nowfound

Alternatives

Products that do what BreakShield CI does

Catch breaking API changes in pull requests before they ship

  1. 1

    API integration testing that remembers what breaks

    Jul 2026 · fetchsandbox.com

  2. 2OD

    Effortlessly discover API behaviour with a Chrome extension that automatically generates OpenAPI specifications in real time for any app or website.

    2023 · github.com

  3. 3
    CodiumAI327

    Generating meaningful tests for busy devs

    2023

  4. 4

    Auto-fix PRs in the cloud while you stay hands-off

    Mar 2026 · code.claude.com

  5. 5

    Develop APIs fast + automatically detect endpoints

    2025

  6. 6AG

    Hey HN! We've developed OpenAPI AutoSpec, a tool for automatically generating OpenAPI specifications from localhost network traffic. It’s designed to simplify the creation of API documentation by just using your website or service, especially useful when you're pressed for time. Documenting endpoints one by one sucks. This project originated from us needing it at our past jobs when building 3rd-party integrations. It acts as a local server proxy that listens to your application’s HTTP traffic and automatically translates this into OpenAPI 3.0 specs, documenting endpoints, requests, and…

    2024 · github.com

  7. 7

    Detect and fix IAM privilege escalations in your AWS account

    2022

  8. 8WB

    Hi, this is Mish and Sebastian. We are working on Step CI - a fully automated API testing platform for developers. Step CI works programming-language independent and for different API paradigms (REST, GraphQL, XML). Our CLI and test runner are available on GitHub (https://github.com/stepci) under the MPLv2 license. Since our last launch, Step CI is now able to generate automated tests for your API based on your OpenAPI (Swagger) spec. This saves you a lot of time as you never have to write and maintain your tests again! We would like to invite you to try our tool and give us…

    2022 · stepci.com

  9. 9

    Open sourced application to detect security vulnerabilities.

    2020

  10. 10
    Inspekt98

    AI-powered API proxy for automated debugging and security

    Mar 2026 · inspekt-api.vercel.app

  11. 11

    Detect API breaking changes before they break your app

    Mar 2026 · api-drift.com

  12. 12MS

    I noticed the growing security concerns around MCP (https://news.ycombinator.com/item?id=43600192) and built an open source tool that can detect several patterns of tool poisoning attacks, exfiltration channels and cross-origin manipulations. MCP-Shield scans your installed servers (Cursor, Claude Desktop, etc.) and shows what each tool is trying to do at the instruction level, beyond just the API surface. It catches hidden instructions that try to read sensitive files, shadow other tools' behavior, or exfiltrate data. Example of what it detects: - Hidden instructions…

    2025 · github.com

  13. 13

    Block breaking OpenAPI changes before merge

    Jul 2026 · apicontractguard.com

  14. 14

    An AI Agent that tells you why your systems break

    2025

  15. 15

    AI platform detects, fixes & eliminates API breaking changes

    2024

  16. 16

    Catch breaking API changes on every pull request.

    Jun 2026 · coderifts.com

  17. 17IB

    I built a GitHub app that detects it in pull requests, notifies or blocks them. Alongside it, I published a Semgrep ruleset for any stage of the CI/CD. I started this after getting frustrated by all the FUD around malicious code - lots of noise, little effort to solve it. Having said that, it's still a major attack vector - a stored RCE, with the codebase itself as the sink. Feedback is appreciated. The app, PRevent - https://github.com/apiiro/PRevent The ruleset: https://github.com/apiiro/malicious-code-ruleset The research:…

    2025 · github.com

  18. 18

    Catch AI-generated code regressions before production.

    Mar 2026 · breakpointai.avipilcer.com

  19. 19

    Solution for SMS Bombing

    Dec 2025

  20. 20PS

    What PII-Shield does: It's a K8s sidecar (or CLI tool) that pipes application logs, detects secrets using Shannon entropy (catching unknown keys like "sk-live-..." without predefined patterns), and redacts them deterministically using HMAC. Why deterministic? So that "pass123" always hashes to the same "[HIDDEN:a1b2c]", allowing QA/Devs to correlate errors without seeing the raw data. Key features: 1. JSON Integrity: It parses JSON, sanitizes values, and rebuilds it. It guarantees valid JSON output for your SIEM (ELK/Datadog). 2. Entropy Detection: Uses context-aware entropy…

    Feb 2026 · github.com

  21. 21GL

    I was frustrated with how bad a signal of progress through a big PR "Files viewed" was, so I made a "Lines viewed" indicator to complement it. Designed to look like a stock Github UI element - even respects light/dark theme. Runs fully locally, no API calls. Splits insertions and deletions by default, but you can also merge them into a single "lines" figure in the settings.

    Feb 2026 · chromewebstore.google.com

  22. 22

    Your API breaks. AI diagnoses. You approve recovery.

    May 2026 · pypi.org

  23. 23

    The CI gate that says no to unapproved AI code

    19d ago · linebreakapp.com

  24. 24OS

    tl;dr we released openapi.security, an online tool that performs a dozen of security tests on any given openapi/swagger-based API, with no signup or email required. You can try it here: https://openapi.security My team at Escape (YC W23) is mainly focused on securing GraphQL APIs. For this, we developed a new approach called Feedback driven API Exploration. Basically, we infer the right security tests cases to run using the specification and a carefully crafted in house graph traversal algorithm. (It's a bit long to describe here but we published a more in depth explanation of…

    2023 · openapi.security

Ranked by how close each launch is in meaning, then by votes. Refine with a description →