Research & delivery
Web3 lab building secure products and public experiments.
Forensics-style rigor, fast iteration, and clear shipping — from audits to user-facing platforms.
AI Agent Security Layer
A control layer, not an agent builder: intercept tool calls before they hit email, data, or tickets — enforce allow / deny / human approval and keep an audit trail your security team can actually use.
- Decision API in front of risky actions (SDK-ready path).
- Policy-style rules: read paths vs destructive vs side-effect tools.
- Event log for governance conversations (Stripe billing hooks later).
- SLA from Growth upward: contractual uptime & support response targets; stronger terms on Pro / Enterprise.
Plans
Target tiers before your Stripe products are attached. Full detail: Prices.
Limited agents & events for integration tests. No SLA.
Small team, single workspace, core controls. Best-effort support — no formal SLA.
More agents, retention, approval workflows. SLA: decision API availability + support response targets in order.
Heavier volume. SLA: stronger uptime / response; optional custom terms & Enterprise.
API Risk Monitor + AI Agent Security Layer in one Stripe subscription. List quotas on the Prices page; checkout runs on the live app.
Billing and exact EUR amounts follow your Stripe configuration and order form. SLA credits and support windows are defined in your DPA.
API Risk Monitor
The scanner in the hero is the same product: paste OpenAPI JSON/YAML or a public HTTPS spec URL, get a risk score and findings focused on auth and sensitive routes — then open the full flow on our Next.js app.
Compare plans Bundle €99 (Risk + Agent Security) Open live scanner app.alfanestlabs.com →What we ship
Same routes as the live site — cards styled like a modern infra landing (bento grid).
AI Agent Security Layer
Policies, human approvals, and an append-only audit trail on tool calls before side effects run. Plans from Dev through Pro plus an optional bundle with API Risk — see the Prices page. SLA from Growth upward; Starter is best-effort support.
Open overview on app → Live product · AppAPI Risk Monitor
From €39/mo (Starter), €99/mo (Team), or €99/mo Bundle (API Risk + Agent Security). OpenAPI on app.alfanestlabs.com — this card opens the full Prices page (scroll to Bundle).
Plans & pricing → ProductClearance
Token clearance / compliance-oriented flows — linked from the main lab narrative.
Open Clearance → IdentityIdentityMine
Active identity firewall — exposure signals and reporting without cheap data vendors.
Explore → Security product · Vault encryptionMachine Identity
Inventory non-human identities (service accounts, API keys, tokens). Client-side AES-256-GCM encryption powered by SafeKey cryptography — the server never sees your data. Hash chain integrity, Shamir 3-of-5 recovery, and encrypted .sfk export on Pro.
WASTE.LAND
alfanest.digital — audited dead-code listings, Vault escrow, and the Scraps economy.
Open WASTE.LAND → ExperimentGLOWMIN
Community-facing experiment hosted on the labs subdomain.
Open → Core technologySafeKey Engine
Internal crypto engine: AES-256-GCM, Key Shield, HMAC chain, Shamir SSS. Powers Machine Identity vault.
See Vault →