TrustScan – Simplify privacy policies and audit GDPR compliance
Client-side compliance auditing ensures your sensitive data never touches their servers.
🛡️ Open-source, self-hosted log management. Privacy-first alternative to Datadog & ELK. Lightweight, GDPR-compliant, and deployed in minutes with Docker.
Datadog-free logging with real GDPR teeth: self-hosted, TimescaleDB compression, 80% faster queries.
European SMBs, DevOps engineers, privacy-conscious developers
Datadog · Splunk · ELK Stack
Built this for European SMBs needing log management with: - GDPR compliance (self-hosted, data residency) - Boring tech philosophy (PostgreSQL+TimescaleDB, zero AI/ML) - Transparent deployment (Docker Compose, no hidden scripts)
Stack: SvelteKit, Fastify, PostgreSQL+TimescaleDB, BullMQ License: AGPLv3 (network copyleft for cloud provider protection)
Features: - Multi-tenancy, SIEM (Sigma rules + MITRE ATT&CK) - PII masking, OpenTelemetry traces, anomaly detection - Real-time streaming, alert correlation
Storage: Pluggable architecture in development - TimescaleDB (default, production-ready, 80%+ compression) - ClickHouse support coming for enterprise scale - Hot/warm/cold tiers with S3 archival
Production-tested: Millions of logs/day, 10-50x faster dashboard queries via continuous aggregates.
Why AGPLv3? Protects against cloud vendor forks while aligning with European data sovereignty needs. Understand it's controversial - happy to discuss.
GitHub: https://github.com/logtide-dev/logtide Docs: https://logtide.dev/docs
Questions welcome on architecture, scaling, or SIEM implementation!
Client-side compliance auditing ensures your sensitive data never touches their servers.
Bundles page-level WCAG checks, script/form detection for privacy gaps, AI-generated policy drafts and heuristic scanning of marketing copy into one agency-friendly flow. Fast report generation and white-label/partner features are smart business moves — the real question is signal quality (false positives) and how well the AI rules survive real-world edge cases.
Local-first scanning with zero data exfiltration beats cloud-based compliance tools for privacy audits.
Three-line fix for GDPR Article 44 violations when LLM prompts contain EU user data.
Local-first log analysis with PII redaction when Splunk costs a fortune.
Merkle proofs for AI compliance, but unproven demand and no shipped customer proof yet.