site: sharpen the copy, sync live design and pricing into the repo
Joe's note: the visual identity is right, the words were not. This keeps the design exactly as shipped and rewrites the verbiage to be sharper and more specific — the hero lede, the stat labels, the "what it catches" framing, the supply-chain / execution / model-file cards, the agents section, and the pricing line. Also reconciles the repo with what is actually live: the current hero-video design, the new pricing ($59.99/yr Pro, $19/seat/mo Fleet with a 3-seat minimum), softwareVersion 0.1.12 in the structured data, and the referenced static assets (hero.mp4, favicon, og-image, privacy/terms, icons). Source links now point at the public GitHub mirror. Co-Authored-By: Claude Fable 5 <noreply@anthropic.com>
BIN
site/favicon.png
Normal file
|
After Width: | Height: | Size: 29 KiB |
BIN
site/hero.mp4
Normal file
BIN
site/icons/app-128.png
Normal file
|
After Width: | Height: | Size: 4.5 KiB |
BIN
site/icons/app-16.png
Normal file
|
After Width: | Height: | Size: 675 B |
BIN
site/icons/app-256.png
Normal file
|
After Width: | Height: | Size: 9 KiB |
BIN
site/icons/app-32.png
Normal file
|
After Width: | Height: | Size: 1.4 KiB |
BIN
site/icons/app-48.png
Normal file
|
After Width: | Height: | Size: 1.9 KiB |
BIN
site/icons/app-512.png
Normal file
|
After Width: | Height: | Size: 19 KiB |
26
site/icons/hound-app.svg
Normal file
|
|
@ -0,0 +1,26 @@
|
||||||
|
<?xml version="1.0" encoding="UTF-8"?>
|
||||||
|
<!--
|
||||||
|
Hound app icon: the dog mark in white on a periwinkle tile.
|
||||||
|
|
||||||
|
Distinct from the tray ladder (state-*.png), whose glyphs stay
|
||||||
|
transparent and re-tint per security state so they can sit on any
|
||||||
|
panel colour. This one is the launcher, window and About icon.
|
||||||
|
|
||||||
|
Small sizes are NOT this artwork scaled down. The mark is line-weight,
|
||||||
|
so at 16px a 62% inset leaves roughly a pixel and a half of stroke and
|
||||||
|
the head becomes mush. Each size in the family is authored with its own
|
||||||
|
inset and corner radius — the mark grows as the canvas shrinks.
|
||||||
|
-->
|
||||||
|
<svg xmlns="http://www.w3.org/2000/svg" width="512" height="512" viewBox="0 0 512 512">
|
||||||
|
<title>Hound Antivirus</title>
|
||||||
|
<defs>
|
||||||
|
<linearGradient id="ground" x1="0" y1="0" x2="0" y2="1">
|
||||||
|
<stop offset="0" stop-color="#A9A7E8"/>
|
||||||
|
<stop offset="1" stop-color="#8A88D8"/>
|
||||||
|
</linearGradient>
|
||||||
|
</defs>
|
||||||
|
<rect x="0" y="0" width="512" height="512" rx="114.7" ry="114.7" fill="url(#ground)"/>
|
||||||
|
<g transform="translate(97.28,97.28) scale(11.33714)" fill="#FFFFFF" fill-rule="nonzero">
|
||||||
|
<path d="M3.80069371,23.1130888 C4.43848107,23.5650959 5.14832497,23.919844 5.9089202,24.1573863 L4.47060635,26.3139954 C4.11309659,26.8500464 3.3887224,26.9947828 2.85267132,26.637273 C2.35490959,26.3052997 2.19455701,25.6569993 2.46043143,25.1368862 L2.52939365,25.019338 L3.80069371,23.1130888 Z M14.5833333,1.16666667 C16.7811895,1.16666667 18.6893658,2.52489596 19.4646473,4.47968116 L19.5335,4.66666667 L24.3833333,4.66666667 C25.0448446,4.66666667 25.5894608,5.16717524 25.6591362,5.81016498 L25.6666667,5.94999885 L25.6666667,11.375 C25.6666667,14.0328704 23.5754085,16.2023012 20.9485691,16.3276156 L20.7083333,16.3333333 L18.7961667,16.3321667 L18.8104203,16.3635263 C19.2754933,17.3735749 19.6443042,18.3167095 19.9164818,19.1943797 L20.0445161,19.627766 C20.7657518,22.2003082 19.7286621,25.1941618 17.5638169,26.637392 C17.0277001,26.9948032 16.3033525,26.8499337 15.9459413,26.3138169 C15.5885301,25.7777001 15.7333996,25.0533525 16.2695164,24.6959413 C17.5764793,23.8246327 18.2515149,21.8759509 17.7978097,20.2576506 C17.4455369,19.0011449 16.8372737,17.5384042 15.9713012,15.8761384 C15.8759396,15.6930882 15.8261459,15.4897339 15.8261459,15.2833333 C15.8261459,14.6231337 16.3245332,14.0799436 16.9690039,14.0080605 L17.1092123,14 L20.7083333,14 C22.0976747,14 23.2349191,12.9206448 23.3272774,11.5547236 L23.3333333,11.375 L23.3333333,6.99883333 L17.6136472,7.00006824 L17.4704091,5.99857195 C17.2758266,4.63808519 16.1483073,3.59829995 14.780321,3.50658494 L14.5833333,3.5 L12.7831667,3.5 L12.5783017,3.50389564 C8.27042644,3.63569563 4.8164366,7.09906173 4.67140846,11.3859455 L4.66666667,11.6666667 L4.66631609,16.8880679 L4.67097109,17.092305 C4.76225687,18.9495018 6.29888585,20.4166667 8.16666667,20.4166667 C10.0996633,20.4166667 11.6666667,18.8496633 11.6666667,16.9166667 C11.6666667,16.1268183 11.523797,15.416107 11.2062777,14.4675176 L10.7570788,13.2056109 C10.1975498,11.6462738 9.90930052,10.544355 9.77521466,9.11410583 C9.71507223,8.47258663 10.1863712,7.90377749 10.8278904,7.84363507 C11.4694096,7.78349264 12.0382188,8.25479164 12.0983612,8.89631084 C12.1996371,9.97658728 12.4067419,10.8376191 12.8110905,12.0132787 L13.3678001,13.5759215 L13.4189446,13.7268763 C13.8098537,14.8947176 14,15.8406089 14,16.9166667 C14,20.1383277 11.3883277,22.75 8.16666667,22.75 C5.13975753,22.75 2.63542176,20.439154 2.35770657,17.4371488 L2.3393951,17.1781792 L2.33333333,16.9166667 L2.33333333,11.6666667 C2.33333333,6.09263102 6.68344803,1.51408374 12.2162292,1.1851268 L12.4308333,1.17483333 L12.4315796,1.16666667 L14.5833333,1.16666667 Z M16.1504743,6.81070338 L16.4543586,8.53411695 C16.5662457,9.1686603 16.1425491,9.77376175 15.5080058,9.88564887 C14.8734624,9.99753598 14.268361,9.57383938 14.1564739,8.93929603 L13.8525895,7.21588246 C13.7407024,6.58133911 14.164399,5.97623765 14.7989424,5.86435054 C15.4334857,5.75246343 16.0385872,6.17616002 16.1504743,6.81070338 Z"/>
|
||||||
|
</g>
|
||||||
|
</svg>
|
||||||
|
After Width: | Height: | Size: 3.9 KiB |
177
site/index.html
|
|
@ -1,12 +1,12 @@
|
||||||
<!doctype html>
|
<!doctype html>
|
||||||
<html lang="en" data-theme="auto">
|
<html lang="en" data-theme="light">
|
||||||
<head>
|
<head>
|
||||||
<meta charset="utf-8">
|
<meta charset="utf-8">
|
||||||
<meta name="viewport" content="width=device-width, initial-scale=1">
|
<meta name="viewport" content="width=device-width, initial-scale=1">
|
||||||
<title>Hound — endpoint and supply-chain security for Linux</title>
|
<title>Hound — endpoint and supply-chain security for Linux</title>
|
||||||
<meta name="description" content="Hound blocks a binary before it runs and reads your lockfiles against 235,577 packages that exist only to be malware. Open source agent, Linux-native, built for people who ship software.">
|
<meta name="description" content="Hound blocks a binary before it runs and reads your lockfiles against 235,577 packages that exist only to be malware. Open source agent, Linux-native, built for people who ship software.">
|
||||||
<link rel="canonical" href="https://houndav.com/">
|
<link rel="canonical" href="https://houndav.com/">
|
||||||
<link rel="icon" href="/icons/app-32.png" type="image/png">
|
<link rel="icon" href="/favicon.png" type="image/png">
|
||||||
<link rel="apple-touch-icon" href="/icons/app-256.png">
|
<link rel="apple-touch-icon" href="/icons/app-256.png">
|
||||||
<meta name="robots" content="index, follow, max-snippet:-1, max-image-preview:large">
|
<meta name="robots" content="index, follow, max-snippet:-1, max-image-preview:large">
|
||||||
<meta name="author" content="Hound">
|
<meta name="author" content="Hound">
|
||||||
|
|
@ -17,11 +17,11 @@
|
||||||
<meta property="og:site_name" content="Hound">
|
<meta property="og:site_name" content="Hound">
|
||||||
<meta property="og:title" content="Hound — endpoint and supply-chain security for Linux">
|
<meta property="og:title" content="Hound — endpoint and supply-chain security for Linux">
|
||||||
<meta property="og:description" content="Blocks a malicious binary before it runs, in 2 ms, and reads your lockfiles against 235,577 packages that exist only to be malware. Open-source agent. Ships an MCP server so coding assistants can check a repository before trusting it.">
|
<meta property="og:description" content="Blocks a malicious binary before it runs, in 2 ms, and reads your lockfiles against 235,577 packages that exist only to be malware. Open-source agent. Ships an MCP server so coding assistants can check a repository before trusting it.">
|
||||||
<meta property="og:image" content="https://houndav.com/icons/app-512.png">
|
<meta property="og:image" content="https://houndav.com/og-image.jpg">
