// ツールキット
NeoShield セキュリティツール
プラットフォーム上のすべての防御用ツールを一箇所にまとめました。アカウントなしで無料で始められます。ウェブサイトを評価する、不審なメールを解析する、トークンを監査する、アカウントの漏えいを確認する。AI支援ツールは生の情報を、優先順位が付いた説明可能で標準にマッピングされた対応へと変換します。ほとんどのツールは入力をNeoShield上で処理し保存しません。一部のツールは結果をアカウントに保存したり、AIプロバイダーを利用したりします。各ツールの処理ラベルに、何が行われるかが明記されています。
目的からツールを探す
目的別に9つのカテゴリーに分類しています。各カードには、対象プラン、想定される入力、その入力がどう処理されるかが、使う前にわかるよう記載されています。
ウェブサイトとAPIのセキュリティ
AI Vulnerability Scanner
Find misconfigurations and exposed surface on a site you own.
ツールを開く →HTTP Security Header Checker
Grade response headers and get copy-paste fixes.
ツールを開く →Exposure Check
See breach exposure and domain spoofability for an identity.
ツールを開く →Typosquat Domain Finder
Find look-alike domains that could impersonate yours.
ツールを開く →コードと設定
AI Security Code Reviewer
Find injection, broken authorization and leaked secrets in pasted code.
ツールを開く →AI Config & IaC Auditor
Audit Dockerfiles, nginx, .env, compose/K8s or Terraform.
ツールを開く →AI Patch Generator
Minimal, behaviour-preserving secure refactors with before/after diffs.
ツールを開く →AI DevSecOps Automation
Explainable CI/CD gates with an aggregated release verdict.
ツールを開く →メールとフィッシング
AI Scam & Message Checker
Decide whether a text, email or DM is a scam, and what to do next.
ツールを開く →AI Phishing Email Analyzer
Header, link and homograph analysis with a verdict and defanged links.
ツールを開く →Phishing URL Checker
Analyze a single suspicious link for phishing signals.
ツールを開く →認証情報と機密情報
JWT Security Auditor
Decode a token and flag alg=none, missing expiry and weak settings.
ツールを開く →Quantum Vault
AES-256-GCM encryption performed in server memory.
ツールを開く →Security Toolkit
Headers, DNS, TLS, IOC, hashing, JWT, CIDR and CSP in one place.
ツールを開く →脅威インテリジェンス
Threat Intelligence
Search live CVE and CISA KEV data and see required action.
ツールを開く →Threat Live
A streaming feed of current threat indicators.
ツールを開く →IP Reputation Checker
Look up the reputation and risk of an IP address.
ツールを開く →Suspicious Pattern Analyzer
Score logs and payloads for unusual, signature-less patterns.
ツールを開く →インシデント対応
AI Incident Response
A calm, structured plan: scope, contain, eradicate, recover.
ツールを開く →AI SOC Copilot
Blue-team Q&A: triage, ATT&CK mapping, detection ideas.
ツールを開く →AI Incident Report Writer
Turn incident facts into a structured, shareable report.
ツールを開く →Ransomware Readiness
Self-assess your resilience to a ransomware attack.
ツールを開く →セキュリティ運用
Team Security Center
One organization-isolated view of posture, incidents, devices and seats.
ツールを開く →AI Detection-Engineering Studio
Turn a log sample into a Sigma rule, SIEM query and test cases.
ツールを開く →AI Vulnerability Triage
De-duplicate and prioritize scanner findings for analyst review.
ツールを開く →Factory Studio
Compose and host your own defensive micro-tools from vetted primitives.
ツールを開く →暗号技術とPQC
AI PQC Analyzer
Inventory quantum-vulnerable cryptography and get a NIST migration plan.
ツールを開く →PQC Migration Suite
Org-wide crypto inventory and a phased migration pipeline.
ツールを開く →学習と備え
AI搭載ツール
AI SOC CopilotFree
Ask a Claude-powered SOC analyst for triage, MITRE mapping, and detections.
Suspicious Pattern AnalyzerFree + Pro
AI-assisted scoring of logs and payloads for suspicious, signature-less patterns.
AI Reverse EngineeringPro
Static, no-execution binary triage: capability, IOCs, next step.
AI Patch GeneratorPro
Minimal, behavior-preserving secure refactors with before/after diffs.
AI PQC AnalyzerPro
Quantum-vulnerable crypto inventory and NIST PQC migration plan.
PQC Migration SuitePro
Org-wide crypto inventory, phased NIST migration pipeline, post-quantum migration-readiness score, and an AI executive playbook.
AI DevSecOps AutomationPro
Explainable CI/CD security gates with an aggregated release verdict.
AI Security AdvisorPro
On-demand strategy, risk reviews, and roadmaps.
AI Vulnerability ScannerFree + Pro
Passively scan a site you own for misconfigurations, with AI countermeasures.
