# Security components

> 9 Security components for React, shadcn, Vue 3, Laravel Blade and HTML + Alpine.js: AccessGrants, ActiveSessions, AuditLog, CertificateMonitor, DataPrivacy, PasskeyList, TwoFactorSetup, Vault, VulnReport.

Source: https://docs.nasaqui.com/components/groups/security

- [AccessGrants](https://docs.nasaqui.com/components/access-grants): Who and what can act for you. Authorized apps and agents per workspace with their scopes and revoke, delegated agent keys, and a matrix of agents by resource with no access, read or read and write.
- [ActiveSessions](https://docs.nasaqui.com/components/active-sessions): The devices signed in to an account, with device type, IP, place and last activity, the current device first, and sign out per device or for every other device behind a confirmation.
- [AuditLog](https://docs.nasaqui.com/components/audit-log): The audit log table. Filter by actor, action, entity, channel (web, API or MCP) and dates, open a row for the field-level before and after, and set how long entries are kept.
- [CertificateMonitor](https://docs.nasaqui.com/components/cert-monitor): A TLS certificate monitor - a table of hosts with issuer, expiry date and a days-left badge that turns amber at 30 days and red at 7 or when expired, soonest first, with check again, renew and stop monitoring.
- [DataPrivacy](https://docs.nasaqui.com/components/data-privacy): Your data rights. Request a copy of your data and follow it until it is ready to download, delete the account with a grace period, and the public page that cancels a scheduled deletion.
- [PasskeyList](https://docs.nasaqui.com/components/passkey-list): Manage the passkeys on an account with a list with device hint, created and last-used dates, add through an async callback, rename in place, remove with confirmation, an unsupported-browser notice and an empty state.
- [TwoFactorSetup](https://docs.nasaqui.com/components/two-factor-setup): Presentational TOTP two-factor flow in three steps (scan the QR code or type the key, confirm a 6-digit code, save recovery codes) plus the enabled state with regenerate and disable, driven by async callbacks.
- [Vault](https://docs.nasaqui.com/components/vault): A secrets manager UI with grouped secrets, masked values fetched only on reveal or copy, auto-hide, expiry badges, add, edit and delete, and an access log.
- [VulnReport](https://docs.nasaqui.com/components/vuln-report): A vulnerability scan report - CVE counts per severity, the worst findings with the version that fixes them, the trend against the previous scan and a stacked history of the last scans.
