ClickArmor – Countering ClickFix social engineering in browser
Detects clipboard hijacks locally, but ClickFix awareness + OS vigilance covers most users.
Extended Threat Reasoning Architecture
FSM-based social engineering detection without LLMs is a genuinely contrarian approach.
Security engineers building conversational AI systems
Garak · LLM Guard · PromptInject
Detects clipboard hijacks locally, but ClickFix awareness + OS vigilance covers most users.
Zero-dependency binaries with Twitter recompression survival testing built in.
42 prompt injection patterns detected in under 10ms with zero dependencies.
Local-first log analysis with PII redaction when Splunk costs a fortune.
This repo actually wires the specfact CLI to a tiny, reproducible codebase so you can import-from-code, generate .specfact bundles, and run enforcement presets with one-liners. The backlog-sync adapter and a deliberately buggy sidecar demo make failure modes easy to exercise, and the README lists exact smoke commands and logs to verify results. Inferred specs will always risk false positives, but the project shows practical artifacts (change_tracking, results logs) rather than theory.
Ambitious but code doesn't compile yet; shipping in 3-5 years is not a product.