Home · Security
Security SentinelMost scanners hand you five hundred findings and walk away. The reason nobody fixes them is not laziness: nothing says which ones can actually hurt you, and nothing ever confirms the fix worked.
$100 per month protects 25 repositories on every paid plan — and coverage is available read-only during your trial. Deep whole-repository sweeps run weekly; every protected change is checked as it lands. On Scale, verification workflows and compliance export close the loop for your auditors.
We ask for a lot of trust — read access to your source. Here is exactly how we honor it.
Analysis runs on Amazon Bedrock inside our AWS environment. Diffs are stored encrypted (KMS) in S3, transit is TLS everywhere, and your code is never used to train any model.
The GitHub App reads contents, pull requests, and metadata on repos you enable. The only write is an optional review comment on a pull request — never commits, never branches. Uninstalling revokes everything instantly.
Every row of your data is isolated with Postgres row-level security enforced at the database layer — not just application filters.
Every score traces to a stored model response and a quoted diff. When a number surprises you, click through to the exact evidence.
Runs entirely on AWS infrastructure holding SOC 2, ISO 27001, and PCI DSS attestations. Payments are handled by Stripe — card data never touches our servers.
Hard monthly AI-spend caps you configure. Export or delete your data on request. A DPA is available for teams that need one.