|
||||||
<meta name="twitter:card" content="summary_large_image">
|
<meta name="twitter:card" content="summary_large_image">
|
||||||
<meta name="twitter:title" content="Hound — endpoint and supply-chain security for Linux">
|
<meta name="twitter:title" content="Hound — endpoint and supply-chain security for Linux">
|
||||||
<meta name="twitter:description" content="97% of npm's security records are malware, not bugs. Hound knows 235,577 of them by name.">
|
<meta name="twitter:description" content="97% of npm's security records are malware, not bugs. Hound knows 235,577 of them by name.">
|
||||||
<meta name="twitter:image" content="https://houndav.com/icons/app-512.png">
|
<meta name="twitter:image" content="https://houndav.com/og-image.jpg">
|
||||||
|
|
||||||
<link rel="preconnect" href="https://fonts.googleapis.com">
|
<link rel="preconnect" href="https://fonts.googleapis.com">
|
||||||
<link rel="preconnect" href="https://fonts.gstatic.com" crossorigin>
|
<link rel="preconnect" href="https://fonts.gstatic.com" crossorigin>
|
||||||
|
|
@ -160,6 +160,8 @@ header {
|
||||||
nav.links { margin-left: auto; display: flex; gap: 22px; align-items: center; }
|
nav.links { margin-left: auto; display: flex; gap: 22px; align-items: center; }
|
||||||
nav.links a { color: var(--dim); font-size: 14.5px; font-weight: 500; }
|
nav.links a { color: var(--dim); font-size: 14.5px; font-weight: 500; }
|
||||||
nav.links a:hover { color: var(--fg); text-decoration: none; }
|
nav.links a:hover { color: var(--fg); text-decoration: none; }
|
||||||
|
nav.links a.btn { color: #FFFFFF; }
|
||||||
|
nav.links a.btn:hover { color: #FFFFFF; }
|
||||||
|
|
||||||
/* Hamburger. Hiding links on a phone was not enough — the theme switch
|
/* Hamburger. Hiding links on a phone was not enough — the theme switch
|
||||||
and the call to action still competed for a 360px bar and pushed it
|
and the call to action still competed for a 360px bar and pushed it
|
||||||
|
|
@ -225,19 +227,42 @@ nav.links a:hover { color: var(--fg); text-decoration: none; }
|
||||||
.btn.ghost:hover { background: var(--raised); }
|
.btn.ghost:hover { background: var(--raised); }
|
||||||
|
|
||||||
/* ── hero ─────────────────────────────────────────────────────────── */
|
/* ── hero ─────────────────────────────────────────────────────────── */
|
||||||
.hero { padding: 84px 0 56px; display: grid; grid-template-columns: 1.05fr .95fr; gap: 56px; align-items: center; }
|
.hero-wrap {
|
||||||
@media (max-width: 900px) { .hero { grid-template-columns: 1fr; gap: 36px; padding: 52px 0 36px; } }
|
position: relative;
|
||||||
|
overflow: hidden;
|
||||||
|
background: #0B0E14;
|
||||||
|
}
|
||||||
|
.hero-video {
|
||||||
|
position: absolute; inset: 0;
|
||||||
|
width: 100%; height: 100%;
|
||||||
|
object-fit: cover;
|
||||||
|
object-position: 70% center;
|
||||||
|
opacity: 0.55;
|
||||||
|
}
|
||||||
|
.hero {
|
||||||
|
position: relative; z-index: 1;
|
||||||
|
padding: 100px 0 80px;
|
||||||
|
display: block;
|
||||||
|
max-width: 560px;
|
||||||
|
}
|
||||||
|
@media (max-width: 900px) {
|
||||||
|
.hero { padding: 64px 0 52px; max-width: 100%; }
|
||||||
|
.hero-video { object-position: 60% center; }
|
||||||
|
}
|
||||||
.eyebrow {
|
.eyebrow {
|
||||||
font-family: "JetBrains Mono", ui-monospace, monospace;
|
font-family: "JetBrains Mono", ui-monospace, monospace;
|
||||||
font-size: 12px; letter-spacing: 1.3px; text-transform: uppercase;
|
font-size: 12px; letter-spacing: 1.3px; text-transform: uppercase;
|
||||||
color: var(--brand); margin-bottom: 18px;
|
color: #9896E0; margin-bottom: 18px;
|
||||||
}
|
}
|
||||||
.hero h1 { font-size: clamp(34px, 5.2vw, 54px); line-height: 1.05; font-weight: 700; }
|
.hero h1 { font-size: clamp(34px, 5.2vw, 54px); line-height: 1.05; font-weight: 700; color: #E8ECF4; }
|
||||||
.hero .lede { color: var(--dim); font-size: 18px; margin: 20px 0 30px; max-width: 52ch; }
|
.hero .lede { color: #B0B8C8; font-size: 18px; margin: 20px 0 30px; max-width: 52ch; }
|
||||||
|
.hero .lede strong { color: #E8ECF4; }
|
||||||
.cta { display: flex; gap: 12px; flex-wrap: wrap; align-items: center; }
|
.cta { display: flex; gap: 12px; flex-wrap: wrap; align-items: center; }
|
||||||
.cta .note { color: var(--faint); font-size: 13.5px; }
|
.cta .note { color: #8B96AB; font-size: 13.5px; }
|
||||||
|
.hero-wrap .btn.ghost { color: #E8ECF4; border-color: #3A4558; }
|
||||||
|
.hero-wrap .btn.ghost:hover { background: rgba(255,255,255,.08); }
|
||||||
|
|
||||||
/* terminal */
|
/* terminal (used in later sections) */
|
||||||
.term {
|
.term {
|
||||||
background: var(--term-bg); border: 1px solid var(--line); border-radius: 13px;
|
background: var(--term-bg); border: 1px solid var(--line); border-radius: 13px;
|
||||||
box-shadow: var(--shadow); overflow: hidden; min-width: 0; max-width: 100%;
|
box-shadow: var(--shadow); overflow: hidden; min-width: 0; max-width: 100%;
|
||||||
|
|
@ -252,7 +277,13 @@ nav.links a:hover { color: var(--fg); text-decoration: none; }
|
||||||
margin: 0; padding: 16px 18px 20px; overflow-x: auto; max-width: 100%;
|
margin: 0; padding: 16px 18px 20px; overflow-x: auto; max-width: 100%;
|
||||||
font: 12.5px/1.75 "JetBrains Mono", ui-monospace, monospace;
|
font: 12.5px/1.75 "JetBrains Mono", ui-monospace, monospace;
|
||||||
color: var(--term-fg);
|
color: var(--term-fg);
|
||||||
|
scrollbar-width: thin;
|
||||||
|
scrollbar-color: rgba(152,150,224,.25) transparent;
|
||||||
}
|
}
|
||||||
|
.term pre::-webkit-scrollbar { height: 5px; }
|
||||||
|
.term pre::-webkit-scrollbar-track { background: transparent; }
|
||||||
|
.term pre::-webkit-scrollbar-thumb { background: rgba(152,150,224,.25); border-radius: 4px; }
|
||||||
|
.term pre::-webkit-scrollbar-thumb:hover { background: rgba(152,150,224,.4); }
|
||||||
.term .p { color: #9896E0; }
|
.term .p { color: #9896E0; }
|
||||||
.term .d { color: #5A6478; }
|
.term .d { color: #5A6478; }
|
||||||
.term .g { color: #22C55E; }
|
.term .g { color: #22C55E; }
|
||||||
|
|
@ -355,7 +386,15 @@ code, .inline {
|
||||||
/* Only the command scrolls. The button sits outside that box so it can
|
/* Only the command scrolls. The button sits outside that box so it can
|
||||||
never be scrolled out of reach — which is what happens when the whole
|
never be scrolled out of reach — which is what happens when the whole
|
||||||
row is the scroll container. */
|
row is the scroll container. */
|
||||||
.copy .cmd { overflow-x: auto; min-width: 0; flex: 1 1 auto; }
|
.copy .cmd {
|
||||||
|
overflow-x: auto; min-width: 0; flex: 1 1 auto;
|
||||||
|
scrollbar-width: thin;
|
||||||
|
scrollbar-color: var(--brand-dim) transparent;
|
||||||
|
}
|
||||||
|
.copy .cmd::-webkit-scrollbar { height: 5px; }
|
||||||
|
.copy .cmd::-webkit-scrollbar-track { background: transparent; }
|
||||||
|
.copy .cmd::-webkit-scrollbar-thumb { background: rgba(90,88,200,.2); border-radius: 4px; }
|
||||||
|
.copy .cmd::-webkit-scrollbar-thumb:hover { background: rgba(90,88,200,.35); }
|
||||||
.copy code {
|
.copy code {
|
||||||
background: none; border: 0; padding: 0; font-size: 13px;
|
background: none; border: 0; padding: 0; font-size: 13px;
|
||||||
white-space: nowrap; display: block;
|
white-space: nowrap; display: block;
|
||||||
|
|
@ -407,7 +446,7 @@ footer { border-top: 1px solid var(--line); padding: 40px 0 56px; color: var(--f
|
||||||
.foot .right { margin-left: auto; }
|
.foot .right { margin-left: auto; }
|
||||||
@media (max-width: 640px) { .foot .right { margin-left: 0; } }
|
@media (max-width: 640px) { .foot .right { margin-left: 0; } }
|
||||||
</style>
|
</style>
|
||||||
