End-to-end security for your applications. From backend forensic logging to client-side session protection. Open source, production-ready, NIS2 compliant.
NIS2 Shield provides security components for both backend and frontend. Use them together for complete coverage.
Backend Middleware
Security-first middleware for Django. Forensic logging, rate limiting, Tor blocking, and multi-SIEM integration.
Java/Spring Starter
Security-first starter for Spring Boot. Audit logging, rate limiting, and Actuator integration.
Node.js Middleware
NIS2 compliance middleware for Express.js. Forensic logging, rate
limiting,
security headers in one app.use().
ASP.NET Core Middleware
Security-first middleware for .NET 8. Forensic logging, HMAC integrity, rate limiting, and Tor blocking.
Client-Side Protection
Client-side security telemetry for React. Session protection, encrypted storage, device fingerprinting.
Client-Side Protection
Client-side security telemetry for Angular. Session protection, encrypted storage, device fingerprinting.
Client-Side Protection
Client-side security telemetry for Vue 3. Session protection, encrypted storage, device fingerprinting.
Docker Stack
Secure-by-design Docker infrastructure. Hardened containers, log segregation, automated backups.
Deploy both components for end-to-end NIS2 compliance coverage.
@nis2shield/{react,angular,vue}-guard
django-nis2-shield | nis2-spring-shield | @nis2shield/express-middleware | Nis2Shield.AspNetCore
Why Open Source is safer for Enterprise. We turn the "risk" of public code into your strongest defense.
We aggregate vulnerability reports from thousands of developers worldwide. When one user finds a bug, every client gets the patch instantly via our Cloud Signing API.
Our Cloud API refuses to sign reports from modified libraries. If a supply-chain attacker (or your own dev) alters the code, compliance stops.
Self-certification is a conflict of interest. We act as the independent Digital Auditor that validates your security controls for your clients.
NIS2 Article 21 requires supply chain security across all infrastructure. NIS2 Shield is optimized for ARM architectures, bringing compliance to your shop-floor gateways and edge devices.
The Truth is in the Code. The Proof is in the Report. Stop relying on signed PDFs and start trusting your infrastructure code.
pip install django-nis2-shield
<artifactId>nis2-spring-shield</artifactId>
npm i nis2-express-middleware
dotnet add package Nis2Shield.AspNetCore
npm i @nis2shield/react-guard
npm i @nis2shield/angular-guard
npm i @nis2shield/vue-guard
How our tools map to NIS2 Directive articles.
View full 42-requirement checklist →| NIS2 Article | Requirement | NIS2Shield Solution |
|---|---|---|
| Art. 21 (a) | Risk analysis & system security | Automated audit (check_nis2) and config hardening. |
| Art. 21 (b) | Incident management | 24h incident reports & structured audit logs. |
| Art. 21 (c) | Business continuity | Encrypted Twin (Crypto-Replicator), automated backups, DR testing. |
| Art. 21 (d) | Supply chain security | Open source verifiable code (no black box). |
| Art. 21 (e) | Cryptography & HR security | PII encryption, log hashing, Session Guard & Secure Storage. |
| Art. 21 (f) | Network security | Container hardening, network isolation, Tor blocking. |
| Art. 21 (g) | Security policies & training | CLI audit tools, compliance reports, documentation. |
| Art. 23 | Reporting obligations | CSIRT-ready incident reports, SIEM integration. |
Security documentation ready for hospital procurement and PA audits. CIS benchmarks, NIS2 self-assessment, cryptographic specifications.
Stay compliant. Receive immediate notifications about critical CVE patches, regulatory changes (NIS2/DORA updates), and new rule sets.