5 pointsby Gourabdg7 hours ago3 comments
  • Gourabdg7 hours ago
    What's under the hood, because "AI security scanner" do deserves the suspicion. We use opensource security tools (the security engine), 29 security rules that I wrote for the most patterns that show up specifically in AI-generated code : RLS, Secrets, Buckets, Auth, Mass-assignment, Webhooks, CORS, Debug, Randomness, Ownership and Vulnerable dependencies Our AI layer does two jobs and neither is finding bugs. It reviews CRITICAL and HIGH findings for false positives and it writes the fix. Everything that detects anything is deterministic.
  • Gourabdg7 hours ago
    Author here.

    You can read a full real report without signing : https://sentrint.com/sample This is the actual output, not a mockup.

  • Gourabdg7 hours ago
    [dead]