
AskLedger — Cut your AI spend, and prove the savings are real
Scan your AI bills to find waste and prove savings with tamper-evident evidence.
@askrashidkhan · X
The full gallery
Tech stack
16 projects

Scan your AI bills to find waste and prove savings with tamper-evident evidence.
@askrashidkhan · X

Monitor external attack surfaces and automatically detect security exposures and vulnerabilities.
@tugayakin34 · X
ThreatPort is an all-in-one Cyber Threat Intelligence & Attack Surface Management platform

Free website security scanner checking SSL, headers, and compliance for instant trust scores and AI-guided fixes.
@MrPenetratorTP · X
MrPenetrator helps businesses monitor their website’s trust, security and performance before problems affect their visitors.

Free SAST, DAST, and infrastructure vulnerability scanning with automated CMMC, HIPAA, SOC2, and ISO27001 compliance reports. Built for developers, security teams, and MSPs.
@AuditBastion · X
Built something worth testing? Scan it with

Website security scanner with 75+ vulnerability tests, WAF protection, SSL monitoring, and real-time alerts.
@rapidrewind0 · X
2nd link is still in development

Secure GitHub pull requests with hardware authentication and OTP verification.
jallmann · HN
> want without a PR process that requires hardware authentication or proof of presence Just curious, what do you use for this? I built OTP Guard [1] a few years ago for exactly this problem, although I haven't seen any alternatives in the space. Does GitHub have something built-in now? The original framing was more "local malware compromising your GitHub account" ... it never occurred to me that the malware could be a LLM. I really should update the page. [1] https://otpguard.com

Scan code and applications for vulnerabilities using AI-augmented security analysis.
u/swifi_ai · Reddit
After 10 years of keeping this idea alive, I finally launched my AI security platform to beta After more than 10 years of keeping this idea alive in one form or another, I finally pushed Swifi live to beta: https://swifi.ai Swifi is an AI-augmented application security platform. The goal: combine traditional security scanning with AI so teams can understand risk across code, vulnerabilities, and production context without stitching together a dozen disconnected tools. Why now? AI change

Monitor your Supabase logs for security issues like credential stuffing and exposed keys.
@DefencecorHQ · X
Your app has been live for months. Your last log check was launch day. Defencecore monitors your Supabase activity and surfaces what needs attention—so you don’t have to live in the logs. #vibecoding #ai #supabase

Find exposures in your external attack surface before intruders exploit them.
@OGVeilScan · X

One tracker shared by people and coding agents with atomic claims and prerequisite blocking.
u/Scary-Philosopher-77 · Reddit
Linear on crack! I had the issue where when I do dev work in a group, it feels like that I am moving slower when I do work alone. I tried to use linear but I still had issues with task orchestration and having to manually manage tickets created more issues. Over the course of a few month I built SiftQ which is what I wished Linear to be. It solves the pain of: Feel like you'd genuinely move faster if you just worked solo. Get overwhelmed by 100s of tickets and don't know what is

Trace, replay, and verify AI agent decisions with signed audit trails.
u/Funky_Chicken_22 · Reddit
OSS to SaaS positioning problem: when the user persona and the buyer persona are completely disjoint Founder here. Sharing a positioning problem I think a lot of OSS-to-SaaS founders hit and don't talk about publicly. Context: I have been running an OSS project (world-model-mcp) with ~2,500 monthly PyPI installs. Two weeks ago I opened up the hosted companion, Etch, at etch.systems. Launched publicly on Product Hunt at 12:00 PDT yesterday. The positioning problem: OSS user persona: in

Scan websites for security vulnerabilities with A–F grades, fix guides, and weekly monitoring alerts.
@korisecurity · X
What we have now: Vibe coding -> Vibe testing -> Vibe marketing -> Vibe users -> Vibe subscriptions. You may do all but don't Vibe Secure! Scan for those open ports, missing DKIMs or CVEs. Use a professional tool