
SecretSweep - Find Leaked Secrets in Your Code
SecretSweep finds leaked API keys, passwords, and credentials across your GitHub, GitLab, and Bitbucket repositories.
@MaksimHaydwv7j · X
The full gallery
Tech stack
60 projects

SecretSweep finds leaked API keys, passwords, and credentials across your GitHub, GitLab, and Bitbucket repositories.
@MaksimHaydwv7j · X

Find security issues in AI-built apps: exposed tables, leaked keys, and client-side auth checks.
@Sentrint · X
Made Sentrint after seeing how many vibe-coded apps ship with RLS switched off. Point it at a GitHub repo and it finds open user tables, exposed keys and auth checks that only run in the browser. Free scan is the whole scan, no card.

SecureWatch - Free website security scanner with 75+ vulnerability tests, WAF protection, SSL monitoring, and real-time alerts.
@rapidrewind0 · X
2nd link is still in development

Securely manage secrets and environments across your apps and teams.
@radimhfer · X
i'm founder of Stashbase, designed to help builders

Find security holes in your AI-built app before hackers do. StackSecured scans for exposed keys, injection flaws, CVEs and more — with copy-paste fixes.
@djdeepakjha · X
AI can build your startup in days. But who checks the security? Public configs. Weak APIs. Exposed secrets. If AI built your app, scan it before someone else does. 🔒 StackSecured — security assessment #CyberSecurity #VibeCoding #AppSecurity

Generate BIP39 mnemonic codes and derive cryptocurrency wallet keys.
@delegacy0 · X
经过实测,keystone的骰子生成助记词和 经历了coldcard被盗事件,我就想用完全自己收集熵,来生成助记词,并且要求完全可验证。所有冷钱包和app 钱包都说自己的随机数是安全的,用最高级的随机数生成器,但是我无法验证,就像coldcard使用了安全芯片,但是在最终生成助记词的时候却没有调用该芯片,所以我就想找一种能自我验证的随机数生成方式,后来看到了keystone的推文,keystone支持骰子生成,正好我有keystone钱包。 但是下一个问题,我怎么验证keystone使用骰子生成的助记词是安全的,怎么证明它用的熵就是我提供给它的那一个?之前研究过 经过实测,keystone的骰子生成助记词和 据说trust wallet也支持该功能,明天找时间再验证一下trust wallet @KeystoneWallet @KeystoneCN

Store and sync files with end-to-end encryption that keeps them hidden from the server.
@vaultdesk · X

Drop a file to get a shareable link—no signup required.
@gonelf · X
So many things - dead simple way to share projects within your team - dead simple base - no backend forms - ez directory submissions - a Lego event

Accesso is a free, encrypted platform for temporary file sharing, text sharing, and URL shortening. No signup, no tracking — files and text self-destruct automatically. Share secur
@Bittuthecoder · X
Just a project

Scan your website for security vulnerabilities and compliance gaps against GDPR and CCPA standards.
@AICybershieldTe · X
Most sites are one scan away from a very bad day. Scanned ~100 this week — exposed .env files, missing security headers, cookies set before consent (a real GDPR fine). Security + privacy + accessibility, one 90s check: #vibecoding #buildinpublic

Monitor SSL certificates and website security with continuous checks for renewal, headers, and DNS.
@di_spivak · X

Free collection of 12 online generators for QR codes, passwords, business names, quotes, and more.
@Oriam216 · X
Just launched AltosTools 🧰 — 12 free online generators in one place. QR codes, passwords, business names, price quotes & more. No sign-up, works on mobile, runs 100% in your browser. Try it 👉 #buildinpublic #freetools #indiehackers