GlobaLeaks

GlobaLeaks

Secure whistleblowing and anonymous reporting platform

1.4kstars
319forks
Last commit: 3d ago
Repo age: 14y old

GlobaLeaks is free and open-source whistleblowing software for creating secure reporting portals where people can submit information while protecting their identity. It is designed as a flexible framework and is widely used by media organizations, NGOs, and institutions to receive and manage sensitive reports.

Key Features

  • Anonymous reporting workflow designed to protect the whistleblower’s privacy by default
  • Customizable multi-tenant style configuration to adapt forms, questionnaires, and processes to different initiatives
  • Case management interface for recipients to review submissions and communicate securely
  • Internationalization with extensive localization (translated into many languages)
  • Security-focused design for hardening deployments and reducing metadata leakage
  • Compliance-oriented deployments suitable for common whistleblowing program requirements

Use Cases

  • Internal or external whistleblowing channels for public agencies and companies
  • Secure tip lines for investigative journalism and independent media
  • Reporting platforms for civil society, anti-corruption, and human-rights initiatives

Limitations and Considerations

  • Operating a safe whistleblowing channel requires careful deployment hardening and ongoing maintenance to avoid misconfiguration risks
  • Legal and compliance obligations vary by jurisdiction and may require additional organizational processes beyond the software

GlobaLeaks provides a strong foundation for running privacy-preserving reporting programs with configurable workflows and a security-first approach. It is best suited for organizations that need an auditable, structured way to receive and handle sensitive disclosures.

Categories:

Tags:

Tech Stack:

Share:

Similar Services

Web-Check

Web-Check

All-in-one OSINT tool for analyzing any website.

30k
2.4k
Last commit: 4d ago

Comprehensive on-demand OSINT to analyze a website's security, architecture, and tech stack.

Alternative to:
Shodan
Shodan
+8
SafeLine

SafeLine

Self-hosted WAF and reverse proxy for securing web apps

20.1k
1.3k
Last commit: 2mo ago

SafeLine is a self-hosted Web Application Firewall (WAF) and reverse proxy that defends web apps from SQL injection, XSS, bot abuse, and DDoS using ML-powered threat dete...

Alternative to:
Cloudflare Web Application Firewall (WAF)
Cloudflare Web Application Firewall (WAF)
+7
Fail2Ban

Fail2Ban

Log-monitoring daemon that bans abusive IPs via firewall rules

16.6k
1.4k
Last commit: 15d ago

Fail2Ban monitors service logs for repeated failures and automatically bans abusive IP addresses by updating firewall rules for a configurable time.

Alternative to:
CrowdSec
CrowdSec
CrowdSec

CrowdSec

Crowdsourced IDS/IPS and WAF with shared malicious IP intelligence

12.2k
567
Last commit: 18h ago

CrowdSec is an open-source security engine that detects attacks from logs and blocks malicious IPs using bouncers and community-curated threat intelligence.

Alternative to:
Fail2Ban
Fail2Ban
+10
Graylog

Graylog

Centralized log management and analysis platform

7.9k
1.1k
Last commit: 1d ago

Graylog is an open source platform for collecting, indexing, searching, and alerting on logs and machine data from many sources in one place.

Alternative to:
Graylog Cloud
Graylog Cloud
+11
OneUptime

OneUptime

Open-source monitoring, incident management, and observability platform

6.4k
307
Last commit: 20h ago

Self-hostable observability platform for uptime monitoring, alerting, incident management, on-call, status pages, logs, and APM in one integrated suite.

Alternative to:
OneUptime
OneUptime
+19