nowfound

Alternatives

Products that do what ZeriFlow does

Scan 80+ security vulnerabilities on any website in seconds

  1. 1

    Website security scanner for developers and AI-built apps

    Jun 2026 · zeriflow.com

  2. 2

    Free vulnerability scanner to secure your PHP code

    2023

  3. 3IM

    Yes, it's open source: https://github.com/lissy93/web-check :) Why I'm building this? There are a lot of tools out there for discovering meta and security data relating to a website, IP or server. But currently, there isn't anything that does everything, all in one place and without a paywall/ user sign up. It's still a WIP, and I'm working on a new version, with some more comprehensive checks, so any feedback would be much appreciated :)

    2024 · v1.web-check.xyz

  4. 4

    SaaS pen-testing that surpasses the level of ethical hackers

    2022

  5. 5

    World's most intelligent web app & API security scan tool

    2024

  6. 6

    Scan any LLM chatbot for vulnerabilities

    Apr 2026 · github.com

  7. 7BB

    This is a simple single-file python program that can find basic XSS (cross-site scripting) vulnerabilities in a target url. Most XSS discovery tools use a payload refelection strategy in which payloads are injected in url parameters and the GET response is inspected for places where the payload content is reflected. This is a very low precision XSS detection strategy because most reflection does not support execution. This program uses a different approach, and instead opens the target url in a browser, tests alert(...) payloads directly in the browser context, and listens for an alert being…

    2024 · github.com

  8. 8
    Probely87

    Intuitive and easy-to-use webapp vulnerability scanner

    2018

  9. 9

    Quickly scan your website and fix vulnerabilities

    2019

  10. 10KD

    I built this after seeing multiple teams accidentally ship API keys in their frontend code. The problem: Modern web development moves fast. You're vibe-coding, shipping features, and suddenly your AWS keys are sitting in a tag visible to anyone who opens DevTools. I've personally witnessed this happen to at least 3-4 production apps in the past year alone. KeyLeak Detector runs through your site (headless browser + network interception) and checks for 50+ types of leaked secrets: AWS/Google keys, Stripe tokens, database connection strings, LLM API keys (OpenAI, Claude, etc.), JWT…

    Nov 2025 · github.com

  11. 11

    Free security scan that tells you exactly how to fix it

    Jun 2026

  12. 12

    Open Source Powered Online Vulnerability Scanner

    Feb 2026 · securelic.com

  13. 13WS

    http://webscanner.tk/quickscan/ Hi! I made this project over the couse of a week to help teach myself more about Django and web app development. I am studying computer security in school and web security is one of my passions. It is a tool that helps web developers ensure that they have implemented helpful security mechanisms like HTTPOnly flags, X-Frame-Options, etc. There are hundreds of tools that offer to scan websites for things like cross-site scripting, mySQL injection, etc. This tool simply looks for information that is available via one or two GET requests (the headers, protocols,…

    2013

  14. 14

    Next-Gen WordPress security scanner. Scan DEEP. Scan FREE

    Dec 2025

  15. 15CF

    A few months ago, a friend asked me to check his WordPress site for vulnerabilities. What I found shocked me – critical flaws exposing sensitive data everywhere. That's why I built CR4SH3R: a focused tool to detect Arbitrary File Download flaws before attackers do Key Features: Lightning-fast multi-threaded scanning, Extracts credentials from exposed files (like wp-config.php), Generates actionable Excel reports, Simple GUI for one-click security checks Would love your feedback!

    2025 · github.com

  16. 16IB

    I built a GitHub app that detects it in pull requests, notifies or blocks them. Alongside it, I published a Semgrep ruleset for any stage of the CI/CD. I started this after getting frustrated by all the FUD around malicious code - lots of noise, little effort to solve it. Having said that, it's still a major attack vector - a stored RCE, with the codebase itself as the sink. Feedback is appreciated. The app, PRevent - https://github.com/apiiro/PRevent The ruleset: https://github.com/apiiro/malicious-code-ruleset The research:…

    2025 · github.com

  17. 17

    Scan any website for security flaws in one click

    Nov 2025

  18. 18

    Scan any website for leaked secrets in seconds

    Feb 2026

  19. 19
    Zenkai1

    Web vulnerability scanner for freelancers & SMBs

    May 2026 · zenkai.nl

  20. 20

    Secret scanning for shipped-too-fast websites

    Jan 2026

  21. 21

    Free website audit in 30 seconds: speed, SEO & security

    Jul 2026 · helix-code.es

  22. 22

    Autonomous AI Agent Scanner for Web Security & UI Issues

    Feb 2026 · rescanflow.com

  23. 23

    360° website security & health audit

    Jan 2026

  24. 24

    Multi-language web scanner with PDF report generation

    Jun 2026

Ranked by how close each launch is in meaning, then by votes. Refine with a description →