
SecretSweep - Find Leaked Secrets in Your Code
SecretSweep finds leaked API keys, passwords, and credentials across your GitHub, GitLab, and Bitbucket repositories.
@MaksimHaydwv7j · X
完整作品展
技术栈
60 projects

SecretSweep finds leaked API keys, passwords, and credentials across your GitHub, GitLab, and Bitbucket repositories.
@MaksimHaydwv7j · X

扫描AI应用的安全问题,发现泄露的密钥和身份验证漏洞。
@Sentrint · X
Made Sentrint after seeing how many vibe-coded apps ship with RLS switched off. Point it at a GitHub repo and it finds open user tables, exposed keys and auth checks that only run in the browser. Free scan is the whole scan, no card.

SecureWatch - Free website security scanner with 75+ vulnerability tests, WAF protection, SSL monitoring, and real-time alerts.
@rapidrewind0 · X
2nd link is still in development

为应用和团队安全管理密钥和环境变量。
@radimhfer · X
i'm founder of Stashbase, designed to help builders

Find security holes in your AI-built app before hackers do. StackSecured scans for exposed keys, injection flaws, CVEs and more — with copy-paste fixes.
@djdeepakjha · X
AI can build your startup in days. But who checks the security? Public configs. Weak APIs. Exposed secrets. If AI built your app, scan it before someone else does. 🔒 StackSecured — security assessment #CyberSecurity #VibeCoding #AppSecurity

生成BIP39助记词并推导加密货币钱包密钥。
@delegacy0 · X
经过实测,keystone的骰子生成助记词和 经历了coldcard被盗事件,我就想用完全自己收集熵,来生成助记词,并且要求完全可验证。所有冷钱包和app 钱包都说自己的随机数是安全的,用最高级的随机数生成器,但是我无法验证,就像coldcard使用了安全芯片,但是在最终生成助记词的时候却没有调用该芯片,所以我就想找一种能自我验证的随机数生成方式,后来看到了keystone的推文,keystone支持骰子生成,正好我有keystone钱包。 但是下一个问题,我怎么验证keystone使用骰子生成的助记词是安全的,怎么证明它用的熵就是我提供给它的那一个?之前研究过 经过实测,keystone的骰子生成助记词和 据说trust wallet也支持该功能,明天找时间再验证一下trust wallet @KeystoneWallet @KeystoneCN

用端到端加密存储和同步文件,对服务器完全隐藏。
@vaultdesk · X

上传文件立即获得可分享链接,无需注册。
@gonelf · X
So many things - dead simple way to share projects within your team - dead simple base - no backend forms - ez directory submissions - a Lego event

Accesso is a free, encrypted platform for temporary file sharing, text sharing, and URL shortening. No signup, no tracking — files and text self-destruct automatically. Share secur
@Bittuthecoder · X
Just a project

AI Cyber Shield 扫描网站安全和法律合规缺陷。
@AICybershieldTe · X
Most sites are one scan away from a very bad day. Scanned ~100 this week — exposed .env files, missing security headers, cookies set before consent (a real GDPR fine). Security + privacy + accessibility, one 90s check: #vibecoding #buildinpublic

监控 SSL 证书和网站安全,包含自动续期检测、安全头部监控和 DNS 健康检查。
@di_spivak · X

AltosTools 提供 12 个免费在线生成器,无需注册,直接在浏览器中使用。
@Oriam216 · X
Just launched AltosTools 🧰 — 12 free online generators in one place. QR codes, passwords, business names, price quotes & more. No sign-up, works on mobile, runs 100% in your browser. Try it 👉 #buildinpublic #freetools #indiehackers