[]VOKTARN
SYSTEM ▸ PRE-LAUNCH
EVIDENCE OVER WEAPONS

Security findings you can prove. Reproducible, signed, court-grade.

Deterministic, signed evidence records for every finding. Byte-identical on every run.

▸ hosted in Germany · GDPR · double confirmation
Almost there.

Confirmation link sent to . Click it to join the waitlist.

Most scanners can't reproduce yesterday's result. We can — five years later.
WHY VOKTARN IS DIFFERENT
Deterministic, not approximate
Same input, same finding — byte for byte. Years later, identical.
Evidence, not screenshots
Ed25519-signed, full chain of custody. An artifact — not a dashboard.
Governance-only by design
Analysis only. Nothing in VOKTARN can be turned into an attack tool.
FULL COMPONENT VISIBILITY
Every dependency. Every layer. Mapped.
Dependencies, binaries, game engines — cross-referenced against OSV, NVD, KEV and EPSS.
SECURITY & DISCRETION
We keep the evidence — not your code.
🔒
Encrypted end to end
TLS 1.3 · AES-256-GCM · per-tenant keys.
Stateless analysis
Upload used, then discarded. We keep findings — never your source.
🔑
Your keys, your data
HSM or cloud KMS. The key stays with you.
Immutable audit trail
Append-only. Findings deletable on request — the log is not.
BUILT FOR THE 2026 REGULATORY WAVE
NIS2Evidence for essential & important entities.
DORAICT risk evidence for BaFin examinations.
CRASBOMs & vulnerability records as verifiable evidence.
BSI TR-03183-2CycloneDX · SPDX, format-conformant.
Others give you a dashboard. We give you evidence that holds up in court.
STANDARDS
Deterministic findings CycloneDX · SPDX STIX 2.1 · SARIF OSV · NVD · KEV · EPSS CVSS Ed25519 signing Immutable audit trail Attack-tree analysis
FOR

Banks, insurers, government agencies, critical infrastructure. Processed in Germany — never shared.