<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>Fimil Blog</title><description>Application security insights, product updates, and engineering deep-dives from the Fimil team.</description><link>https://fimil.dev/</link><language>en-us</language><item><title>We Open-Sourced Our Trust Center — Here&apos;s Why</title><link>https://fimil.dev/blog/we-open-sourced-our-trust-center/</link><guid isPermaLink="true">https://fimil.dev/blog/we-open-sourced-our-trust-center/</guid><description>Fimil&apos;s Trust Center is now MIT-licensed and free for any startup to fork and deploy. One config file, no backend, no CMS. Here&apos;s why we built it and how you can use it.</description><pubDate>Fri, 03 Apr 2026 00:00:00 GMT</pubDate><category>open-source</category><category>compliance</category><category>trust-center</category><category>startups</category><author>Ethan</author></item><item><title>SAST vs SCA vs Secrets Detection vs IaC Scanning: A Practical Guide</title><link>https://fimil.dev/blog/sast-sca-secrets-iac-guide/</link><guid isPermaLink="true">https://fimil.dev/blog/sast-sca-secrets-iac-guide/</guid><description>A practical breakdown of the five categories of application security testing — SAST, SCA, secrets detection, IaC scanning, and container security. What each one catches, when you need it, and how they work together.</description><pubDate>Mon, 16 Mar 2026 00:00:00 GMT</pubDate><category>guides</category><category>application-security</category><category>sast</category><category>sca</category><category>secrets-detection</category><category>iac</category><author>Fimil Team</author></item><item><title>How Fimil Orchestrates 12+ Open-Source Security Scanners</title><link>https://fimil.dev/blog/how-fimil-orchestrates-security-scanners/</link><guid isPermaLink="true">https://fimil.dev/blog/how-fimil-orchestrates-security-scanners/</guid><description>A technical deep-dive into Fimil&apos;s scanner orchestration architecture: ephemeral Docker containers, output normalization, cross-tool deduplication, and intelligent prioritization with EPSS and reachability analysis.</description><pubDate>Mon, 09 Mar 2026 00:00:00 GMT</pubDate><category>engineering</category><category>scanners</category><category>architecture</category><author>Ethan</author></item><item><title>What Is Fimil? A Unified Approach to Application Security</title><link>https://fimil.dev/blog/what-is-fimil/</link><guid isPermaLink="true">https://fimil.dev/blog/what-is-fimil/</guid><description>Fimil orchestrates 12+ open-source security scanners into a single dashboard, cutting through alert noise so your team fixes what matters. Here&apos;s why we built it and how it works.</description><pubDate>Mon, 02 Mar 2026 00:00:00 GMT</pubDate><category>product</category><category>application-security</category><category>announcement</category><author>Ethan</author></item></channel></rss>