Account & Exposure CheckFree + Pro
Check breached passwords/emails and domain spoofability.
AI Incident ResponseFree + Pro
A calm, tailored "I've been hacked, what now?" plan.
AI Phishing Email AnalyzerFree
Paste a suspicious email for a verdict, red flags, and defanged links.
AI Security Code ReviewerFree
Defensive SAST: find vulnerabilities in pasted code and how to fix them.
Factory StudioPro
Compose hosted defensive micro-tools from vetted primitives.
AI Detection-Engineering StudioPro
Turn a threat or log sample into a Sigma detection rule, SIEM query, and test cases.
AI Threat-Model & Attack-Surface AnalyzerPro
STRIDE threat model from your architecture: threats, attack paths, MITRE mapping, controls, residual risk.
AI Vulnerability TriagePro
De-duplicate and prioritize nmap/nikto/ffuf findings, flagging possible duplicates and potential false positives for analyst review, with remediation.
AI Config & IaC AuditorFree
Audit Dockerfiles, nginx, .env, compose/K8s, Actions, or Terraform for misconfigurations.
AI Firewall & Exposure AuditorFree
Find internet-exposed services and risky ports in iptables/ufw/AWS security-group rules.
AI Network Traffic AnalyzerPro
Identify traffic patterns that may be consistent with C2 beaconing, port scans, and possible exfiltration in connection logs.
AI Compliance MapperPro
Gap-analysis against SOC 2, ISO 27001, Japan APPI, and GDPR with a readiness score.
AI Incident Report WriterPro
Turn incident facts into a structured report: summary, timeline, MITRE, remediation.
security.txt GeneratorFree
Generate a valid RFC 9116 security.txt, disclosure policy, and triage email.
プラットフォームとコンソール
SOC OperationsTeam
Unified console: alerts, ATT&CK/UEBA analytics, and device fleet (mobile, PC, network, IP, IoT) in one place.
Quantum VaultFree
AES-256-GCM text encryption processed in server memory — not stored or logged.
Device Agent (PWA)Free
Installable agent for lightweight endpoint signals.
Security ToolkitFree
Headers, DNS, TLS, IOC, hashing, JWT, CIDR, CSP — all in one.
Threat LiveFree
A live, streaming feed of current threat indicators.
Security AcademyFree
Hands-on SOC training with simulations and progression.
無料の単機能チェッカー
HTTP Security Header Checker
Grade a site's response headers and get copy-paste fixes.
JWT Security Auditor
Decode and audit a JSON Web Token for weak settings.
Phishing URL Checker
Analyze a single suspicious link for phishing signals.
IP Reputation Checker
Look up the reputation and risk of an IP address.
Typosquat Domain Finder
Discover look-alike domains that could impersonate yours.
Ransomware Readiness
Self-assess your resilience to a ransomware attack.
ツールを比較する
用途に合ったツールを選べるよう、他の選択肢のほうが適している場合も含めて正直に並べて比較します。
NeoShield Exposure Check vs Have I Been Pwned
Run a free exposure check →
Free JWT Security Auditor vs a JWT Decoder
Audit a JWT free →
Free Post-Quantum Crypto Inventory Tool (vs a Manual Audit)
Scan your crypto free →
SARIF Release Gate: NeoShield DevSecOps vs Custom CI Scripts
Evaluate a report free →
Static Binary Triage Online (No-Execution) vs a Sandbox Upload
Triage a file free →
Frequently asked questions
これらのセキュリティツールは無料ですか。
ほとんどのツールはアカウントなしで無料でご利用いただけます。AIを多用する一部のツールはフリーミアム形式で、通常は月1回まで無料、Proではより多くの回数をご利用いただけます。一部の高度なコンソールは有料プランに含まれます。
送信したデータは保存されますか。
これらのツールについては保存しません。入力はそのリクエストのあいだだけNeoShieldのサーバーメモリ上で解析され、保存されません。パスワードの確認にはk-匿名性を用いており、サーバーの外に出るのはハッシュの先頭5文字のみです。Quantum Vaultの暗号化は当社サーバーのメモリ上で行われ、入力されたテキストが保存・ログ記録されることはありません。一部のツールは結果をアカウントに保存したり、AIプロバイダーを利用したりします。どちらに該当するかは、各ツールの処理ラベルに記載されています。
まずどのツールから使えばよいですか。
サイトの健全性をすばやく確認するには、HTTP Security Header CheckerかAI脆弱性スキャナーをお使いください。不審なメッセージを調べるにはPhishing Email Analyzer、インシデント後の対応を計画するにはAI Incident Responseが適しています。
商用利用はできますか。
はい、公正利用の範囲内でご利用いただけます。より多くの実行回数、履歴、エクスポートが必要な場合は、Proプランでツールごとの利用枠が引き上げられます。