArmor zero cloud ASN + PTR sweep CLI + browser
netforge — audit
$ netforge audit example.com
✓ SSL / TLS
✓ DNS
✓ Cookie
✓ CORS
! Mail
✓ Port Scan
✓ Path & Admin Probe
 
Score: 87/100 — low
 
$ netforge webprobe example.com
✓ Jenkins identified [HTTP 200]
! /.env (420 B)
85/100
Full Audit A–F13 modules

SSL/TLS, cookies, CORS, CSP, methods, technology stack, mail, clickjacking, open redirect, ports, path & admin probe. Weighted score, radar chart, PDF report.

Path & Admin Probewebprobe

Service identification from root page, sensitive file probing (.git, .env, backups, phpinfo). Default credentials from public DB (DefaultCreds-cheat-sheet).

Subdomain Discoveryct · san · brute

Certificate Transparency logs, SAN crawler (recursive TLS certificate extraction), DNS brute force. Cert status, DNS resolve, dangling detection.

Firewalliptables · nftables · ipset

Parser, builder and exporter. 18 audit checks with findings and guided fixes. Rule conflict detection, simulator, diff.

VPNwireguard · openvpn

Configuration generator and auditor. Multi-client, mesh topology, DDNS integration via BIND9 event hooks.

DNSmulti-resolver · bind9 · rpz

Multi-resolver queries, DNSSEC, AXFR, reverse lookup, PTR sweep on ASN CIDRs. BIND9 config generator with RPZ blocklists.

Network Scannerlan · snmp · l2

LAN and remote subnet scanning with topology map. SNMP audit, NetBIOS hostname discovery, multi-host scan with per-host audit.

L2 Anomalyids

Detects ARP Poisoning, DHCP Rogue, DNS Spoofing, SYN Flood, port scan activity, Stratum mining connections.

SSL / TLSx509 · ocsp · hsts

Protocol support, cipher suites, certificate chain, OCSP stapling, HSTS preload, CT logs, forward secrecy. Grade A–F.

Mail Analysisspf · dkim · dmarc · rbl

SPF, automatic DKIM selector discovery, DMARC policy, RBL on 10 blacklists, STARTTLS, MX fingerprint.

CVE & Fingerprintnvd · waf

Technology stack detection (7500+ signatures), WAF identification, CVE lookup from NVD, service fingerprinting with hardening findings.

OS
Debian 13
Deploy
APT package
Access
localhost:9191
CLI
included
Cloud
none
Telemetry
zero
Hardening
AppArmor
License
annual / seat