11 releases

0.1.11 Mar 21, 2023
0.1.10 Mar 9, 2023
0.1.7 Feb 24, 2023
0.1.5 Jan 17, 2023
0.1.2 Oct 27, 2022

#513 in WebAssembly

Download history 5/week @ 2022-12-04 3/week @ 2022-12-11 1/week @ 2022-12-18 1/week @ 2022-12-25 1/week @ 2023-01-01 55/week @ 2023-01-08 24/week @ 2023-01-15 3/week @ 2023-01-22 33/week @ 2023-01-29 10/week @ 2023-02-05 21/week @ 2023-02-12 29/week @ 2023-02-19 23/week @ 2023-02-26 33/week @ 2023-03-05 4/week @ 2023-03-12 21/week @ 2023-03-19

88 downloads per month

Apache-2.0

280KB
7K SLoC

LeakSignal Tweet

Mesh Native Runtime Security 🎉

Website | Docs | Blog | Slack

License

🔍 How can I observe and secure sensitive data travelling across the Service Mesh data plane without impacting performance? 🤷

📙 Documentation

LeakSignal installation and reference documents are available at leaksignal.com.

👉 Quick Start

👉 Installation

👉 Sample Policies

LeakSignal provides observability metrics and redaction capabilities for sensitive data contained within service mesh protocols. LeakSignal metrics can be consumed by Prometheus, pushed as OpenTelemetry, or collected in a centralized dashboard - giving MeshSecOps engineers (Incident Repsponse, SRE, DevOps, Platform Eng., SOC etc) a new security tool to help combat API exploits, unknown misconfigurations and sensitive data leakage.

Features

  • Fast, inline Layer 7 request/response analysis.
  • Easy to configure rules ("L7 policy") for detecting and analyzing sensitive data (e.g. PII) leakage.
    • Detect PII, part numbers, account numbers, patient info, grades, dates, email addresses, large arrays, etc. You can write your own matcher or use our constantly evolving ruleset library (contributions welcome).
  • Cloud dashboard with policy editor, monitoring, and alerting.
  • Analysis metrics can be exposed via Envoy and thus reflected wherever Envoy metrics are configured to land (OpenTelemetry, Prometheus, etc.)

Community / How to Contribute

Commercial support

License

Copyright 2023 LeakSignal, Inc.

Licensed under the Apache License, Version 2.0 (the "License"); you may not use this file except in compliance with the License. You may obtain a copy of the License at

http://www.apache.org/licenses/LICENSE-2.0

Unless required by applicable law or agreed to in writing, software distributed under the License is distributed on an "AS IS" BASIS, WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. See the License for the specific language governing permissions and limitations under the License.

Dependencies

~8–11MB
~268K SLoC