Scan any public repo
Free. No login. Results in about three minutes.
Recent scans
Showing 1–20 of 25 · refreshed just now- github.com/TauricResearch/TradingAgents·—failed3d ago
- github.com/apache/airflowF1135 findingsdone5d ago
- github.com/getsentry/sentry·—too_large5d ago
- github.com/saltstack/saltF338 findingsdone5d ago
- github.com/home-assistant/core·—too_large5d ago
- github.com/OpenHands/OpenHandsF825 findingsdone5d ago
- github.com/OpenHands/OpenHands·—failed5d ago
- github.com/OpenHands/OpenHands·—failed5d ago
- github.com/TauricResearch/TradingAgentsC13 findingsdone5d ago
- github.com/fatedier/frpF145 findingsdone5d ago
- github.com/gohugoio/hugoF214 findingsdone5d ago
- github.com/vuejs/vueF150 findingsdone6d ago
- github.com/openclaw/openclaw·—too_large6d ago
- github.com/fredzirbel/IRISD24 findingsdone11d ago
- github.com/ggml-org/llama.cppF812 findingsdone13d ago
- github.com/gin-gonic/ginF81 findingsdone14d ago
- github.com/labstack/echoC42 findingsdone14d ago
- github.com/pallets/clickD31 findingsdone14d ago
- github.com/sindresorhus/slugifyB7 findingsdone14d ago
- github.com/gorilla/muxB70 findingsdone14d ago
Threat intel · always live
Every scan enriches findings against the same intel feeds enterprise SOCs run, updated continuously.
- 1,592CISA KEVhourly
- 333,848FIRST EPSSdaily
- 668MITRE ATT&CKweekly
- 969MITRE CWEmonthly
- 482CAPECmonthly
The full security platform is on its way
The free scanner above is live today. Private-repository scanning, dashboards, and CI policy gates for teams are in active development.
Private-repo scanning
Connect GitHub, GitLab, Gitea & Codeberg and scan private repositories on every push.
Dashboards & findings
Triage, dedupe, and track findings across repos and images over time — not one-off reports.
Policy gates in CI
Fail a build or block a deploy when a scan crosses your severity, license, or secrets policy.
Scheduled & continuous scans
Re-scan on a cadence and on new CVE disclosures so regressions surface without a manual run.
SBOM & provenance
Generate and store SBOMs, sign artifacts, and keep an auditable provenance trail per image.
SSO, roles & audit
Team workspaces with SSO, role-based access, and audit-log streaming for compliance.