33 products Sparkpulse tracks are shipping around security hardening. The highest-velocity security hardening products right now are ONNX Runtime, MISP and File Browser (ranked by Sparkpulse's velocity score). The theme runs across 10 sectors, so the momentum you see here is drawn from products competing in different corners of the market. Their velocity scores span 0.0 to 7.5 out of 10, a spread that shows how unevenly shipping cadence is distributed across the field. Below: the products carrying this theme and 12 recent editorial briefs that reference it, the most recent dated Aug 17, 2026. Everything on this page is regenerated from verified release data, so the ranking reflects the latest changelogs rather than a static list.
#01ONNX RuntimeONNX Runtime is dismantling itself into plug-ins — CUDA is now the one that ships separately.7.5alternatives →#02MISPMISP extends instance-to-instance sync to collections while a security-hardening program runs underneath6.3alternatives →#03File BrowserFile Browser is shutting down — the repo archives on 2026-09-01 and no security fixes follow.6.3alternatives →#04DokployA self-hosted PaaS spending its releases on secrets, injection fixes and plan limits.6.3alternatives →#05Open Web AnalyticsOpen Web Analytics went from one release a year to six in a fortnight.6.3alternatives →#06ComposioComposio runs an aggressive enterprise-hardening pass — Webhook Triggers V2, auth migration, security primitives.6.3alternatives →#07LifterLMSA WordPress LMS that just made its whole REST surface discoverable to AI clients.6.3alternatives →#08CommaFeedA self-hosted RSS reader that now spends most of its release notes on security.5.0alternatives →#09Z-Wave JS UIZ-Wave JS UI is hardening its network surface while handing issue triage to agents.5.0alternatives →#10CountlyCountly's LTS line is spending its releases on hardening the surfaces customers extend.5.0alternatives →#11HonoHono's news has moved from features to hardening — the 4.12 line is patching trust boundaries.5.0alternatives →#12RabbitMQTwo parallel trains, and the 'maintenance' label is now hiding real feature work5.0alternatives →#13AcyMailingAcyMailing spent 11.0 on a security rewrite and is now paying down the regressions.5.0alternatives →#14BitwardenBitwarden's server releases are all plumbing right now — flags cleared, billing untangled, invites hardened.5.0alternatives →#15Apache OpenNLPThree parallel lines, one shared job: making model files safe to load5.0alternatives →#16Apache ActiveMQActiveMQ ships every fix three times, across three parallel maintenance branches.5.0alternatives →#17CronicleSecurity patching gives way to a hard Node.js 22 floor for every self-hosted install.5.0alternatives →#18LogstashPQ compression and ES|QL preview land while weekly plugin churn drives the release cadence.3.3alternatives →#19FlowiseFlowise spent 2026 paying down the security debt of a multi-tenant agent builder2.5alternatives →#20CoolifyCoolify is in a sustained security-hardening run while the v4 beta inches forward.2.5alternatives →#21ZoneMinder1.38.4 is a security release in all but name, closing ACL gaps across the API.2.5alternatives →#22HedgeDocHedgeDoc 1.x releases are now mostly advisories — security in, features rarely.2.5alternatives →#23MinifluxA minimal RSS reader that made passkeys the only way in, then went back to polishing the reading experience.2.5alternatives →#24FreeSWITCHWith the legacy purge done, FreeSWITCH spent 1.11.2 bounds-checking everything that parses bytes2.5alternatives →#25KanboardA mature kanban tool in a methodical security-hardening cycle2.5alternatives →#26HugoHugo's releases are almost entirely asset pipeline work now: AVIF, Chroma, and import resolution.2.5alternatives →#27FusionPBXThe release feed stops in 2018, so nothing here describes the current product0.0alternatives →#28VikunjaVikunja crossed the v1.0 finish line and pivoted hard into security hardening.0.0alternatives →#29KavitaA self-hosted reading server that spent two releases becoming infrastructure, then paid for it with a CVE.0.0alternatives →#30AutheliaAuthelia's 4.39 line is a long hardening run, not a feature line0.0alternatives →#31MooseFSA year of pure maintenance while the 4.x line clears the runway for MooseFS 5.0.0alternatives →#32RoutinatorAn RPKI validator that now treats its own attack surface as the product0.0alternatives →#33PgBouncerPgBouncer added LDAP and direct TLS, then spent two releases patching auth-path CVEs0.0alternatives →
Frequently asked questions about security hardening
Which SaaS tools ship security hardening in 2026?
ONNX Runtime, MISP, File Browser, Dokploy, Open Web Analytics, and 28 more — the security hardening products Sparkpulse tracks, ranked by shipping velocity from verified changelogs.
Which security hardening product has the highest shipping velocity?
ONNX Runtime, with the top velocity score (7.5/10) — Sparkpulse's velocity score is derived from verified release data.
How many products are shipping around security hardening?
Sparkpulse currently tracks 33 products carrying the security hardening theme, updated continuously from verified release data.