# Intrusion detection privacy ratings

Tools that detect attacks on a network or host.

| Name | Grade | Jurisdiction | Description |
| --- | --- | --- | --- |
| [Kismet](https://privacyratings.com/intrusion-detection/kismet/) | B (80/100) | Unknown | A wireless network detector, sniffer and wireless intrusion detection system for Wi-Fi, Bluetooth, Zigbee and other radio protocols, running on Linux and macOS. |
| [picosnitch](https://privacyratings.com/intrusion-detection/picosnitch/) | B (80/100) | Unknown | A Linux tool that monitors which programs connect to the internet and records when they connect, how much data they transfer and to where. |
| [OSSEC](https://privacyratings.com/intrusion-detection/ossec/) | D (50/100) | Unknown | An open source host-based intrusion detection system that performs log analysis, file integrity checking, rootkit detection, real-time alerting and active response. |
| [Security Onion](https://privacyratings.com/intrusion-detection/security-onion/) | D (50/100) | United States (Five Eyes) | Linux distribution for threat hunting, network security monitoring and log management that bundles tools such as Suricata, Zeek and Elasticsearch with its own web console. |
| [Suricata](https://privacyratings.com/intrusion-detection/suricata/) | D (50/100) | United States (Five Eyes) | Network intrusion detection and prevention engine and network security monitoring tool that inspects traffic against rule sets and logs protocol events and alerts. |
| [Wazuh](https://privacyratings.com/intrusion-detection/wazuh/) | D (50/100) | Unknown | Security platform for threat detection, integrity monitoring, log analysis, vulnerability detection and compliance, using agents on endpoints that report to a central server and dashboard. |
| [Snare](https://privacyratings.com/intrusion-detection/snare/) | F (20/100) | Australia (Five Eyes) | A commercial log management suite whose agents collect operating system audit and event logs and forward them to a central server for analysis and compliance reporting. |

## Criteria

- **Open source** (weight 3): Is all the source code needed to run the product public?
- **No trackers or telemetry** (weight 3): Are the website and apps free of third-party trackers, with any analytics anonymous and any telemetry off by default?
- **No ads or data sales** (weight 2): Is the product funded without advertising, ad targeting or selling user data?
- **Independent audit** (weight 2): Has an independent security or privacy audit been published within the last three years?

Source: https://privacyratings.com/intrusion-detection/
