momenbasel / vulnhawk
PublicAI-powered SAST scanner that finds auth bypass, IDOR, and logic bugs Semgrep/CodeQL miss. Free GitHub Action. Supports Python, JS/TS, Go, PHP, Ruby.
VulnHawk is an AI-driven tool that scans source code to detect security vulnerabilities like missing authorizations and business logic flaws that traditional pattern-matching scanners overlook.
How It Works
You hear about this friendly tool that uses smart thinking to spot hidden safety issues in your project's code that other checkers miss.
You easily install it with a quick command, and it's ready to use right away.
Link to a service like your AI account to let it think deeply about your code.
Use a free brain program on your computer for completely private checks.
Simply point it to the folder holding your project's files you want to check.
Watch as it smartly compares your code pieces to uncover missing protections and weak spots others overlook.
Get a beautiful summary with problem details, danger levels, and simple step-by-step fixes.
Now your project has caught sneaky security gaps, and you can make it check automatically whenever you update.
Star Growth
Repurpose is a Pro feature
Generate ready-to-use prompts for X threads, LinkedIn posts, blog posts, YouTube scripts, and more -- with full repo context baked in.
Unlock RepurposeSimilar repos coming soon.