PoisonBox
Install-time scan gallery
3 packages · one disposable sandbox

Three npm packages install. The sandbox watches every one.

Each package runs its install script inside its own disposable microVM, over the same three decoy credentials, traced at the syscall level. Same setup, three outcomes: watch which secret vaults get opened, and whether anything makes it to the internet. Every event below was recorded live, not scripted.

Scanning
0risk score disposable microVM
eBPF telemetry
Scanning
0risk score disposable microVM
eBPF telemetry
Scanning
0risk score disposable microVM
eBPF telemetry
0.0s / 0.0s
A Fortitude Omnis R&D build