Research, papers & guides.
Whitepapers, checklists, templates and guides - the research and IP behind VANGUARD, Compl-AI, and Trace-AI.
ToolProbe
A two-stage evaluation framework for LLM agent safety in MCP tool-calling - the peer-reviewed research anchoring VANGUARD.
Read paper PaperZSBOM
A metadata-driven framework for detecting supply-chain risks in Python ecosystems - the research anchoring Trace-AI.
Read paper PaperWhat Makes SM2 Encryption Unique
A peer-reviewed analysis of SM2, China's recommended public-key algorithm - what makes its design distinct and where it fits in modern cryptography.
Read paper WhitepaperMosca's Inequality
A practical framework for post-quantum migration planning: use Mosca's Inequality to decide when to start moving to post-quantum cryptography.
Get the paper PatentOne-Click Remediation™
Patent-anchored compliance automation - Just-in-Time remediation that fixes issues inside your own VPC. US 18/791480.
View patent Report2026 Threat Intelligence Report
Our latest threat-intelligence report on agentic AI risks, exploit trends, and emerging attack surfaces.
Get the report ChecklistISO 27001 Compliance Checklist
A step-by-step ISO 27001 checklist for startups and SMEs - achieve certification efficiently, without the complexity.
Download checklist ChecklistData Privacy Checklist
A practical checklist covering the essentials of data-protection and GDPR readiness for growing teams.
Download checklist GuideDIY Your Own SBOM
Build your own SBOM with ZSBOM, our open-source, metadata-driven supply-chain risk framework on GitHub.
Open on GitHub GuideDevSecCops
Our newsletter and field notes on building AI-driven cloud security and DevSecOps in practice.
Read on Substack