<script type="application/ld+json">{"@context": "https://schema.org", "@type": "SoftwareApplication", "name": "Hound", "alternateName": "Hound Antivirus", "applicationCategory": "SecurityApplication", "applicationSubCategory": "Antivirus, supply-chain security, endpoint protection", "operatingSystem": "Linux (Ubuntu, Debian, Linux Mint)", "url": "https://houndav.com/", "downloadUrl": "https://dl.houndav.com/", "softwareVersion": "0.1.0", "license": "https://www.apache.org/licenses/LICENSE-2.0", "isAccessibleForFree": true, "description": "Endpoint and supply-chain security for Linux. Refuses a malicious binary at execve in 2 ms using fanotify, and checks lockfiles against 235,577 known-malicious packages from the OSSF malicious-packages feed. Detects typosquats, hallucinated package names, install scripts that run code during npm install, pickle-based model files that execute on load, prompt injection in AI assistant instruction files, over-privileged MCP servers, rootkits and persistence changes. Ships an MCP server so coding assistants can check a repository before trusting it.", "featureList": ["Execution gate: refuses a malicious binary at execve before it runs", "Supply-chain scanning of package-lock.json, yarn.lock, Cargo.lock, poetry.lock, requirements.txt, go.sum, Gemfile.lock and composer.lock", "235,577 known-malicious package indicators across npm, PyPI, RubyGems, crates.io, Go and Packagist", "Typosquat and slopsquat detection for AI-hallucinated package names", "Install-script analysis for postinstall hooks that pipe remote scripts to a shell", "Pickle opcode analysis for .pt, .ckpt and .pkl model files that execute code on load", "Prompt-injection detection in CLAUDE.md, AGENTS.md, .cursorrules and copilot-instructions", "MCP server audit for unpinned servers and servers handed credentials", "Rootkit detection by kernel-versus-/proc comparison and package ownership", "Persistence ledger over systemd units, cron, autostart, shell profiles and authorized_keys", "MCP server with four read-only tools for coding assistants"], "offers": [{"@type": "Offer", "name": "Free", "price": "0", "priceCurrency": "USD", "description": "On-demand scanning, real-time file protection, quarantine, MCP server. No account."}, {"@type": "Offer", "name": "Pro", "price": "89.95", "priceCurrency": "USD", "description": "Execution gate, full supply-chain feed, Hound Linux threat pack, signed automatic definitions. Billed annually.", "priceSpecification": {"@type": "UnitPriceSpecification", "price": "89.95", "priceCurrency": "USD", "billingDuration": 1, "billingIncrement": 1, "unitCode": "ANN"}}, {"@type": "Offer", "name": "Fleet", "price": "249.95", "priceCurrency": "USD", "description": "Everything in Pro on up to 10 seats, plus central console, policy push and compliance reports. $15 per additional seat. Billed monthly."}], "publisher": {"@type": "Organization", "name": "Hound", "url": "https://houndav.com/"}}</script>
|
<script type="application/ld+json">{"@context": "https://schema.org", "@type": "SoftwareApplication", "name": "Hound", "alternateName": "Hound Antivirus", "applicationCategory": "SecurityApplication", "applicationSubCategory": "Antivirus, supply-chain security, endpoint protection", "operatingSystem": "Linux (Ubuntu, Debian, Linux Mint)", "url": "https://houndav.com/", "downloadUrl": "https://dl.houndav.com/", "softwareVersion": "0.1.12", "license": "https://www.apache.org/licenses/LICENSE-2.0", "isAccessibleForFree": true, "description": "Endpoint and supply-chain security for Linux. Refuses a malicious binary at execve in 2 ms using fanotify, and checks lockfiles against 235,577 known-malicious packages from the OSSF malicious-packages feed. Detects typosquats, hallucinated package names, install scripts that run code during npm install, pickle-based model files that execute on load, prompt injection in AI assistant instruction files, over-privileged MCP servers, rootkits and persistence changes. Ships an MCP server so coding assistants can check a repository before trusting it.", "featureList": ["Execution gate: refuses a malicious binary at execve before it runs", "Supply-chain scanning of package-lock.json, yarn.lock, Cargo.lock, poetry.lock, requirements.txt, go.sum, Gemfile.lock and composer.lock", "235,577 known-malicious package indicators across npm, PyPI, RubyGems, crates.io, Go and Packagist", "Typosquat and slopsquat detection for AI-hallucinated package names", "Install-script analysis for postinstall hooks that pipe remote scripts to a shell", "Pickle opcode analysis for .pt, .ckpt and .pkl model files that execute code on load", "Prompt-injection detection in CLAUDE.md, AGENTS.md, .cursorrules and copilot-instructions", "MCP server audit for unpinned servers and servers handed credentials", "Rootkit detection by kernel-versus-/proc comparison and package ownership", "Persistence ledger over systemd units, cron, autostart, shell profiles and authorized_keys", "MCP server with four read-only tools for coding assistants"], "offers": [{"@type": "Offer", "name": "Free", "price": "0", "priceCurrency": "USD", "description": "On-demand scanning, real-time file protection, quarantine, MCP server. No account."}, {"@type": "Offer", "name": "Pro", "price": "59.99", "priceCurrency": "USD", "description": "Execution gate, full supply-chain feed, Hound Linux threat pack, signed automatic definitions. Billed annually.", "priceSpecification": {"@type": "UnitPriceSpecification", "price": "59.99", "priceCurrency": "USD", "billingDuration": 1, "billingIncrement": 1, "unitCode": "ANN"}}, {"@type": "Offer", "name": "Fleet", "price": "19", "priceCurrency": "USD", "description": "Everything in Pro on every machine, plus central console, policy push and compliance reports. Per seat, billed monthly. 3-seat minimum."}], "publisher": {"@type": "Organization", "name": "Hound", "url": "https://houndav.com/"}}</script>
|
||||||
<script type="application/ld+json">{"@context": "https://schema.org", "@type": "FAQPage", "mainEntity": [{"@type": "Question", "name": "Is Hound an antivirus?", "acceptedAnswer": {"@type": "Answer", "text": "Partly, and the interesting part is not. Hound does scan files and quarantine malware, but traditional antivirus databases are overwhelmingly Windows malware, which is close to irrelevant on a Linux developer machine. What actually compromises those machines is a dependency, a model file or a repository, so most of Hound is supply-chain and agent-era detection rather than file signatures."}}, {"@type": "Question", "name": "How is Hound different from ClamAV?", "acceptedAnswer": {"@type": "Answer", "text": "ClamAV's corpus is mostly Windows malware, useful if you are a file server passing infections along to Windows clients. Hound is Linux-native: it refuses a malicious binary at execve rather than reporting it afterwards, and its 235,577 indicators are packages that exist only to be malware, drawn from the OSSF malicious-packages feed. Hound can use clamd alongside it for the Windows-carrier case, but does not require it."}}, {"@type": "Question", "name": "Does Hound slow my machine down?", "acceptedAnswer": {"@type": "Answer", "text": "The execution gate adds about 0.8 milliseconds to a program starting, and sustains over 4,000 executions per second. On a server running 21 containers, 16 Node processes and a web server, arming it did not move request latency or load average. A verdict cache means a program you have already run is answered from memory without re-reading it."}}, {"@type": "Question", "name": "What happens if Hound crashes while it is blocking programs?", "acceptedAnswer": {"@type": "Answer", "text": "Nothing. The gate fails open: a watchdog releases any execution that has not been answered within 500 milliseconds, and if the daemon dies outright the kernel releases everything pending when its descriptor closes. A bug in an antivirus must never be able to freeze a machine, so that path is tested rather than assumed."}}, {"@type": "Question", "name": "Is Hound open source?", "acceptedAnswer": {"@type": "Answer", "text": "The agent is Apache-2.0 and the source is public. You are being asked to run a root daemon that can block execution, so you should be able to read it. Definitions are signed with a key whose public half is compiled into the binary, so anyone can verify that the definitions they received are the ones that were published. What is paid for is the threat feed, the console and support."}}, {"@type": "Question", "name": "Can my coding assistant use Hound?", "acceptedAnswer": {"@type": "Answer", "text": "Yes. Hound ships an MCP server with four read-only tools, so Claude, Cursor, VS Code or anything else that speaks MCP can check a project before installing its dependencies, check a single package or model file, and audit the MCP servers it is already trusting. There is deliberately no tool that can delete or quarantine anything: an assistant that can be persuaded by the repository it is reading must not be able to make your antivirus destroy files."