
Keel, Get audit-ready, and prove it.
Keel - 在一个地方管理合规控制、政策和审计证据。
@KeelGRC · X
just launched this week. It’s an SMB-friendly GRC and compliance application.
完整作品展
技术栈
20 projects

Keel - 在一个地方管理合规控制、政策和审计证据。
@KeelGRC · X
just launched this week. It’s an SMB-friendly GRC and compliance application.

免费HIPAA合规性扫描工具,检查应用程序的访问控制、加密和PHI泄露风险。
@specodeai · X
The biggest AI app builder just dropped "vibe coding" from its messaging and pivoted to "trust" and "security." The market learned what healthcare builders already knew: when the data is PHI, vibes do not pass an audit. Free HIPAA scan:

Free SAST, DAST, and infrastructure vulnerability scanning with automated CMMC, HIPAA, SOC2, and ISO27001 compliance reports. Built for developers, security teams, and MSPs.
@AuditBastion · X
Built something worth testing? Scan it with


Etch: 追踪、重放和验证AI代理的决策,提供签名审计线索。
u/Funky_Chicken_22 · Reddit
OSS to SaaS positioning problem: when the user persona and the buyer persona are completely disjoint Founder here. Sharing a positioning problem I think a lot of OSS-to-SaaS founders hit and don't talk about publicly. Context: I have been running an OSS project (world-model-mcp) with ~2,500 monthly PyPI installs. Two weeks ago I opened up the hosted companion, Etch, at etch.systems. Launched publicly on Product Hunt at 12:00 PDT yesterday. The positioning problem: OSS user persona: in

分类AI系统并生成欧盟AI法案合规文档
@Moha__niang · X

探索2020年以来的CVE趋势和漏洞严重性,按报告组织分类。
u/Secret_Appeal6271 · Reddit
Agents are more capable, and susceptible to exploits, than ever. We're working to stop this from hurting users. AI agents are starting to get real access like GitHub tokens, cloud credentials, customer data, deploy permissions. Not coincidentally, the rate of major cybersecurity incidents is rising rapidly. See for yourself: https://epoch.ai/data/cve?view=graph https://genai.owasp.org/resource/state-of-agentic-ai-security-and-governance/ My friend and I, both AI researchers, are working o

输入网站 URL 进行安全扫描,获得漏洞评分和修复建议。
@korisecurity · X
What we have now: Vibe coding -> Vibe testing -> Vibe marketing -> Vibe users -> Vibe subscriptions. You may do all but don't Vibe Secure! Scan for those open ports, missing DKIMs or CVEs. Use a professional tool

VerusCite verifies citations in academic PDFs with AI extraction and database cross-checks. Flag hallucinations and metadata mismatches before you submit.
u/andy_p_w · Reddit
VerusCite — Verify Academic Citations Tool to evaluate whether citations in academic papers can be verified, have minor errors, or are likely AI generated hallucinations. submitted by /u/andy_p_w to r/SideProject [link] [comments]

Name the U.S. State incentive programs your startup can actually apply for. Instant report for 450 NIS, no VAT. Free preview shows program count and region fit.
@dan72ros · X

用 RAG 技术研究调查最新的诈骗骗局。
u/King_Kazma · Reddit
whatsthegrift.com - a RAG research tool for today's grifters every day i feel like there's a new grift attached with some news article, which naturally birthed the idea to built something to investigate & visualize them examples: https://whatsthegrift.com/q/777063a64e512565 https://whatsthegrift.com/q/e5945d20375ed3ff and my personal favorite so far: https://whatsthegrift.com/q/f43eb30a15342d53 react (vite) + node (fastify) + brave search (retrieval) + claude haiku (extraction)

bribes.fyi - 提交和查看按部门、城市和服务级别汇总的匿名贿赂举报。
@amitranjan · X
The most useful vibe-coded app till date! Crowdsourced bribes registry