Ross ROSS = Recommend OSS · open-source software intelligence for agents

nuvious/pam-duress

A Pluggable Authentication Module (PAM) which allows the establishment of alternate passwords that can be used to perform actions to clear sensitive data, notify IT/Security staff, close off sensitive network connections, etc if a user is coerced into giving a threat actor a password. observed · 2026-08-28

github.com/nuvious/pam-duress · C · LGPL-3.0 (copyleft) observed · 2026-08-28

Health v2 · maintenance only

74/100

  • Activity 92
  • Release rhythm 35
  • Longevity 100

Flags: no_releases

How is this computed?

round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10) — computed 2026-09-02. Adoption (stars, forks) is never an input.

  • gap_med: n/a
  • age_days: 1838
  • days_rel: n/a
  • days_push: 48
  • n_releases_24m: 0

Full methodology

Adoption not part of the score

1410 stars · 44 forks observed · 2026-08-28

What it is AI-extracted, prompt v1, taxonomy v1, 2026-08-30, confidence not recorded

A Linux Pluggable Authentication Module (PAM) that lets users configure alternate 'duress' passwords which, when used under coercion, authenticate normally while silently executing predefined scripts. These scripts can wipe sensitive data, sever network connections, or alert security staff.

Use cases

  • set up a duress password that wipes sensitive files if I'm forced to unlock my machine
  • alert IT security staff when a coerced password is entered
  • close VPN or network connections automatically during a coerced login
  • run hidden scripts on login with an alternate password on Linux
  • protect a laptop from physical coercion attacks
  • remove traces of the duress module after it triggers

When to choose

  • you need OS-level duress password protection on Linux (Debian, Arch, Red Hat)
  • you want per-user or globally configured duress scripts with signed integrity hashes
  • you need authentication to appear normal to an attacker while defensive actions run in the background

When to avoid

  • you are on macOS, Windows, or BSD rather than Linux
  • you need a GUI-based security tool rather than a PAM module configured via scripts and CLI
  • you want a full disk-encryption or endpoint-detection solution instead of a coercion-response mechanism

Facets

library · maturity active

auth security alerting plugin-system security operating-systems privacy developer-tools cli pam duress-password coercion-defense authentication c linux-pam linux

1 source

Member repositories

RepositoryRoleHealth v2
nuvious/pam-duressmain74

For agents

markdown · JSON · MCP: product_card(name="nuvious/pam-duress")

Data as of 2026-08-30T08:39:29.467469+00:00 · Report a problem