}}, {"@type": "Question", "name": "What does Hound detect that other scanners do not?", "acceptedAnswer": {"@type": "Answer", "text": "Packages whose install script pipes a remote script into a shell before you have used any of their code. Package names an AI invented that somebody then registered. Model files whose pickle stream calls os.system when loaded. Instructions in CLAUDE.md or .cursorrules aimed at your assistant rather than at you. MCP servers downloaded fresh from the internet on every launch and handed an API token. Setuid binaries no installed package claims."}}, {"@type": "Question", "name": "Does Hound phone home?", "acceptedAnswer": {"@type": "Answer", "text": "No telemetry by default, and it can run fully offline with definitions imported from a file, which is how it works in air-gapped and regulated environments. The only network request it makes is fetching signed definition packs, and you can point that at your own mirror."}}, {"@type": "Question", "name": "Which Linux distributions does Hound support?", "acceptedAnswer": {"@type": "Answer", "text": "Ubuntu, Debian and Linux Mint have packages today. An AppImage runs anywhere without installing, though it cannot provide the execution gate, which needs privileges an uninstalled bundle does not have. RPM and Arch packaging exists but is not yet built and published."}}]}</script>
|
<script type="application/ld+json">{"@context": "https://schema.org", "@type": "FAQPage", "mainEntity": [{"@type": "Question", "name": "Is Hound an antivirus?", "acceptedAnswer": {"@type": "Answer", "text": "Partly, and the interesting part is not. Hound does scan files and quarantine malware, but traditional antivirus databases are overwhelmingly Windows malware, which is close to irrelevant on a Linux developer machine. What actually compromises those machines is a dependency, a model file or a repository, so most of Hound is supply-chain and agent-era detection rather than file signatures."}}, {"@type": "Question", "name": "How is Hound different from ClamAV?", "acceptedAnswer": {"@type": "Answer", "text": "ClamAV's corpus is mostly Windows malware, useful if you are a file server passing infections along to Windows clients. Hound is Linux-native: it refuses a malicious binary at execve rather than reporting it afterwards, and its 235,577 indicators are packages that exist only to be malware, drawn from the OSSF malicious-packages feed. Hound can use clamd alongside it for the Windows-carrier case, but does not require it."}}, {"@type": "Question", "name": "Does Hound slow my machine down?", "acceptedAnswer": {"@type": "Answer", "text": "The execution gate adds about 0.8 milliseconds to a program starting, and sustains over 4,000 executions per second. On a server running 21 containers, 16 Node processes and a web server, arming it did not move request latency or load average. A verdict cache means a program you have already run is answered from memory without re-reading it."}}, {"@type": "Question", "name": "What happens if Hound crashes while it is blocking programs?", "acceptedAnswer": {"@type": "Answer", "text": "Nothing. The gate fails open: a watchdog releases any execution that has not been answered within 500 milliseconds, and if the daemon dies outright the kernel releases everything pending when its descriptor closes. A bug in an antivirus must never be able to freeze a machine, so that path is tested rather than assumed."}}, {"@type": "Question", "name": "Is Hound open source?", "acceptedAnswer": {"@type": "Answer", "text": "The agent is Apache-2.0 and the source is public. You are being asked to run a root daemon that can block execution, so you should be able to read it. Definitions are signed with a key whose public half is compiled into the binary, so anyone can verify that the definitions they received are the ones that were published. What is paid for is the threat feed, the console and support."}}, {"@type": "Question", "name": "Can my coding assistant use Hound?", "acceptedAnswer": {"@type": "Answer", "text": "Yes. Hound ships an MCP server with four read-only tools, so Claude, Cursor, VS Code or anything else that speaks MCP can check a project before installing its dependencies, check a single package or model file, and audit the MCP servers it is already trusting. There is deliberately no tool that can delete or quarantine anything: an assistant that can be persuaded by the repository it is reading must not be able to make your antivirus destroy files."}}, {"@type": "Question", "name": "What does Hound detect that other scanners do not?", "acceptedAnswer": {"@type": "Answer", "text": "Packages whose install script pipes a remote script into a shell before you have used any of their code. Package names an AI invented that somebody then registered. Model files whose pickle stream calls os.system when loaded. Instructions in CLAUDE.md or .cursorrules aimed at your assistant rather than at you. MCP servers downloaded fresh from the internet on every launch and handed an API token. Setuid binaries no installed package claims."}}, {"@type": "Question", "name": "Does Hound phone home?", "acceptedAnswer": {"@type": "Answer", "text": "No telemetry by default, and it can run fully offline with definitions imported from a file, which is how it works in air-gapped and regulated environments. The only network request it makes is fetching signed definition packs, and you can point that at your own mirror."}}, {"@type": "Question", "name": "Which Linux distributions does Hound support?", "acceptedAnswer": {"@type": "Answer", "text": "Ubuntu, Debian and Linux Mint have packages today. An AppImage runs anywhere without installing, though it cannot provide the execution gate, which needs privileges an uninstalled bundle does not have. RPM and Arch packaging exists but is not yet built and published."}}]}</script>
|
||||||
</head>
|
</head>
|
||||||
<body>
|
<body>
|
||||||
|
|
@ -444,15 +483,19 @@ footer { border-top: 1px solid var(--line); padding: 40px 0 56px; color: var(--f
|
||||||
</header>
|
</header>
|
||||||
|
|
||||||
<main>
|
<main>
|
||||||
<div class="wrap">
|
<div class="hero-wrap">
|
||||||
<div class="hero">
|
<video class="hero-video" autoplay loop muted playsinline disablepictureinpicture>
|
||||||
<div>
|
<source src="/hero.mp4" type="video/mp4">
|
||||||
|
</video>
|
||||||
|
<div class="wrap">
|
||||||
|
<div class="hero">
|
||||||
<div class="eyebrow">Linux · open source agent</div>
|
<div class="eyebrow">Linux · open source agent</div>
|
||||||
<h1>Your antivirus has never heard of the things that actually reach your machine.</h1>
|
<h1>Your antivirus has never heard of the things that actually reach your machine.</h1>
|
||||||
<p class="lede">
|
<p class="lede">
|
||||||
Hound blocks a binary before it runs, and reads your lockfiles against
|
Hound refuses a malicious binary at launch and reads your lockfiles against
|
||||||
<strong>235,577 packages that exist only to be malware</strong>. Built for people who
|
<strong>235,577 packages that exist only to attack you</strong> — the poisoned
|
||||||
ship software, on the machines they ship it from.
|
dependency, the model file that runs code when it loads, the install script that
|
||||||
|
fires before you have imported a line. Built for the machines you ship software from.
|
||||||
</p>
|
</p>
|
||||||
<div class="cta">
|
<div class="cta">
|
||||||
<a class="btn" href="#install">Install on Linux</a>
|
<a class="btn" href="#install">Install on Linux</a>
|
||||||
|
|
@ -460,43 +503,16 @@ footer { border-top: 1px solid var(--line); padding: 40px 0 56px; color: var(--f
|
||||||
<span class="note">Free tier, no account.</span>
|
<span class="note">Free tier, no account.</span>
|
||||||
</div>
|
</div>
|
||||||
</div>
|
</div>
|
||||||
|
|
||||||
<div class="term" aria-label="Example terminal output">
|
|
||||||
<div class="term-bar"><i></i><i></i><i></i> joe@thinkpad — hound</div>
|
|
||||||
<pre><span class="p">$</span> hound supply-chain ~/src/dashboard
|
|
||||||
|
|
||||||
<span class="r">✘ 2 critical</span>, 1 warning across 1,284 packages
|
|
||||||
|
|
||||||
<span class="r">CRITICAL</span> @vue/cli-plugin-babe1@1.0.2
|
|
||||||
<span class="d">node_modules/@vue/cli-plugin-babe1/package.json</span>
|
|
||||||
Its "postinstall" step runs automatically when the
|
|
||||||
package is installed — before you have used any of
|
|
||||||
its code — and it downloads a script from the
|
|
||||||
internet and runs it immediately.
