benavlabs/vibe-check

Security checklist for vibe coded apps. AI rules file + automated audit + manual verification.

This repository also configures its own agents. See what vibe-check tells them →

110Stars on the repository
2Mods indexed here, across every type
todayLast push, which is what freshness is scored on
MITLicence, which decides whether bodies are shown

vibe-check

01

benavlabs/vibe-check

Skill Claude CodeCodex

Security audit for web apps, especially AI-built ("vibe coded") ones. Scans the running app for exposed .env/.git files, public source maps, weak CSP/HSTS/security headers, wildcard CORS, insecure cookies, and public debug/API-docs endpoints, then audits the codebase across 17 vulnerability categories (RLS, auth…

not rated 110 +3 today A 131 tokens original MIT