opening pane
opening pane
ProofCheck
includedA vulnerability checker that runs where the work happens: dependency CVEs, leaked secrets, unsafe patterns — findings with a file, a line and a rule, never a score.
A demo of ProofCheck. A diff is scanned when its task reports done. The scanner finds a live API key committed to config, prints it as evidence — file, line, rule — and the gate holds until the key is gone.
ProofCheck runs against the working tree and every diff a task produces — dependency CVEs, leaked secrets, unsafe patterns. Findings land on the feed like any other message, so the scan is something you watch happen, not a report you remember to request.
A finding is evidence: the file, the line, the rule that matched. There is no score to round with and no grade to argue with — you read what was found and decide whether it matters.
// Rules are heuristic first. Deeper matching ships when the false-positive rate asks for it.
An open finding blocks its task the same way a failed test does, and the run panel will not round it up. Fix it or dismiss it yourself — either way the decision is on record.
All six ship together in one download.
One download, macOS or Windows. One plan, no tiers.