Features

Everything you need to ship AI-generated code safely.

🛡️ Security Scanner

One command. 30+ OWASP checks. Finds hardcoded secrets, eval patterns, supply chain risks — grouped by severity.

vibsec scan

🤖 AI Agent Fix Mode

Run vibsec scan --fix to get a copy-paste prompt that tells your AI agent exactly what to fix.

🌐 Port Monitoring

Catches databases and services exposed on 0.0.0.0. Warns before your MySQL becomes public.

🖥️ macOS Menu Bar App

Click the shield icon — see scan results, exposed ports, and audit log. Always one click away.

📝 Audit Trail

JSONL log of every scan result and finding. Full session visibility.

Feedback