Scan a public repository

Paste a public GitHub repo URL to run 30+ OWASP checks in real time. Finds hardcoded secrets, injection risks, supply chain issues, and more — no signup, no data stored.

This is a quick online scan — a subset of VibSec’s 50+ checks. Install the CLI for comprehensive local scanning.

Public repos only. We fetch files via GitHub API — nothing is cloned or stored.

Want deeper scanning?

Install VibSec locally for 50+ checks, auto-fix suggestions, JSON output, and CI/CD integration.

curl -fsSL https://vibsec.com/install.sh | bash
Feedback