Open-source Linux security automation

Security updates only. No remote command channel.

ZSEC keeps Linux servers patched against active threats while keeping the blast radius small: security packages, SSH lockout guardrails, fail2ban direction, local exposure checks, and read-only advisory TODOs.

12hsecurity check interval
0remote commands accepted
OSsecurity packages only

System posture

Operational
ZS Bounded modeZSEC ACTIVE
  • Remote command channelDisabled
  • Advisory feed authorityRead-only
  • AI/API key dependencyNone
  • Primary jobSecurity updates

Security briefing pack

Six pages for people reviewing ZSEC before they install it.

The ZSEC brief explains the promise, risk problem, safety boundary, operating flow, ecosystem fit, and review path. It is written for server owners, hosting teams, and technical stakeholders who want disciplined updates without a remote command channel.

Install

One command, normal Linux package managers.

ZSEC is a standalone open-source project. FreeWebPanel can install it, but ZSEC does not depend on panel code.

curl -fsSL https://raw.githubusercontent.com/ResearchForumOnline/ZSEC/main/install.sh | sudo bash
sudo zsec status
Read source

Live Security Feed

Normalized CISA KEV and security-news signals for ZSEC review TODOs. The feed is data, not a command channel.

Loading feed

Loading current advisories

data

The public JSON feed is read-only. ZSEC clients create local TODOs from it and continue to apply only OS security updates through apt or dnf.

Automation model

Small blast radius by design.

01CheckRead local OS security state and public advisory signals.
02Back upProtect SSH material before hardening-sensitive actions.
03PatchApply operating-system security packages through apt or dnf.
04ReportWrite local status and TODO notes for the server owner.

Watch

ZSEC in motion.

Use the overview video for the serious explanation and the short for quick security-awareness sharing.

Safe automation

What ZSEC does.

Security updatesApplies OS security packages only.
Advisory TODOsTurns public signals into local review notes.
SSH guardrailsEncourages safer access without hiding lockout risk.
Exposure checksHelps the owner see what deserves review.

Boundaries

What ZSEC does not do.

Does ZSEC accept remote commands?

No. The public feed is read-only data. ZSEC clients create local advisory notes and apply only OS security updates through normal package managers.

Does it replace monitoring or backups?

No. Backups, monitoring, firewall policy, SSH key hygiene, and incident response remain required.

Does it need an AI runtime or API key?

No. ZSEC is not an AI agent and does not need provider keys to do its security-update job.

Featured ecosystem video

TalkToAI: ZeroThink, OpenZero, and sovereign AI infrastructure.

Watch the full walkthrough of the TalkToAI ecosystem: ZeroThink, OpenZero, local-first AI infrastructure, research direction, and the practical stack being built for builders, businesses, universities, and serious operators.