TunnelMind – reputation API for IPs, ASNs, and ad-tach supply chains
Cross-correlates threat intel across four lenses where incumbents stay siloed.

From Witness/in-toto creators, keyless attestation blocks poisoned CI runs.
DevOps engineers, security teams, AI agent pipeline operators
Sigstore · in-toto · SLSA
Cross-correlates threat intel across four lenses where incumbents stay siloed.
Tarball diffing plus Claude analysis catches build.rs backdoors cargo-audit misses.
Ed25519-chained immutable deployment log—instant detection of tampering or reordering.
First real supply-chain defense for AI agent ecosystems; catches nation-state-grade payloads.
Speculative protocol for package quarantine without a reference implementation or registry buy-in.
NPM supply chain scanner competing against Socket, Snyk, and npm audit.