Find and fix web-app vulnerabilities in one command — SAST + DAST + AI, for devs who aren't security experts.
-
Updated
Sep 4, 2026 - Python
Find and fix web-app vulnerabilities in one command — SAST + DAST + AI, for devs who aren't security experts.
Pre-commit security gate for vibe coding — blocks hardcoded secrets, SQL/XSS injection & Supabase misconfigs in AI-generated code. 100% local, no LLM.
Catch hallucinated and typosquatted imports before they run. Resolves Python and JS/TS imports against stdlib, manifest, and local modules; flags slopsquatting typosquats of popular packages. Offline pre-commit gate and Claude Code skill. Stdlib only.
Scans code changes for leaked secrets and insecure config, with actionable fixes for AI agents. MCP server, docs for the leakrank-guard npm package.
To associate your repository with the ai-code-security topic, visit your repo's landing page and select "manage topics."