Forem

SystAgProject profile picture

SystAgProject

I run VibeScan https://systagproject.github.io/vibescan-landing/ — an LLM-powered security audit for apps scaffolded by Lovable, Bolt, v0, Cursor, Replit, and Windsurf.

I Audited 21 Public Vibe-Coded Apps in 48 Hours. Here Are the 5 Patterns That Keep Showing Up.

I Audited 21 Public Vibe-Coded Apps in 48 Hours. Here Are the 5 Patterns That Keep Showing Up.

Comments
6 min read
I Ran My Own Security Audit Tool Against My Own Codebase. It Caught a Bug I'd Shipped to Main.

I Ran My Own Security Audit Tool Against My Own Codebase. It Caught a Bug I'd Shipped to Main.

Comments
4 min read
Your Supabase Edge Function Probably Has No Auth. 8 Out of 9 Vibe-Coded Apps I Scanned This Week Didn't.

Your Supabase Edge Function Probably Has No Auth. 8 Out of 9 Vibe-Coded Apps I Scanned This Week Didn't.

Comments
7 min read
I Audited 9 Vibe-Coded Apps in 24 Hours. Here Are the 5 Patterns That Show Up Every Single Time.

I Audited 9 Vibe-Coded Apps in 24 Hours. Here Are the 5 Patterns That Show Up Every Single Time.

Comments
5 min read
Your First Supabase RLS Policy, Without Exposing Your Whole Database

Your First Supabase RLS Policy, Without Exposing Your Whole Database

Comments
5 min read
The 12 Security Issues I Keep Finding in Vibe-Coded Apps (Lovable, Bolt, v0)

The 12 Security Issues I Keep Finding in Vibe-Coded Apps (Lovable, Bolt, v0)

Comments
5 min read
I ran a security audit on my own Python codebase with an LLM for $0.90. Here is what it found.

I ran a security audit on my own Python codebase with an LLM for $0.90. Here is what it found.

Comments
4 min read
loading...