
shippingszn - AI app launch readiness scanner
在发布前扫描 AI 应用的身份验证、API 和部署风险。
keeptahoeblue · HN
A pre-launch scanner for AI-built apps (it scores itself 60/100)
完整作品展
技术栈
28 projects

在发布前扫描 AI 应用的身份验证、API 和部署风险。
keeptahoeblue · HN
A pre-launch scanner for AI-built apps (it scores itself 60/100)

监控外部攻击面、检测子域名暴露、自动映射 CVE 威胁。
@tugayakin34 · X
ThreatPort is an all-in-one Cyber Threat Intelligence & Attack Surface Management platform


自动在多个平台部署应用的AI智能体。
Aarav03790 · HN
I made AI agent that deploys your thing on diff plats automaticaly

用Semfora分析代码库结构,发现变更中的风险。
u/jeremyStover · Reddit
My second paying customer bought a full year subscription. I have mentioned https://semfora.ai before, here and there on Reddit. I haven't talked much about what it really provides. I was hoping to drive up some organic traffic, from people that had the motivation to dig past the beta. Stupid idea, but now that we have passed pen tests and hit the minimum requirements check list for security audits, (see other threads about that) we opened up the beta to everyone. Two days after that(

在发布前检查AI生成内容中的错误和安全问题。
u/Brief_Dust8845 · Reddit
I pivoted from my initial idea after realizing I was solving the right problem at the wrong time When I started building GaaS Guard, it was an AI governance tool for companies. The idea was to help organizations defend against prompt injection and unsafe AI interactions. It was technically interesting, and I still genuinely believe I was solving a real problem. The problem was, it just wasn’t selling—to be brutally honest. Here’s how I actually ended up pivoting. I started using a b

探索2020年以来的CVE趋势和漏洞严重性,按报告组织分类。
u/Secret_Appeal6271 · Reddit
Agents are more capable, and susceptible to exploits, than ever. We're working to stop this from hurting users. AI agents are starting to get real access like GitHub tokens, cloud credentials, customer data, deploy permissions. Not coincidentally, the rate of major cybersecurity incidents is rising rapidly. See for yourself: https://epoch.ai/data/cve?view=graph https://genai.owasp.org/resource/state-of-agentic-ai-security-and-governance/ My friend and I, both AI researchers, are working o

部署400+开源工具到9个云提供商中任意一个。
@Dil_Lynn · X

预测设备寿终日期、安全风险和转售价值,指导升级决策。
@teck_baby · X

Komodo 为IT和MSP团队提供实时基础设施地图,整合任务、健康检查、文档和警报。
@JNRVInnovations · X

使用AI增强的安全分析扫描代码和应用漏洞。
u/swifi_ai · Reddit
After 10 years of keeping this idea alive, I finally launched my AI security platform to beta After more than 10 years of keeping this idea alive in one form or another, I finally pushed Swifi live to beta: https://swifi.ai Swifi is an AI-augmented application security platform. The goal: combine traditional security scanning with AI so teams can understand risk across code, vulnerabilities, and production context without stitching together a dozen disconnected tools. Why now? AI change

使用硬件认证和OTP保护GitHub拉取请求。
jallmann · HN
> want without a PR process that requires hardware authentication or proof of presence Just curious, what do you use for this? I built OTP Guard [1] a few years ago for exactly this problem, although I haven't seen any alternatives in the space. Does GitHub have something built-in now? The original framing was more "local malware compromising your GitHub account" ... it never occurred to me that the malware could be a LLM. I really should update the page. [1] https://otpguard.com