
Stashbase | Secrets management for developers
Securely manage secrets and environments across your apps and teams.
@radimhfer · X
i'm founder of Stashbase, designed to help builders
The full gallery
Tech stack
60 projects

Securely manage secrets and environments across your apps and teams.
@radimhfer · X
i'm founder of Stashbase, designed to help builders

Scans AI-built apps for security vulnerabilities and code quality, opens GitHub PRs with fixes.
@LaunchGuardHQ · X
I'm an HVAC installer, not a developer. Built LaunchGuard nights & weekends with AI coding tools. It scans AI-built apps for leaked API keys, wide-open databases, and vulnerable dependencies — then opens a real GitHub PR with the fix.

Analyze open-source GitHub projects for health metrics, vulnerabilities, and quality indicators.
Koimiao · V2EX
做了个小工具,可以从各个维度评估一个 GitHub 项目,想请大家拍砖 找开源项目时,我们常常会先看 Star 、README 和最近一次提交。如果你是独立开发者,正在维护自己的开源项目,也想知道怎么让自己项目更健康、被更多人看见,第一步该从哪里做起? 所以最近我做了一个小项目:TrustOSS http://trustoss.org 输入一个 GitHub 仓库链接,TrustOSS 会把这些公开信号整理成一份可读的仓库健康报告:活跃度、维护情况、社区、文档与成熟度评分;也可以进一步查看漏洞、CI 、真实依赖者、维护者集中度和 Star 异常情况。 想要评估一个开源项目,或者维护自己的开源项目,想知道短板在哪里,都可以直接试试(是免费的!

Automated security audits for GitHub repositories to catch secrets, auth issues, and deployment problems.
@emanueldev4 · X
Building Preflight a simple way to catch issues before your website goes live.

Scans code diffs for security secrets and code quality issues.
@RepoMend02 · X
Vibe-coded your MVP in a weekend? Cute. RepoMend reads every diff and hunts the secrets your AI forgot to redact. The auditor the AI forgot to build.

Audit AI-built applications for security vulnerabilities and receive proof of findings.
u/mrtrly · Reddit
I asked ChatGPT 20 different ways who could fix a half-built app. It never named my company once. I do codebase rescue for founders in exactly that spot, so that one stung. There are already plenty of tools that measure this kind of AI visibility, a CDN even ships one free, so I built mine mostly to see my own number, and it confirmed the bad news: near zero. The measuring turned out to be the easy part. What none of the tools do, and what I actually care about, is the fix: getting the mode

Check company legitimacy by analyzing WHOIS, SSL, DNS, and trust signals to get a trust score.
@CoderJiii · X
🚀 Just launched Veris — a platform that helps verify company legitimacy using WHOIS, SSL, website, contact, social, and legal checks to generate a Trust Score & Risk Level. 🌐 #BuildInPublic #OpenSource #FullStack #React #NodeJS

Find security holes in your AI-built app before hackers do. StackSecured scans for exposed keys, injection flaws, CVEs and more — with copy-paste fixes.
@djdeepakjha · X
AI can build your startup in days. But who checks the security? Public configs. Weak APIs. Exposed secrets. If AI built your app, scan it before someone else does. 🔒 StackSecured — security assessment #CyberSecurity #VibeCoding #AppSecurity

Secure AI agent actions with code checks, permission gates, and approval workflows.
@RElharrak39428 · X

Add authentication to your app with passkeys, SSO, and MFA via MonoCloud's developer platform.
roguetink · Product Hunt
MonoCloud for Startups One identity layer for your customers, APIs, and agents

Check AI agent outputs and actions against your policies before execution; get allow, block, rewrite, or escalate decisions.
u/danielbaker06072001 · Reddit
Most AI agent SaaS is just bad security with a nice dashboard Give a new employee access to Stripe, GitHub, Slack, and your CRM on day one, and you’d call it reckless. Give the same access to an AI agent, and we call it “autonomous.” That isn’t innovation. It’s skipping basic security because the demo looks cool. Full disclosure: I’m building TrustLoopGuard around this problem, so I’m obviously biased. While testing one MCP connection, I realized I had decided what the agent could a

Checks apps for production-readiness issues like security, functionality, and reliability.
u/jjd921 · Reddit
Production readiness checker With AI coding and the low barrier to entry now I see a ton of people publishing apps with serious issues. I tried to build something to help with this. It’s a tool that checks apps for production-readiness issues (security, functionality, reliability, accessibility, etc.) and creates a GitHub PR with the fixes. Automatic scans on every push/PR and deterministic auto-fixes are completely free. Do you see something like this being useful?: https://theslopstopper.c