badrap.io @badrap.io · 29/09/2026Our #atproto based changelog has news of its own 🦋 You can now browse it without logging in at badrap.io/changelog. For logged-in users, a snazzy #new "What's new" ticker appears when there are fresh entries. 191
badrap.io @badrap.io · 25/09/2026Throwback to the Cybersicherheitsgipfel event in Hessen: excellent German and international perspectives on cyber resilience! Our DACH presence continues next week at the Zurich AI Festival and at the ECSO CISO Meetup in Berlin, followed by the German-Finnish Businessforum in Munich. See you there! 000
badrap.io @badrap.io · 22/09/2026A changelog you can reply to! 🦋 We built our new changelog on #atproto. Our Bluesky posts tagged #new, #feature or #release also appear as changelog entries inside badrap.io. Each entry links back to the original post. 2426
Reposted by badrap.ioMatteo Gabriele @matteogabriele.npmx.social · 30/08/2026Inspired by @jviide.iki.fi post about GitHub name typosquatting, I made a prototype of a possible action we could use in our workflows 👀 2296
badrap.io @badrap.io · 01/09/2026Turn everyday security work into visible compliance progress. Our Security Playbooks now show which compliance requirements each playbook supports, starting with ISO/IEC 27002 and NIS2. From "what should we do?" to "what does this cover?" in one place! 030
Reposted by badrap.iojviide.iki.fi @jviide.iki.fi · 21/05/2026Whee! Published @badrap/valita v0.5.2 using both trusted & staged publishing just now insert party emoji here 0242
badrap.io @badrap.io · 12/05/2026Teams, teams for everyone! 🫶 Whether you're securing a home network with your family or testing the waters for a small organization, we've got you covered. Create your free Team Workspace and start protecting your assets together at badrap.io. 🇪🇺 Co-funded by the European Union 030
Reposted by badrap.iojviide.iki.fi @jviide.iki.fi · 11/05/2026More companies, governmental organizations and community projects should adopt the security.txt convention/proposal: securitytxt.org Making security contact discovery as easy as possible is good for everyone. Yes, even within the context of the recent AI vulnerability report slopocalypse. 0225
badrap.io @badrap.io · 08/05/2026Phishing, invoice scams, CEO scams and ransomware all target people. Our Employee Cyber Hygiene playbook helps you start a practical and engaging course for selected employees, giving your workforce the awareness to become your strongest security asset 💪👁️👄👁️💪 030
badrap.io @badrap.io · 07/05/2026Announcing: CE3 - Common Excuse & Evasion Enumeration 😁 A taxonomy of vendor dismissal patterns for legitimate vulnerability reports: github.com/badrap/ce3 0102
Reposted by badrap.iojviide.iki.fi @jviide.iki.fi · 06/05/2026Switched @badrap/valita to ESM-only, pretty cool how @npmx.dev celebrates the package size reduction 🎉 npmx.dev/package/@bad... 0557
badrap.io @badrap.io · 07/04/2026New in the SensorFu Honeytoken app: automatic IP allowlisting for AWS, Google Cloud, Azure, and other Microsoft services. 🌐 Honeytokens are fake secrets meant to attract hackers like bees to honey – basically digital tripwires to catch someone snooping around. Set up your own at badrap.io. 020
badrap.io @badrap.io · 02/04/2026Badrap is happy to support @npmx.dev in an advisory role. A better developer experience can be a boon to security. Easier access to trust signals and tips for avoiding unnecessary dependencies, among other things, help make stronger supply chain choices. Read their intro: npmx.dev/blog/alpha-r...npmx.devAnnouncing npmx: a fast, modern browser for the npm registryToday we're releasing the alpha of npmx.dev – a fast, modern browser for the npm registry, built in the open by a growing community. 10172
badrap.io @badrap.io · 30/03/2026Pricing by "Contact Sales" is out. Public and transparent pricing is in. We just shipped a way for anyone to plan a cybersecurity roadmap based on their actual needs and budget. No guessing, no forced sales calls. Use the Add to Cart button on our Playbooks page to get started: badrap.io/playbooks 130
