Alternatives
Products that do what Code Police does
Simple vulnerability detector for your github repo
- 1

- 2

- 3

- 4

- 5

- 6

- 7

- 8

- 9

Audit your AI-generated app for security flaws before launch
5d ago · vibecodedetector.com
- 10

- 11PS
Hey HN, it's Farrukh and Umar. We're building listen.dev–a tool for proactive security monitoring in GitHub Actions to secure software releases from supply chain threats. Why we built this: As friends and collaborators for over a decade, we've been working on various startup ideas in dev tools and infrastructure. In 2017, while building an ML ops toolkit on Kubernetes, we got hacked. During a pilot with a fintech customer, our cluster became victim to a crypto-jacking attack. As it turned out, a dependency in our container base image contained malware (a Monero miner) which triggered inside…
2024
- 12IB
I built a GitHub app that detects it in pull requests, notifies or blocks them. Alongside it, I published a Semgrep ruleset for any stage of the CI/CD. I started this after getting frustrated by all the FUD around malicious code - lots of noise, little effort to solve it. Having said that, it's still a major attack vector - a stored RCE, with the codebase itself as the sink. Feedback is appreciated. The app, PRevent - https://github.com/apiiro/PRevent The ruleset: https://github.com/apiiro/malicious-code-ruleset The research:…
2025 · github.com
- 13

- 14GD
All— Lazy Sundays are for fun vibe coding, and this particular weekend, I decided to play around with the GitHub API. Ended up building this little app: GitHub Detective. It fetches the latest activity of a user, but in a nice way—you can filter by categories like PRs, issues, comments, etc., and easily navigate to them. You can also generate a sarcastic analysis of the user based on their activity, then download and share it with friends. :)
2025 · githubdetective.vercel.app
- 15

- 16VL
I built a CLI that detects patterns AI coding tools leave behind: empty catch blocks, hardcoded secrets, as any everywhere, comments that restate the code, god functions, SQL concatenation. 24 rules across JS/TS and Python. Zero config, runs offline, regex-based so it's fast. npx @yuvrajangadsingh/vibecheck . Also ships as a GitHub Action for inline PR annotations and standalone binaries (no Node required). Why: CodeRabbit found AI-generated PRs have 1.7x more issues than human PRs. Veracode says 45% of AI code samples have security vulnerabilities. "Vibe coding" is everywhere now…
Mar 2026 · github.com
- 17

A security scanner for Github Actions that doesn't $uck
Mar 2026
- 18IB
2024 · securelog.com
- 19

- 20

- 21
You vibe-code fast. We keep it secure.
Apr 2026 · codesafe.co.in
- 22
- 23

- 24

Ranked by how close each launch is in meaning, then by votes. Refine with a description →