|
|
||||||
<span class="p">→</span> Do not install this package. If it is already
|
|
||||||
installed, rotate any credentials it could read.
|
|
||||||
|
|
||||||
<span class="r">CRITICAL</span> mcp-github-tools@0.3.1
|
|
||||||
<span class="d">~/.config/mcp/servers.json</span>
|
|
||||||
Handed GITHUB_TOKEN, and its code is downloaded
|
|
||||||
fresh from the internet on every launch.
|
|
||||||
|
|
||||||
<span class="y">WARNING</span> CLAUDE.md
|
|
||||||
<span class="d">vendor/awesome-agents/CLAUDE.md</span>
|
|
||||||
Contains instructions aimed at your assistant
|
|
||||||
rather than at you.
|
|
||||||
</pre>
|
|
||||||
</div>
|
|
||||||
</div>
|
</div>
|
||||||
</div>
|
</div>
|
||||||
|
|
||||||
<div class="band">
|
<div class="band">
|
||||||
<div class="wrap">
|
<div class="wrap">
|
||||||
<div class="stats">
|
<div class="stats">
|
||||||
<div class="stat"><b>97%</b><span>of npm's security records are malware, not bugs</span></div>
|
<div class="stat"><b>97%</b><span>of npm's security advisories are malware, not bugs</span></div>
|
||||||
<div class="stat"><b>235,577</b><span>malicious packages Hound knows by name</span></div>
|
<div class="stat"><b>235,577</b><span>malicious packages Hound blocks by name</span></div>
|
||||||
<div class="stat"><b>2 ms</b><span>to refuse a malicious binary at <span class="mono">execve</span></span></div>
|
<div class="stat"><b>2 ms</b><span>to stop a malicious binary at <span class="mono">execve</span></span></div>
|
||||||
<div class="stat"><b>0.8 ms</b><span>added to a normal program starting</span></div>
|
<div class="stat"><b>0.8 ms</b><span>added to every other program you run</span></div>
|
||||||
</div>
|
</div>
|
||||||
</div>
|
</div>
|
||||||
</div>
|
</div>
|
||||||
|
|
@ -504,28 +520,29 @@ footer { border-top: 1px solid var(--line); padding: 40px 0 56px; color: var(--f
|
||||||
<section id="what">
|
<section id="what">
|
||||||
<div class="wrap">
|
<div class="wrap">
|
||||||
<div class="kicker">What it catches</div>
|
<div class="kicker">What it catches</div>
|
||||||
<h2>The Linux desktop threat is not a Windows virus.</h2>
|
<h2>What compromises a Linux dev machine is not a Windows virus.</h2>
|
||||||
<p class="sub">
|
<p class="sub">
|
||||||
Traditional antivirus databases are overwhelmingly Windows malware — useful if you are a
|
Every other scanner is looking for the wrong thing. Their databases are overwhelmingly
|
||||||
file server passing infections along, irrelevant to the laptop you write code on. What
|
Windows malware — useful on a file server relaying infections, irrelevant to the laptop
|
||||||
actually reaches a developer machine is a dependency, a model file, or a repository.
|
you write code on. What actually reaches a developer machine arrives through a dependency,
|
||||||
|
a model file, or a repository you cloned. That is what Hound is built to catch.
|
||||||
</p>
|
</p>
|
||||||
|
|
||||||
<div class="grid3">
|
<div class="grid3">
|
||||||
<div class="card">
|
<div class="card">
|
||||||
<span class="tag">Supply chain</span>
|
<span class="tag">Supply chain</span>
|
||||||
<h3>Dependencies that are malware</h3>
|
<h3>Dependencies that are malware</h3>
|
||||||
<p>Typosquats, and the newer problem: names an AI invented that somebody then registered. Hound reads your lockfiles — so it catches what <em>will</em> be installed, before the payload runs during installation.</p>
|
<p>A typosquat one keystroke off a real package. A name your AI assistant hallucinated that an attacker then registered and filled with a payload. Hound reads the lockfile, so it catches what <em>will</em> be installed — before the install script ever runs.</p>
|
||||||
</div>
|
</div>
|
||||||
<div class="card">
|
<div class="card">
|
||||||
<span class="tag">Execution</span>
|
<span class="tag">Execution</span>
|
||||||
<h3>Refused before it runs</h3>
|
<h3>Stopped at launch, not flagged after</h3>
|
||||||
<p>Real-time protection that denies <span class="mono">execve</span> rather than reporting it afterwards. Built on fanotify, with a watchdog that fails open — a bug in Hound must never be able to freeze your machine.</p>
|
<p>Most tools tell you about the malware that already ran. Hound denies the <span class="mono">execve</span> itself, in about two milliseconds, built on fanotify. A watchdog fails the gate open — a bug in your antivirus must never be the thing that freezes your machine.</p>
|
||||||
</div>
|
</div>
|
||||||
<div class="card">
|
<div class="card">
|
||||||
<span class="tag">Model files</span>
|
<span class="tag">Model files</span>
|
||||||
<h3>Weights that are programs</h3>
|
<h3>Weights that are really programs</h3>
|
||||||
<p>A pickle-based <span class="mono">.pt</span> or <span class="mono">.ckpt</span> executes code the moment it loads. Downloading weights is a code-execution decision, and Hound reads the opcodes before you find out the hard way.</p>
|
<p>A pickle-based <span class="mono">.pt</span> or <span class="mono">.ckpt</span> runs arbitrary code the moment you load it — <span class="mono">torch.load</span> is a code-execution decision most people make by reflex. Hound reads the pickle opcodes and tells you before you find out the hard way.</p>
|
||||||
</div>
|
</div>
|
||||||
<div class="card">
|
<div class="card">
|
||||||
<span class="tag">Persistence</span>
|
<span class="tag">Persistence</span>
|
||||||
|
|
@ -549,11 +566,11 @@ footer { border-top: 1px solid var(--line); padding: 40px 0 56px; color: var(--f
|
||||||
<section id="agents" class="band">
|
<section id="agents" class="band">
|
||||||
<div class="wrap">
|
<div class="wrap">
|
||||||
<div class="kicker">For people who code with agents</div>
|
<div class="kicker">For people who code with agents</div>
|
||||||
<h2>Your assistant can ask Hound first.</h2>
|
<h2>Your coding assistant can ask Hound before it trusts anything.</h2>
|
||||||
<p class="sub">
|
<p class="sub">
|
||||||
Hound ships an MCP server. Point Claude, Cursor, VS Code or anything else that speaks MCP
|
You have handed an AI agent the keys to your machine and pointed it at the open internet.
|
||||||
at it, and your assistant can check a repository before it installs its dependencies or
|
Hound ships an MCP server, so Claude, Cursor, VS Code — anything that speaks MCP — can
|
||||||
starts working in it.
|
check a repository, a package or a model file before it installs or runs a thing.
|
||||||
</p>
|
</p>
|
||||||
|
|
||||||
<div class="grid2">
|
<div class="grid2">
|
||||||
|
|
@ -597,11 +614,12 @@ footer { border-top: 1px solid var(--line); padding: 40px 0 56px; color: var(--f
|
||||||
<section id="pricing">
|
<section id="pricing">
|
||||||
<div class="wrap">
|
<div class="wrap">
|
||||||
<div class="kicker">Pricing</div>
|
<div class="kicker">Pricing</div>
|
||||||
<h2>The scanner is free. The blocking and the intelligence are not.</h2>
|
<h2>The scanner is free. The blocking and the feed are not.</h2>
|
||||||
<p class="sub">
|
<p class="sub">
|
||||||
A free tier that cannot protect anything is a bad first impression, so real-time file
|
Everything that runs on your own machine — scanning, quarantine, the supply-chain and
|
||||||
protection is in the free build. The line is drawn at refusing execution, and at the
|
agent-era checks, the MCP server — is free forever, no account and no expiry. What you pay
|
||||||
threat feed.
|
for is the part that costs real money to build and serve: refusing execution at launch, and
|
||||||
|
the full malicious-package feed.