badrap.io @badrap.io · 24/03/2026Our Heikki is at the wonderful #kyberlahti today - come and say hi if you're around! 000
badrap.io @badrap.io · 27/11/2025We're again at the wonderful Baden-Württemberg #CyberSicherheitsForum today with friends from NCSC-FI (@traficomfinland.bsky.social), SensorFu, Arctic Security (@arcticsecurity.bsky.social), SensorFleet and Semantti (@semantti.bsky.social). Come and say hi! 030
badrap.io @badrap.io · 21/10/2025If you're at the GovWare 2025 expo in Singapore this week, drop by and meet us at booth D10! Our Jani will also be speaking on Tuesday 16:00 (Level 6, Room GW6) about lessons learned from doing supply chain cybersecurity checks for over 3000 companies at scale. Come and chat with him afterwards! 010
badrap.io @badrap.io · 17/10/2025Your mandatory cyber routines are becoming even easier to automate and execute! We're: 🤗 improving your user experience 🧑🔧 by developing new self-service features ⛳️ to the badrap.io platform and playbooks The effort is co-funded by the European Union: badrap.io/eakr2025 #CyberSecurity #EUfundedbadrap.ioCyber Security Made EasyBadrap playbooks help you automate cyber security tasks with ease. Step-by-step best practices boost your online security and privacy. 030
badrap.io @badrap.io · 14/02/2025Great to meet 150 customers and partners at @scanabc.com's #prevent25 today - thanks to everyone for coming! Now off to Disobey (@disobeyfi.bsky.social), catch us there. 031
badrap.io @badrap.io · 11/02/2025Remod wrote (in Finnish) some nice things about partnering with Badrap at remod.fi/asiakastarin... ❤️ Together, we’re tackling email security with the "Spoofproof Your Emails" playbook, helping organizations block fraud and keep communications trusted. Check it out at badrap.io/playbooks/sp...!remod.fiBadrap ja Remod - Tiukkaa tietoturva-asiantuntemusta jalat maassaBadrapin ja Remodin yhteistyöllä on pitkä historia ja juuret syvällä kotimaisessa kyberturvallisuusyhteisössä. 042
Reposted by badrap.iojviide.iki.fi @jviide.iki.fi · 20/01/2025Quite mind-boggling to learn that jviide.iki.fi/http-redirects was referenced in a proposal to amend the OWASP Application Security Verification Standard: github.com/OWASP/ASVS/i... Huge thanks to everyone involved! Heartening to see the measured debate and the well-worded end result.github.comDon't redirect to HTTPS for API · Issue #2416 · OWASP/ASVSYour API Shouldn't Redirect HTTP to HTTPS The argument is that when a client uses 'http://api.example.org', it should fail instead of silently be insecure. I propose to add a requirement that speci... 0143
Reposted by badrap.ioJani Kenttälä @janikenttala.bsky.social · 27/12/2024Here is a nice list of personal cyber hygiene tasks to complete. 👍 041
badrap.io @badrap.io · 09/12/2024Glad to hear that our little library has been useful 🎉 io-ts is also a great option, and has definitely influenced valita and many others. 020
badrap.io @badrap.io · 28/11/2024Oh no, badrap.io has been busted for speeding! What a great idea from @strek.in 😀 Get a ticket issued for your website from speeding-ticket.vercel.app 030
badrap.io @badrap.io · 18/11/2024A quick reminder for all our friends creating new Bluesky accounts: Recycling is usually a good thing, but not for passwords. Use a unique password for each online service. 082
badrap.io @badrap.io · 03/09/2024Let's not forget our Brazilian friends! Huge thanks to Bruno for translating this evergreen post: medium.com/badrapio/sof... #cybersecurity #infosecmedium.comSofri um vazamento de dados. Como devo proceder?Se você recebeu um alerta de vazamento de dados de um serviço de monitoramento como Have I Been Pwned ou Badrap.io e está se perguntando… 000
badrap.io @badrap.io · 03/09/2024Let's get this ball rolling with an oldie but goodie: medium.com/badrapio/i-g... #cybersecurity #infosecmedium.comI got a data breach alert. What next?You received a data breach alert from a monitoring service and are wondering what to do next? Look no further, let’s sort it out together! 001