
完整作品展
技术栈
15 projects


扫描你的应用程序,检测泄露的 API 密钥、开放数据库和身份验证漏洞。
Nqspq
been building a security scanner for vibe-coded apps — it catches leaked API keys, open databases, logins you can bypass. tested it on a repo made for testing scanners. it caught everything — report below free if you want to check yours:

OutageDeck 监控 160+ 云服务商故障并通过邮件、Slack、Discord 或 Webhook 接收告警
@outagedeck · X
OutageDeck, outage alerts for 168 cloud vendors (AWS, Cloudflare, OpenAI, Slack), built only on their official status feeds. No crowd reports, no scraping, no false positives. Free email alerts for 5 providers + a free JSON API, no key.


测试和监控 API,获得实时见解和负载测试功能。
@SajidAbuba74138 · X
A tool for developers

扫描GitHub代码库查找安全漏洞,AI提供修复建议。
u/uwais_ish · Reddit
Three weeks to build an AI security scanner. The scanner was the easy part. Shipped RedFlag this month. Breakdown of where the time actually went, because it was nothing like I estimated. Stack: Next.js 16, Auth.js v5, MongoDB, Stripe, OpenAI. Deployed on Vercel. What I thought would be hard: getting an LLM to find real vulnerabilities. What was actually hard: getting it to stop finding fake ones. First working version flagged 200+ issues on a clean repo. Every one plausible, most of th

VibeLint 为 AI 代理提供代码检查、权限控制和审批工作流。
@RElharrak39428 · X

用 7 个扫描器扫描 Web 应用漏洞,获取 AI 修复建议和 PDF 报告。
@hexorasec · X
Paid Hexora accounts now get PDF security reports. Every finding with evidence, CVSS scores, remediation steps, and AI fix prompts, in a report you can hand to a client or keep for compliance. Live for Starter, Pro, and Max. #buildinpublic #vibecoding

AI 应用安全扫描器,检测泄露的密钥和配置问题。
thfothijn · Product Hunt
OpzyAI Finds what your AI-built app leaks — your editor fixes it

Mitsumono用AI扫描网站漏洞并快速生成修复建议。
@wraithnet0x · X
Hey developers! I just launched my agentic security scanner. This is not your basic code review that could be replaced by claude code or anything like that. It tests the live application and hand you the fix so you can secure it in time. Website: Demo⬇️

对你的网络应用和 API 运行真实漏洞测试,用完整证明展示每个安全发现。
@yedil_bek · X
Building RedRun - security testing that proves what it finds. Runs the real exploit + hands you the exact request/response: SQLi, IDOR, SSRF, XSS, JWT + AI prompt-injection. Zero false positives. Free scan → Active engine invite-only - DM for access code

分析会议记录以检测范围蔓延风险并生成警报。
@theshaunak_twit · X
ScopeShield ( A platform designed to kill scope creep for agencies and teams before it eats their margins. Built so you don’t forget scopes and stop doing unbilled work.