|
||||||
</p>
|
</p>
|
||||||
|
|
||||||
<div class="tiers">
|
<div class="tiers">
|
||||||
|
|
@ -624,7 +642,7 @@ footer { border-top: 1px solid var(--line); padding: 40px 0 56px; color: var(--f
|
||||||
<div class="tier feature">
|
<div class="tier feature">
|
||||||
<span class="badge">Most popular</span>
|
<span class="badge">Most popular</span>
|
||||||
<h3>Pro</h3>
|
<h3>Pro</h3>
|
||||||
<div class="price">$89.95 <small>/ year</small></div>
|
<div class="price">$59.99 <small>/ year</small></div>
|
||||||
<p class="who">One machine, for someone who builds software on it.</p>
|
<p class="who">One machine, for someone who builds software on it.</p>
|
||||||
<hr>
|
<hr>
|
||||||
<ul>
|
<ul>
|
||||||
|
|
@ -640,8 +658,8 @@ footer { border-top: 1px solid var(--line); padding: 40px 0 56px; color: var(--f
|
||||||
|
|
||||||
<div class="tier">
|
<div class="tier">
|
||||||
<h3>Fleet</h3>
|
<h3>Fleet</h3>
|
||||||
<div class="price">$249.95 <small>/ month</small></div>
|
<div class="price">$19 <small>/ seat / month</small></div>
|
||||||
<p class="who">Up to 10 seats, then $15 each. Annual at ten months' price.</p>
|
<p class="who">3-seat minimum. Annual billing at 10 months' price.</p>
|
||||||
<hr>
|
<hr>
|
||||||
<ul>
|
<ul>
|
||||||
<li><svg viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="3" stroke-linecap="round" stroke-linejoin="round"><path d="M20 6 9 17l-5-5"/></svg><span>Everything in Pro, on every machine</span></li>
|
<li><svg viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="3" stroke-linecap="round" stroke-linejoin="round"><path d="M20 6 9 17l-5-5"/></svg><span>Everything in Pro, on every machine</span></li>
|
||||||
|
|
@ -651,7 +669,7 @@ footer { border-top: 1px solid var(--line); padding: 40px 0 56px; color: var(--f
|
||||||
<li><svg viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="3" stroke-linecap="round" stroke-linejoin="round"><path d="M20 6 9 17l-5-5"/></svg><span>Priority support and a named contact</span></li>
|
<li><svg viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="3" stroke-linecap="round" stroke-linejoin="round"><path d="M20 6 9 17l-5-5"/></svg><span>Priority support and a named contact</span></li>
|
||||||
</ul>
|
</ul>
|
||||||
<a class="btn ghost" href="mailto:sales@houndav.com?subject=Hound%20Fleet">Talk to us</a>
|
<a class="btn ghost" href="mailto:sales@houndav.com?subject=Hound%20Fleet">Talk to us</a>
|
||||||
<p class="fine">Over 20 seats? We will quote you.</p>
|
<p class="fine">Over 25 seats? Volume pricing available.</p>
|
||||||
</div>
|
</div>
|
||||||
</div>
|
</div>
|
||||||
</div>
|
</div>
|
||||||
|
|
@ -754,7 +772,7 @@ footer { border-top: 1px solid var(--line); padding: 40px 0 56px; color: var(--f
|
||||||
support, not permission to look.
|
support, not permission to look.
|
||||||
</p>
|
</p>
|
||||||
<div class="cta" style="margin-top:26px;">
|
<div class="cta" style="margin-top:26px;">
|
||||||
<a class="btn ghost" href="https://git.joelovestech.com/Hound/Antivirus">Read the source</a>
|
<a class="btn ghost" href="https://github.com/HoundAV/hound-antivirus">Read the source</a>
|
||||||
<a class="btn ghost" href="https://defs.houndav.com/index.json">See the definitions index</a>
|
<a class="btn ghost" href="https://defs.houndav.com/index.json">See the definitions index</a>
|
||||||
</div>
|
</div>
|
||||||
</div>
|
</div>
|
||||||
|
|
@ -763,11 +781,16 @@ footer { border-top: 1px solid var(--line); padding: 40px 0 56px; color: var(--f
|
||||||
|
|
||||||
<footer>
|
<footer>
|
||||||
<div class="wrap foot">
|
<div class="wrap foot">
|
||||||
<span>© 2026 Hound</span>
|
<span>© 2026 Hound</span>
|
||||||
<a href="https://git.joelovestech.com/Hound/Antivirus">Source</a>
|
<a href="https://github.com/HoundAV/hound-antivirus">Source</a>
|
||||||
<a href="mailto:support@houndav.com">Support</a>
|
<a href="mailto:support@houndav.com">Support</a>
|
||||||
<a href="https://dl.houndav.com/">Downloads</a>
|
<a href="https://dl.houndav.com/">Downloads</a>
|
||||||
<span class="right mono" style="font-size:12px;">Definitions 2026.08.21 · 235,577 indicators</span>
|
<a href="/privacy">Privacy</a>
|
||||||
|
<a href="/terms">Terms</a>
|
||||||
|
<span class="right mono" style="font-size:12px;">Definitions 2026.08.21 · 235,577 indicators</span>
|
||||||
|
</div>
|
||||||
|
<div class="wrap" style="margin-top:16px;">
|
||||||
|
<p style="font-size:11.5px; line-height:1.6; color:var(--faint); max-width:680px;">Hound is provided as-is without warranty of any kind. No security software can guarantee complete protection against all threats. Hound is one layer of a security strategy, not a substitute for one. See our <a href="/terms" style="color:var(--dim);">terms of service</a> for full details.</p>
|
||||||
</div>
|
</div>
|
||||||
</footer>
|
</footer>
|
||||||
|
|
||||||
|
|
@ -784,8 +807,8 @@ footer { border-top: 1px solid var(--line); padding: 40px 0 56px; color: var(--f
|
||||||
});
|
});
|
||||||
}
|
}
|
||||||
|
|
||||||
var saved = 'auto';
|
var saved = 'light';
|
||||||
try { saved = localStorage.getItem('hound-theme') || 'auto'; } catch (e) { /* private mode */ }
|
try { saved = localStorage.getItem('hound-theme') || 'light'; } catch (e) { /* private mode */ }
|
||||||
apply(saved);
|
apply(saved);
|
||||||
|
|
||||||
buttons.forEach(function (b) {
|
buttons.forEach(function (b) {
|
||||||
|
|
|
||||||
BIN
site/og-image.jpg
Normal file
|
After Width: | Height: | Size: 124 KiB |
110
site/privacy.html
Normal file
|
|
@ -0,0 +1,110 @@
|
||||||
|
<!doctype html>
|
||||||
|
<html lang="en" data-theme="light">
|
||||||
|
<head>
|
||||||
|
<meta charset="utf-8">
|
||||||
|
<meta name="viewport" content="width=device-width, initial-scale=1">
|
||||||
|
<title>Privacy Policy — Hound</title>
|
||||||
|
<meta name="description" content="Hound's privacy policy. What we collect, what we don't, and how we handle your data.">
|
||||||
|
<link rel="canonical" href="https://houndav.com/privacy">
|
||||||
|
<link rel="icon" href="/favicon.png" type="image/png">
|
||||||
|
<meta name="robots" content="index, follow">
|
||||||
|
<style>
|
||||||
|
:root {
|
||||||
|
--bg: #F7F7FB; --fg: #14141C; --dim: #55556B; --faint: #8A8AA0;
|
||||||
|
--line: #E2E2EC; --raised: #FFFFFF; --brand: #5A58C8;
|
||||||
|
--btn-bg: #5A58C8; --btn-bg-hi: #4B49B4;
|
||||||
|
}
|
||||||
|
@media (prefers-color-scheme: dark) {
|
||||||
|
:root:not([data-theme="light"]) {
|
||||||
|
--bg: #0B0E14; --fg: #E8ECF4; --dim: #8B96AB; --faint: #5A6478;
|
||||||
|
--line: #232B3A; --raised: #12161F; --brand: #9896E0;
|
||||||
|
--btn-bg: #5A58D6; --btn-bg-hi: #6B69E4;
|
||||||
|
}
|
||||||
|
}
|
||||||
|
:root[data-theme="dark"] {
|
||||||
|
--bg: #0B0E14; --fg: #E8ECF4; --dim: #8B96AB; --faint: #5A6478;
|
||||||
|
--line: #232B3A; --raised: #12161F; --brand: #9896E0;
|
||||||
|
--btn-bg: #5A58D6; --btn-bg-hi: #6B69E4;
|
||||||
|
}
|
||||||
|
* { box-sizing: border-box; margin: 0; padding: 0; }
|
||||||
|
body {
|
||||||
|
background: var(--bg); color: var(--fg);
|
||||||
|
font: 16px/1.75 "IBM Plex Sans", system-ui, sans-serif;
|
||||||
|
-webkit-font-smoothing: antialiased;
|
||||||
|
}
|
||||||
|
.wrap { max-width: 720px; margin: 0 auto; padding: 0 24px; }
|
||||||
|
a { color: var(--brand); text-decoration: none; }
|
||||||
|
a:hover { text-decoration: underline; }
|
||||||
|
h1, h2, h3 { font-family: "Space Grotesk", system-ui, sans-serif; letter-spacing: -.02em; }
|
||||||
|
h1 { font-size: 28px; margin: 56px 0 8px; }
|
||||||
|
h2 { font-size: 20px; margin: 40px 0 12px; }
|
||||||
|
p, ul { margin-bottom: 16px; }
|
||||||
|
ul { padding-left: 24px; }
|
||||||
|
li { margin-bottom: 6px; }
|
