Free security and quality scanner for AI-coded apps. Paste a public GitHub repo and get a score, an issue report, and a shareable scorecard.
Public repos only. Static-analysis snapshot, not a guarantee. No “100% secure” promises, just what the scan found.
Drop in any public GitHub repository URL. No install, no sign-up.
Deterministic checks for leaked secrets, risky patterns, dependencies, and repo health.
A security and quality score, an issue report, and an image you can share or embed as a badge.
ShipSafe is a free tool that scans a public GitHub repository and returns a security and quality score, an issue report, and a shareable scorecard for AI-coded apps.
AI-generated code can ship with leaked secrets, vulnerable dependencies, and risky patterns. ShipSafe scans a public repository and reports what it finds so you can fix issues before you ship.
Paste the public repository URL into ShipSafe. It scans for hardcoded secrets and API keys, risky code patterns, and repository health, then shows the results with a score.
Scores come from deterministic static-analysis rules across security, code quality, maintainability, and documentation. The same commit always produces the same score, so results are reproducible.
Yes. Scanning a public repository is free.
No. ShipSafe reads the public repository to analyze it and stores only the score and issue metadata, not your source code. Detected secrets are masked.
Private repo scans, continuous monitoring, and auto-fix are coming. Join the waitlist to hear first.