EVIDENCE OVER WEAPONS
Security findings you can prove. Reproducible, signed, court-grade.
Deterministic, signed evidence records for every finding. Byte-identical on every run.
Almost there.
Confirmation link sent to . Click it to join the waitlist.
Most scanners can't reproduce yesterday's result. We can — five years later.
◇
Deterministic, not approximate
Same input, same finding — byte for byte. Years later, identical.
⛨
Evidence, not screenshots
Ed25519-signed, full chain of custody. An artifact — not a dashboard.
⬡
Governance-only by design
Analysis only. Nothing in VOKTARN can be turned into an attack tool.
FULL COMPONENT VISIBILITY
Every dependency. Every layer. Mapped.
Dependencies, binaries, game engines — cross-referenced against OSV, NVD, KEV and EPSS.
We keep the evidence — not your code.
🔒
Encrypted end to end
TLS 1.3 · AES-256-GCM · per-tenant keys.
◐
Stateless analysis
Upload used, then discarded. We keep findings — never your source.
🔑
Your keys, your data
HSM or cloud KMS. The key stays with you.
▤
Immutable audit trail
Append-only. Findings deletable on request — the log is not.
BUILT FOR THE 2026 REGULATORY WAVE
NIS2Evidence for essential & important entities.
DORAICT risk evidence for BaFin examinations.
CRASBOMs & vulnerability records as verifiable evidence.
BSI TR-03183-2CycloneDX · SPDX, format-conformant.
Others give you a dashboard. We give you evidence that holds up in court.
Deterministic findings
CycloneDX · SPDX
STIX 2.1 · SARIF
OSV · NVD · KEV · EPSS
CVSS
Ed25519 signing
Immutable audit trail
Attack-tree analysis
FOR
Banks, insurers, government agencies, critical infrastructure. Processed in Germany — never shared.