nowfound

Alternatives

Products that do what Caspian Security does

Context-aware security analysis for Visual Studio Code.

  1. 1

    An open source security scanner for Visual Studio Code

    2020

  2. 2
    Gammacode269

    Web and Terminal agents that scan, fix, and ship secure code

    Oct 2025

  3. 3VD

    Did you know that VSCode extensions run with full access to your system—including file system, network, and credentials? Worse, dozens of malicious extensions have already made it into the marketplace, silently compromising devices. I am a security researcher and student developer who ran into this problem myself. To help tackle this, I built a 100% free tool (no login required) that scans VSCode (and Cursor/Windsurf) extensions for: - Hidden malware and obfuscated code - Dangerous permissions and API misuse - Vulnerable dependencies and suspicious network connections Users have already…

    2025 · vscan.dev

  4. 4
    Kastra335

    Runtime authorization for Claude, Cursor, Codex and OpenClaw

    Jul 2026 · kastra.ai

  5. 5
    Koidex387

    Know if a package, extension, or AI model is actually safe

    Feb 2026 · dex.koi.security

  6. 6

    Bringing VS Code to the browser

    2021

  7. 7NV

    I built Nogic, a VSCode extension currently, because AI tools make code grow faster than developers can build a mental model by jumping between files. Exploring structure visually has been helping me onboard to unfamiliar codebases faster. It’s early and rough, but usable. Would love feedback on whether this is useful and what relationships are most valuable to visualize.

    Jan 2026 · marketplace.visualstudio.com

  8. 8

    Discuss and understand your code base from within your IDE

    2022

  9. 9
    Opengrep340

    The open source code security engine

    2025

  10. 10CC

    Dear HN community! Looking forward to hearing your feedback on ACE (assured confidential execution), technology that implements VM-based trusted execution environment (TEE) for embedded RISC-V systems with focus on a formally verified and auditable firmware. We target high-assurance systems that can benefit from compartmentalization and hardware-backed isolation. The key ingredient called security monitor (firmware) is implemented in Rust. The formal specification is defined as annotations directly in code and gets translated to Coq using RefinedRust automation. ACE design is now part of the…

    2025 · github.com

  11. 11FL

    Hi HN! We just launched Codacy Guardrails, an IDE extension with a CLI for code analysis and MCP server that enforces security & quality rules on AI-generated code in real-time. It hooks into AI coding assistants (like VS Code Agent Mode, Cursor, Windsurf), silently scanning and fixing AI-suggested code that has vulnerabilities or violates your coding standards, while the code it’s being generated. We built this because coding agents can be a double-edged sword. They do boost productivity, but can easily introduce insecure or non-compliant code. One recent research team at NYU found that 40%…

    2025

  12. 12

    Real-time security warnings inside VS Code.

    Dec 2025 · securecode.contentkit.studio

  13. 13

    VS Code in the browser for everyone

    2021

  14. 14

    VSCode Extension for Dart language code snippets

    2022

  15. 15DM

    Hi HN, I built this because I often work in coworking spaces or do screen sharing, and I've always had this fear of accidentally flashing my .env file with production secrets to the whole room (or recording). It’s a simple VS Code extension that opens .env files in a custom grid editor. It automatically masks any value longer than 6 characters so I can safely open the file to check keys without exposing the actual secrets. It runs 100% locally with zero dependencies (I know how sensitive these files are). It just reads the file, renders the grid, and saves it back as standard text. It's open…

    Jan 2026 · marketplace.visualstudio.com

  16. 16

    Extension for i18n codebases making developers life's easier

    2023

  17. 17

    A cheatsheet to help you remember keybinds for VSCode

    2020

  18. 18

    Stop Shipping Buggy Code

    Jan 2026 · securecode.contentkit.studio

  19. 19
    VELA74

    Securely execute AI-generated & untrusted code

    Jun 2026 · vela-secure.vercel.app

  20. 20CG

    There is a growing problem with VSCode extensions: - they're not sandboxed (yet) - just like double-clicking an .exe file - they don't have a permission model - they auto update - they have built-in persistence - they are installed on developer machines with high-value credentials The recent CircleCI and LastPass incidents were both suspected to originate from a compromised developer machine - which is becoming every organization's Achilles heel in terms of cyber posture So I've been working on a way to help mitigate some of these risks Right now, only an MVP of a "CLI" is available: $ code…

    2023

  21. 21

    Free enterprise grade security for your personal browser

    2023

  22. 22

    Enterprise developer security control plane around evidence

    Jul 2026 · astartis-x-codex-56avwgpnr-astartis.vercel.app

  23. 23
    Trestle54

    Stop AI-written code from leaking secrets

    Jun 2026 · trestlescan.com

  24. 24VC

    Instantly share code snippets from VS Code with shortcut. Supports all programming languages. No sign-up, no hassle. Perfect for quick code reviews, debugging, or showing off your work.

    2025 · snippetshare.dev

Ranked by how close each launch is in meaning, then by votes. Refine with a description →