* * deny — ~/tools

tools

Free, browser-based utilities for security engineers. Everything on this page runs entirely client-side — no accounts, no uploads, no tenant connections. Your configs never leave your machine. View source and check.

live

PAC File Tester

Paste a PAC file and a test URL, and see exactly which rule matches, in what order, and why — a debugger-style trace of the decision. Plus a linter for the classics: shadowed rules, DNS calls that hang logins, wildcards broader than intended, risky fallbacks, and Chrome's https path-stripping. Batch-test a URL list to regression-check a PAC change.

planned

Traffic-Flow Explainer

Pick the client's state — forwarding profile, on or off network — and the destination type, and walk through the routing decision the way the client actually makes it.

planned

App Connector Sizing Calculator

Users, throughput, and redundancy requirements in; recommended connector count and specs out. With the reasoning shown, not just the number.