
BasinCheck - Oilfield Safety Audit Software
Manage oil & gas safety audits, JSA analyses, and hot work permits with offline-capable software.
@jay_cobski · X
Awesome oil and gas safety audit tool -
The full gallery
Tech stack
23 projects

Manage oil & gas safety audits, JSA analyses, and hot work permits with offline-capable software.
@jay_cobski · X
Awesome oil and gas safety audit tool -

AI-powered security auditor that scans GitHub repos to find vulnerabilities and suggest fixes.
u/uwais_ish · Reddit
Three weeks to build an AI security scanner. The scanner was the easy part. Shipped RedFlag this month. Breakdown of where the time actually went, because it was nothing like I estimated. Stack: Next.js 16, Auth.js v5, MongoDB, Stripe, OpenAI. Deployed on Vercel. What I thought would be hard: getting an LLM to find real vulnerabilities. What was actually hard: getting it to stop finding fake ones. First working version flagged 200+ issues on a clean repo. Every one plausible, most of th

AI tool that discovers hidden bugs in your application using verification analysis.
@uriel_bitton · X
As you add more features to your vibe coded app, you increase the chances for bad behaviour. The worst part is you dont know they exist Every beta user i've had try out the app told me they found a few issues they had no idea existed Find yours using

Scans your domain for security leaks in your database and tech stack without login.
popkoren · HN
I've been working in cybersecurity for a while now, and I noticed there's a lack of security awareness in the world of AI-built websites. That's exactly why I built Rowly, which does: Scans your domain exactly the way a potential attacker would, from the outside. Organizes and explains every issue found in plain language, avoiding complicated tech jargon as much as possible. Gives you a fix for every issue (or for all issues at once) in the form of a prompt, so you can copy it straight into your

A reverse proxy and circuit breaker that enforces fail-closed protection for AI agents.
varad-khoriya · HN
Loopers – Fail-closed reverse proxy and circuit breaker for AI agents

Scans live web apps for security vulnerabilities like exposed keys and open databases in 60 seconds.
@guhanvenkaty · X
Tako's free preview is live: Paste your URL, get a security verdict on your vibe-coded app in 60s. Not an AI wrapper: it fires real requests and PROVES exposure, pulling data from your open DB with no login. Scanning puts you on the early-access waitlist.

Test your AI system prompts for prompt injection, jailbreak, and information-leakage vulnerabilities.
javeria_akram1 · Product Hunt
Raven AI system prompt vulnerability scanner

AI security scanner testing live websites to find vulnerabilities and generate fix prompts.
@wraithnet0x · X
Hey developers! I just launched my agentic security scanner. This is not your basic code review that could be replaced by claude code or anything like that. It tests the live application and hand you the fix so you can secure it in time. Website: Demo⬇️

AI-powered code review tool that executes code in microVMs to detect more bugs.
u/dumbfoundded · Reddit
Ito, AI Code Review that Runs Code I've been using AI code review tools but none of them actually run code so I built one: https://www.ito.ai/ The way it works is that it uses microVMs to spin up your environment with all of the services running. Then a bunch of AI agents go and test the application to collect runtime evidence. The result is you get test cases along with evidence about whether or not the test cases pass or fail. The runtime evidence can be videos, request/response curls, db

Scan Supabase apps for security issues: leaked keys, missing RLS, and public buckets.
@urti_luca · X
Sentris finds the exposures in your Supabase app before someone else does.

Runs real exploits against your web apps, APIs, and AI features with proof of each finding.
@yedil_bek · X
Building RedRun - security testing that proves what it finds. Runs the real exploit + hands you the exact request/response: SQLi, IDOR, SSRF, XSS, JWT + AI prompt-injection. Zero false positives. Free scan → Active engine invite-only - DM for access code

Autonomous LLM-driven penetration testing console for security assessment.
Autumn-27 · GitHub
ARTEX AI 自主渗透测试系统