Alternatives
Products that do what Yikes does
Find auth gaps and leaked secrets in your vibe-coded app
- 1

- 2

- 3

- 4

- 5

- 6
- 7

Scan websites for exposed Supabase data and API leaks
Mar 2026 · leakscope.tech
- 8SI
Hey HN, TL;DR: We’ve launched a free version of our Shadow IT scanner to identify which SaaS apps are used in your company, who uses them, and if they have high-risk OAuth scopes. Philip and I went through YC with AccessOwl in 2022. We started the company because, in our previous roles, we struggled to track all the SaaS apps, users, and granted OAuth scopes. The Shadow IT scanner started as a small feature within AccessOwl, which manages SaaS vendors and user accounts centrally. But a standalone scanner would have made our lives so much easier in our previous roles. So, we thought, why not…
2024 · accessowl.io
- 9

- 10

- 11ST
Hi HN — we've built a testing framework for Supabase that spins up fast, isolated Postgres databases for each test case. It’s designed to make RLS policies easy to validate with real database state, without global test fixtures or mock auth. Features: - Instant isolated Postgres DBs per test - Automatic rollback after each test - RLS-native testing with `.setContext()` for auth simulation - Flexible seeding (SQL, CSV, JSON, JS) - Works with Jest, Mocha, and any async test runner - CI-friendly (runs cleanly in GitHub Actions) We also published example projects and a free set of tutorials:…
Nov 2025 · npmjs.com
- 12

- 13

- 14

- 15

Security scanner for Lovable, Cursor & Bolt apps
May 2026 · vibesecur.com
- 16KD
I built this after seeing multiple teams accidentally ship API keys in their frontend code. The problem: Modern web development moves fast. You're vibe-coding, shipping features, and suddenly your AWS keys are sitting in a tag visible to anyone who opens DevTools. I've personally witnessed this happen to at least 3-4 production apps in the past year alone. KeyLeak Detector runs through your site (headless browser + network interception) and checks for 50+ types of leaked secrets: AWS/Google keys, Stripe tokens, database connection strings, LLM API keys (OpenAI, Claude, etc.), JWT…
Nov 2025 · github.com
- 17

- 18

- 19

- 20

- 21

Find leaked API keys & open Supabase/Firebase in 20 seconds
Dec 2025 · securityscan.dev
- 22

- 23

- 24

Ranked by how close each launch is in meaning, then by votes. Refine with a description →