Audits a codebase or file for exploitable vulnerabilities across injection, authorization, secrets, memory safety, deserialization, SSRF, and dependency risk, gating every candidate through six reachability and impact reviews before reporting. Not for deep crypto review or binary verification.
Deep white-box OSWE-style web app security audit via /oswe:audit (PHP, Node.js, Python, Java, .NET) — Markdown + visual HTML reports. By Laucked Security.
Pre-launch risk scanner for AI-built apps. Flags exposed secrets, copyleft-licensed dependencies, unauthenticated data endpoints, missing privacy/consent artifacts, and client-side payment handling before you ship.