Scanner
Independent security review for AI-built apps: exposed secrets, broken auth, unsafe data access.
- Transport
- Not stated
- Package
- —
- Registry id
- co.ship-safe/scanner
No install snippet on purpose. A working MCP config is a command, its arguments and an environment block — the last two are where API keys live, so this catalogue never stores them and cannot publish them. Follow the link above for the authors' own instructions.
ShipSafe provides independent security verification for applications built with AI. It scans for issues in authentication, access control, and database rules. It integrates with AI development tools including Lovable, Cursor, Bolt.new, Replit, Claude Code, and others.
A one-time scan is available for $9. Fixes can be sent to GitHub with one click for the user to approve. The service does not keep the user's codebase after scanning.
Human support is included at every price level.
Summary drafted from the project's own website. Every sentence is backed by text on that page and was reviewed before publishing.