||||||
|
.updated { color: var(--faint); font-size: 14px; margin-bottom: 32px; }
|
||||||
|
.back { display: inline-block; margin: 24px 0; font-size: 14px; color: var(--dim); }
|
||||||
|
.back:hover { color: var(--fg); }
|
||||||
|
footer { border-top: 1px solid var(--line); margin-top: 56px; padding: 28px 0; color: var(--faint); font-size: 13px; }
|
||||||
|
</style>
|
||||||
|
<link rel="preconnect" href="https://fonts.googleapis.com">
|
||||||
|
<link rel="preconnect" href="https://fonts.gstatic.com" crossorigin>
|
||||||
|
<link rel="stylesheet" href="https://fonts.googleapis.com/css2?family=Space+Grotesk:wght@600;700&family=IBM+Plex+Sans:wght@400;500;600&display=swap">
|
||||||
|
</head>
|
||||||
|
<body>
|
||||||
|
<div class="wrap">
|
||||||
|
<a class="back" href="/">← Back to Hound</a>
|
||||||
|
<h1>Privacy Policy</h1>
|
||||||
|
<p class="updated">Last updated: August 21, 2026</p>
|
||||||
|
|
||||||
|
<p>Hound is built by people who care about privacy. This policy explains what data the Hound agent and the houndav.com website collect, and what they do not.</p>
|
||||||
|
|
||||||
|
<h2>1. The Hound Agent</h2>
|
||||||
|
<p>The Hound agent runs locally on your machine. It does not collect telemetry, usage analytics, or crash reports. It does not transmit the contents of your files, scan results, quarantine events, or any information about your system to us or to any third party.</p>
|
||||||
|
<p>The only network request the agent makes is fetching signed definition packs from <strong>defs.houndav.com</strong> (or a mirror you configure). These requests contain:</p>
|
||||||
|
<ul>
|
||||||
|
<li>Your IP address (visible to the server as with any HTTPS request)</li>
|
||||||
|
<li>The definition version you currently have (so the server can send only what is new)</li>
|
||||||
|
<li>The Hound agent version (sent as a User-Agent header)</li>
|
||||||
|
</ul>
|
||||||
|
<p>We do not correlate definition update requests to individual users, and we do not build profiles from them. Server access logs are retained for up to 30 days for operational purposes (debugging, abuse prevention) and then deleted.</p>
|
||||||
|
<p>You can run Hound fully offline by importing definitions from a file. In this mode, no network requests are made at all.</p>
|
||||||
|
|
||||||
|
<h2>2. The Website (houndav.com)</h2>
|
||||||
|
<p>The houndav.com website is a static site. It does not use cookies, tracking pixels, analytics services, or third-party scripts that monitor your behavior. We do not use Google Analytics, Meta Pixel, or similar tools.</p>
|
||||||
|
<p>The web server (Caddy) writes standard access logs that include your IP address, the page you requested, and your browser's User-Agent string. These logs are used solely for operational monitoring and are retained for up to 30 days.</p>
|
||||||
|
<p>The website loads fonts from Google Fonts. Google's privacy policy governs those requests.</p>
|
||||||
|
|
||||||
|
<h2>3. Downloads (dl.houndav.com)</h2>
|
||||||
|
<p>Package downloads are served as static files. The same access logging described above applies. We do not require an account, email address, or any personal information to download Hound.</p>
|
||||||
|
|
||||||
|
<h2>4. Paid Subscriptions</h2>
|
||||||
|
<p>If you purchase a Pro or Fleet subscription, we collect the information necessary to process your payment and deliver the service: your email address, billing information, and a license key tied to your account. Payment processing is handled by a third-party provider; we do not store full credit card numbers.</p>
|
||||||
|
<p>We use your email address to send you license keys, billing receipts, and critical security notices. We do not send marketing emails unless you explicitly opt in.</p>
|
||||||
|
|
||||||
|
<h2>5. What We Do Not Do</h2>
|
||||||
|
<ul>
|
||||||
|
<li>We do not sell, rent, or share your personal information with third parties for marketing purposes.</li>
|
||||||
|
<li>We do not build behavioral profiles or fingerprint your browser.</li>
|
||||||
|
<li>We do not serve ads.</li>
|
||||||
|
<li>We do not collect or transmit your scan results, file contents, or system configuration.</li>
|
||||||
|
</ul>
|
||||||
|
|
||||||
|
<h2>6. Data Retention</h2>
|
||||||
|
<p>Server access logs: up to 30 days. Subscription account data: retained while your account is active and for a reasonable period afterward as required for billing records and legal obligations. You can request deletion of your account data by contacting us.</p>
|
||||||
|
|
||||||
|
<h2>7. Your Rights</h2>
|
||||||
|
<p>Depending on your jurisdiction, you may have the right to access, correct, or delete personal data we hold about you. Because we collect very little, in most cases there is little to nothing to disclose. Contact us and we will respond within 30 days.</p>
|
||||||
|
|
||||||
|
<h2>8. Children</h2>
|
||||||
|
<p>Hound is not directed at children under 13. We do not knowingly collect personal information from children.</p>
|
||||||
|
|
||||||
|
<h2>9. Changes</h2>
|
||||||
|
<p>If we change this policy in a material way, we will update the date at the top and note the change on the website. We will not retroactively reduce your privacy protections without your consent.</p>
|
||||||
|
|
||||||
|
<h2>10. Contact</h2>
|
||||||
|
<p>For privacy questions or data requests: <a href="mailto:privacy@houndav.com">privacy@houndav.com</a></p>
|
||||||
|
|
||||||
|
</div>
|
||||||
|
<footer><div class="wrap">© 2026 Hound</div></footer>
|
||||||
|
</body>
|
||||||
|
</html>
|
||||||
116
site/terms.html
Normal file
|
|
@ -0,0 +1,116 @@
|
||||||
|
<!doctype html>
|
||||||
|
<html lang="en" data-theme="light">
|
||||||
|
<head>
|
||||||
|
<meta charset="utf-8">
|
||||||
|
<meta name="viewport" content="width=device-width, initial-scale=1">
|
||||||
|
<title>Terms of Service — Hound</title>
|
||||||
|
<meta name="description" content="Terms of service for Hound endpoint and supply-chain security software.">
|
||||||
|
<link rel="canonical" href="https://houndav.com/terms">
|
||||||
|
<link rel="icon" href="/favicon.png" type="image/png">
|
||||||
|
<meta name="robots" content="index, follow">
|
||||||
|
<style>
|
||||||
|
:root {
|
||||||
|
--bg: #F7F7FB; --fg: #14141C; --dim: #55556B; --faint: #8A8AA0;
|
||||||
|
--line: #E2E2EC; --raised: #FFFFFF; --brand: #5A58C8;
|
||||||
|
}
|
||||||
|
@media (prefers-color-scheme: dark) {
|
||||||
|
:root:not([data-theme="light"]) {
|
||||||
|
--bg: #0B0E14; --fg: #E8ECF4; --dim: #8B96AB; --faint: #5A6478;
|
||||||
|
--line: #232B3A; --raised: #12161F; --brand: #9896E0;
|
||||||
|
}
|
||||||
|
}
|
||||||
|
:root[data-theme="dark"] {
|
||||||
|
--bg: #0B0E14; --fg: #E8ECF4; --dim: #8B96AB; --faint: #5A6478;
|
||||||
|
--line: #232B3A; --raised: #12161F; --brand: #9896E0;
|
||||||
|
}
|
||||||
|
* { box-sizing: border-box; margin: 0; padding: 0; }
|
||||||
|
body {
|
||||||
|
background: var(--bg); color: var(--fg);
|
||||||
|
font: 16px/1.75 "IBM Plex Sans", system-ui, sans-serif;
|
||||||
|
-webkit-font-smoothing: antialiased;
|
||||||
|
}
|
||||||
|
.wrap { max-width: 720px; margin: 0 auto; padding: 0 24px; }
|
||||||
|
a { color: var(--brand); text-decoration: none; }
|
||||||
|
a:hover { text-decoration: underline; }
|
||||||
|
h1, h2, h3 { font-family: "Space Grotesk", system-ui, sans-serif; letter-spacing: -.02em; }
|
||||||
|
h1 { font-size: 28px; margin: 56px 0 8px; }
|
||||||
|
h2 { font-size: 20px; margin: 40px 0 12px; }
|
||||||
|
p, ul, ol { margin-bottom: 16px; }
|
||||||
|
ul, ol { padding-left: 24px; }
|
||||||
|
li { margin-bottom: 6px; }
|
||||||
|
