This collection of specifications defines a unified framework for privacy-preserving computing, secure identity, and autonomous cybersecurity infrastructure. Across the system, the core emphasis is on minimizing exposed sensitive data, replacing traditional trust models with cryptographic or zero-knowledge verification, and shifting computation toward local, verifiable, or sandboxed environments. The result is an architecture where authentication, storage, cloud operations, and AI interaction are designed to reduce attack surfaces, eliminate centralized points of failure, and ensure that sensitive information is transformed or protected before it can be processed by external systems.
Together, these specifications also establish a broader security ecosystem that spans application security, infrastructure hardening, compliance automation, and threat intelligence. They introduce mechanisms for continuous verification, automated remediation, behavior-based detection, and provenance tracking to support both defensive and operational transparency at scale.
All specifications are released under the GNU Affero General Public License v3.0 (AGPL-3.0+) and are available for free use, provided the required attribution under Section 7 of the license is maintained. For organizations requiring attribution-free deployment, a Specification Branding License is available. Pricing is determined by the specification type, deployment scope, and the size of the network in which the specification is deployed.
-
Authensia Cloud Module Specification
https://roxanneardary.com/authensiacloud/
An open-source trust-centered cloud storage platform focused on end-to-end encryption, verifiable file integrity, authorship proof, and secure global access. It emphasizes user ownership and transparency in data handling. -
Aurea
https://roxanneardary.com/aurea/
Scans Terraform, Kubernetes, Docker, and Ansible for vulnerabilities, malware, and backdoors while providing automated remediation and self-healing infrastructure. -
BockadeAI Module Specification
https://roxanneardary.com/blockadeai/
AI defense system protecting websites from DoS/DDoS attacks with predictive mitigation. -
CloudCommons
https://roxanneardary.com/cloudcommons/
An open-source, multi-cloud, zero-trust infrastructure platform that combines strong security, AI-driven automation, and a low-code developer experience for managing infrastructure across diverse environments. It supports public clouds, hybrid, edge, and self-hosted setups with privacy focus. -
CryptoGate
https://roxanneardary.com/cryptogate/
Replaces passwords with device-bound cryptographic identities, passkeys, and phishing-resistant authentication. -
CryptaVault
https://roxanneardary.com/cryptavault/
Encrypted cloud storage system with zero-knowledge architecture, cross-device sync, and compression. -
CyberChimera
https://roxanneardary.com/cyberchimera/
Multi-agent cybersecurity system for predicting, simulating, and responding to threats with both offensive and defensive capabilities. -
EmailXpose
https://roxanneardary.com/emailxpose/
Detects phishing, spam, scams, and malware across text, images, and video content in email systems. -
GuardianNX
https://roxanneardary.com/guardiannx/
Privacy-first home security system with encrypted edge AI surveillance and decentralized architecture. -
Keyra Module Specification
https://roxanneardary.com/keyra/
Authentication platform using quantum-safe cryptographic keys instead of traditional passwords. -
OriginSeal
https://roxanneardary.com/originseal/
System for tracking attribution, lineage, and authenticity of AI-generated content. -
PrivyKey Module Specification
https://roxanneardary.com/privykey/
An open-source, privacy-first encrypted authentication app that generates secure 2FA codes while keeping all secrets stored locally in a zero-knowledge vault. It enhances authentication security without cloud dependency. -
ProofLayer
https://roxanneardary.com/prooflayer/
Real-time SOC 2/SOC 3 compliance system with automated evidence collection, control mapping, transparency dashboards, and machine-readable trust verification endpoints. -
Protego
https://roxanneardary.com/protego/
Browser protection system that blocks tracking, unsafe extensions, and deceptive consent mechanisms. -
PublicSafe
https://roxanneardary.com/publicsafe/
Encrypts sensitive data locally before transmission to protect user privacy. -
SafeForge Module Specification
https://roxanneardary.com/safeforge/
Sandboxed application platform with encrypted data storage and automated malware detection. -
Securekit
https://roxanneardary.com/securekit/
Protocol-agnostic security kernel enabling sandboxed and zero-trust AI tool execution. -
Semantic Firewall
https://roxanneardary.com/semantic-firewall/
Zero-trust privacy layer that transforms prompts before they reach an LLM using deterministic tokenization, local redaction of sensitive data, prompt minimization, and rehydration so AI processes abstracted intent only while keeping data local and protected. -
Sentryx
https://roxanneardary.com/sentryx/
Secure distributed backup system using encrypted storage for resilient data protection. -
SelfRoot
https://roxanneardary.com/selfroot/
Passwordless authentication system that converts live human presence into cryptographic proof using locally processed biometrics, challenge-response flows, and secure enclave support without centralized identity storage. -
ShieldGrid
https://roxanneardary.com/shieldgrid/
Autonomous defense platform that turns devices into a unified security network with behavior-based anomaly detection, containment, quarantine, and self-healing updates.
Open Arsenal Security Specifications are released under the GNU Affero General Public License v3.0 or later (AGPL-3.0+). By contributing to any Open Arsenal project, you agree that your contributions will also be released under this license.
Please note the following:
- All contributions must comply with the AGPL-3.0+ terms.
- Under Section 7 of the license, all redistributions, forks, and derivative works must preserve attribution to:
Roxanne Ardary and roxanneardary.com. - Open Arsenal Security Specifications are free to use with attribution. A Specification Branding License can be negotiated upon request.
- The project's notice.md file tracks attribution requirements and contributor acknowledgments.
Any update that adds new contributors or modifies attribution should also updatenotice.md. - When submitting a pull request, ensure that any new files maintain the attribution headers where applicable.
- Network-deployed versions of this software must also remain fully AGPL-3.0+ compliant, including exposure of source code modifications when applicable under the license.
For full legal details, please refer to the AGPL-3.0+ license and the project's notice.md file.