
Stashbase | Secrets management for developers
Securely manage secrets and environments across all your apps and teams.
@radimhfer · X
i'm founder of Stashbase, designed to help builders
The full gallery
Tech stack
60 projects

Securely manage secrets and environments across all your apps and teams.
@radimhfer · X
i'm founder of Stashbase, designed to help builders

Practice prompt injection attacks against an AI agent across 10 levels.
Getchowned · HN
The AI Lethal Trifecta

Autonomous LLM-driven penetration testing console for security assessment.
Autumn-27 · GitHub
ARTEX AI 自主渗透测试系统

Scans live web apps for security vulnerabilities like exposed keys and open databases in 60 seconds.
@guhanvenkaty · X
Tako's free preview is live: Paste your URL, get a security verdict on your vibe-coded app in 60s. Not an AI wrapper: it fires real requests and PROVES exposure, pulling data from your open DB with no login. Scanning puts you on the early-access waitlist.

Store and manage secrets with zero-knowledge encryption and team sharing
@kkworld · X
Introducing SecureEnv. A secure, developer-first platform for managing environment variables and secrets. Simple. Secure. Built for developers. 🌐 #SecureEnv #BuildInPublic #Programming

One unified API to access 200+ AI models including Claude, GPT, and Gemini with auto-failover.
@MixRoute_ai · X

Scan GitHub repos for security vulnerabilities and code issues, then auto-fix them.
u/Still_Amphibian545 · Reddit
almost launched a side project with my api keys sitting in the repo (a week free gpt 5.6 on us) was about a day from launching a small project when i noticed my openai key was just sitting in a committed file. it had been there for weeks. no idea how i missed it. made me wonder what else was wrong that i couldn't see. turns out for vibecoded stuff it's usually the same handful of things. secrets in the repo, endpoints with no auth, a database with no access rules, no limit on the ex

Scan any URL for security vulnerabilities: JS CVEs, hidden trackers, and misconfigurations.
@oldagencydev · X
Is this still an open offer?😂I'm launching and trying to get it out there. Free no-signup security scans of any URL to catch everything including vibe-coded app issues. Then paid plans for everything up to enterprise! Already using at my other company!

Self-hosted deployment platform offering Vercel-like developer experience on your VPS.
@ohdearkk · X

Scan your website for security vulnerabilities and compliance gaps against GDPR and CCPA standards.
@AICybershieldTe · X
Most sites are one scan away from a very bad day. Scanned ~100 this week — exposed .env files, missing security headers, cookies set before consent (a real GDPR fine). Security + privacy + accessibility, one 90s check: #vibecoding #buildinpublic

Send self-destructing notes and files with zero-knowledge encryption and screenshot protection.
minpym · HN
Flashpaper – Self-destructing secret sharing with no database

Deploy AI-built tools as private team apps with authentication and permissions.
iamavalex · HN
Artifacted – private URLs for the small tools your AI builds