.updated { color: var(--faint); font-size: 14px; margin-bottom: 32px; }
|
||||||
|
.back { display: inline-block; margin: 24px 0; font-size: 14px; color: var(--dim); }
|
||||||
|
.back:hover { color: var(--fg); }
|
||||||
|
footer { border-top: 1px solid var(--line); margin-top: 56px; padding: 28px 0; color: var(--faint); font-size: 13px; }
|
||||||
|
</style>
|
||||||
|
<link rel="preconnect" href="https://fonts.googleapis.com">
|
||||||
|
<link rel="preconnect" href="https://fonts.gstatic.com" crossorigin>
|
||||||
|
<link rel="stylesheet" href="https://fonts.googleapis.com/css2?family=Space+Grotesk:wght@600;700&family=IBM+Plex+Sans:wght@400;500;600&display=swap">
|
||||||
|
</head>
|
||||||
|
<body>
|
||||||
|
<div class="wrap">
|
||||||
|
<a class="back" href="/">← Back to Hound</a>
|
||||||
|
<h1>Terms of Service</h1>
|
||||||
|
<p class="updated">Last updated: August 21, 2026</p>
|
||||||
|
|
||||||
|
<p>These terms govern your use of the Hound software agent, the houndav.com website, and any related services (collectively, the "Service"). By installing, downloading, or using Hound, you agree to these terms. If you do not agree, do not use the Service.</p>
|
||||||
|
|
||||||
|
<h2>1. The Software</h2>
|
||||||
|
<p>The Hound agent is open-source software released under the <a href="https://www.apache.org/licenses/LICENSE-2.0">Apache License 2.0</a>. Your use of the agent source code is governed by that license. These terms govern the Service as a whole, including the definition feeds, paid subscriptions, website, and support.</p>
|
||||||
|
|
||||||
|
<h2>2. Free Tier</h2>
|
||||||
|
<p>The free tier provides on-demand scanning, real-time file protection, quarantine, and the MCP server at no cost and with no account required. We may change the features included in the free tier at any time. We will not retroactively remove protections from systems that already have the free tier installed without providing reasonable notice.</p>
|
||||||
|
|
||||||
|
<h2>3. Paid Subscriptions</h2>
|
||||||
|
<p>Pro and Fleet subscriptions are billed as described at the time of purchase. All fees are non-refundable except where required by applicable law. We may change pricing for future billing periods with 30 days' notice. If you cancel, your subscription remains active until the end of the current billing period.</p>
|
||||||
|
<p>Fleet subscriptions include a specified number of seats. Additional seats are billed as described at purchase. You are responsible for managing seat assignments within your organization.</p>
|
||||||
|
|
||||||
|
<h2>4. Acceptable Use</h2>
|
||||||
|
<p>You agree not to:</p>
|
||||||
|
<ul>
|
||||||
|
<li>Reverse-engineer, redistribute, or resell the signed definition packs or threat feeds</li>
|
||||||
|
<li>Use the Service to develop a competing security product that incorporates our definition data</li>
|
||||||
|
<li>Attempt to circumvent license key validation or subscription enforcement</li>
|
||||||
|
<li>Use the Service in any way that violates applicable law</li>
|
||||||
|
</ul>
|
||||||
|
<p>The open-source agent itself may be forked, modified, and redistributed under the Apache 2.0 license. This restriction applies to the proprietary definition feeds and paid services, not to the agent code.</p>
|
||||||
|
|
||||||
|
<h2>5. Definitions and Updates</h2>
|
||||||
|
<p>Definition packs are cryptographically signed. We make reasonable efforts to ensure definitions are accurate, but we do not guarantee that every malicious package, binary, or threat will be detected, or that every detection will be correct. False positives and false negatives are inherent to security software.</p>
|
||||||
|
|
||||||
|
<h2>6. Disclaimer of Warranties</h2>
|
||||||
|
<p><strong>THE SERVICE IS PROVIDED "AS IS" AND "AS AVAILABLE" WITHOUT WARRANTIES OF ANY KIND, WHETHER EXPRESS, IMPLIED, OR STATUTORY. WE DISCLAIM ALL WARRANTIES, INCLUDING WITHOUT LIMITATION WARRANTIES OF MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE, TITLE, AND NON-INFRINGEMENT.</strong></p>
|
||||||
|
<p><strong>WE DO NOT WARRANT THAT THE SERVICE WILL DETECT ALL THREATS, PREVENT ALL SECURITY INCIDENTS, OR OPERATE WITHOUT INTERRUPTION OR ERROR. NO SECURITY SOFTWARE CAN GUARANTEE COMPLETE PROTECTION. HOUND IS ONE LAYER OF A SECURITY STRATEGY, NOT A SUBSTITUTE FOR ONE.</strong></p>
|
||||||
|
|
||||||
|
<h2>7. Limitation of Liability</h2>
|
||||||
|
<p><strong>TO THE MAXIMUM EXTENT PERMITTED BY APPLICABLE LAW, IN NO EVENT SHALL HOUND, ITS DEVELOPERS, CONTRIBUTORS, OR AFFILIATES BE LIABLE FOR ANY INDIRECT, INCIDENTAL, SPECIAL, CONSEQUENTIAL, OR PUNITIVE DAMAGES, INCLUDING WITHOUT LIMITATION DAMAGES FOR LOSS OF DATA, LOSS OF PROFITS, BUSINESS INTERRUPTION, SECURITY BREACHES, OR SYSTEM DAMAGE, ARISING OUT OF OR RELATED TO YOUR USE OF OR INABILITY TO USE THE SERVICE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGES.</strong></p>
|
||||||
|
<p><strong>OUR TOTAL AGGREGATE LIABILITY FOR ALL CLAIMS RELATED TO THE SERVICE SHALL NOT EXCEED THE AMOUNT YOU PAID US IN THE TWELVE (12) MONTHS PRECEDING THE CLAIM, OR FIFTY U.S. DOLLARS ($50), WHICHEVER IS GREATER.</strong></p>
|
||||||
|
|
||||||
|
<h2>8. Indemnification</h2>
|
||||||
|
<p>You agree to indemnify and hold harmless Hound and its developers from any claims, damages, losses, or expenses (including reasonable legal fees) arising from your use of the Service, your violation of these terms, or your violation of any third-party rights.</p>
|
||||||
|
|
||||||
|
<h2>9. The Execution Gate</h2>
|
||||||
|
<p>The execution gate operates by intercepting process execution at the kernel level using fanotify. It is designed to fail open: if the Hound agent crashes, becomes unresponsive, or is stopped, pending executions are released and the system continues to operate normally. Despite this design, you acknowledge that any software operating at this level carries inherent risk, and you accept that risk by enabling the execution gate.</p>
|
||||||
|
|
||||||
|
<h2>10. Third-Party Content</h2>
|
||||||
|
<p>Hound's definition data draws from public sources including the OpenSSF Malicious Packages feed. We are not responsible for the accuracy of upstream data sources. Detection identifiers and threat names may reference third-party research; inclusion does not imply endorsement.</p>
|
||||||
|
|
||||||
|
<h2>11. Termination</h2>
|
||||||
|
<p>You may stop using the Service at any time by uninstalling the agent. We may suspend or terminate your access to paid features if you violate these terms or fail to pay applicable fees. The open-source agent will continue to function for local scanning regardless of account status.</p>
|
||||||
|
|
||||||
|
<h2>12. Changes to These Terms</h2>
|
||||||
|
<p>We may update these terms from time to time. Material changes will be noted on the website with an updated date. Continued use of the Service after changes constitutes acceptance of the revised terms.</p>
|
||||||
|
|
||||||
|
<h2>13. Governing Law</h2>
|
||||||
|
<p>These terms are governed by the laws of the State of Tennessee, United States, without regard to conflict-of-law provisions. Any disputes shall be resolved in the courts of Davidson County, Tennessee.</p>
|
||||||
|
|
||||||
|
<h2>14. Severability</h2>
|
||||||
|
<p>If any provision of these terms is found to be unenforceable, the remaining provisions continue in full force and effect.</p>
|
||||||
|
|
||||||
|
<h2>15. Contact</h2>
|
||||||
|
<p>Questions about these terms: <a href="mailto:legal@houndav.com">legal@houndav.com</a></p>
|
||||||
|
|
||||||
|
</div>
|
||||||
|
<footer><div class="wrap">© 2026 Hound</div></footer>
|
||||||
|
</body>
|
||||||
|
</html>
|
||||||