VibeScan – Free client-side security scanner for AI-generated code
Client-side scanner catches hardcoded secrets in AI code—real problem, obvious solution.
Yet another secret scanner when TruffleHog and Gitleaks already dominate this space.
Python developers checking codebases for leaked secrets
TruffleHog · Gitleaks · GitHub Secret Scanning
Client-side scanner catches hardcoded secrets in AI code—real problem, obvious solution.
Smart refusal model beats reckless auto-fixers, but secret scanning is already solved ground.
Catches AI code smells ESLint misses: empty catches, hardcoded secrets, god functions.
Catches invisible Unicode tricks and RCE hooks in CLAUDE.md files.
Catches typosquatting and leaked secrets in MCP configs before deployment.
Malicious OpenClaw skill scanner, but the market for hardening OpenClaw specifically is tiny.