cd/entity/Bandit· home entities Bandit
grep -l @bandit /news/*.json | wc -l → 13

Bandit

mentions 13 type Organization feed RSS

// recent coverage 13 mentions

03:58
2026-09-02
dev.to
ai-tools

O prompt de AppSec que eu criei achou 4 gaps de segurança

A developer created an AppSec prompt that found four security gaps in open-source projects, including an authorization flaw affecting one of 174 routes. The prompt enforces a contract that limits what…

23:04
2026-08-29
github.com
ai-tools

Show HN: VibeGuard – security linter for AI-generated code

VibeGuard v1.0.0, a security linter built specifically for AI-generated code, has been released on GitHub by developer zeroFhacker. The tool runs 47 AI-pattern rules to detect vulnerabilities commonly…

13:28
2026-08-12
github.com
developer-tools

I merged 5 Python security scanners into one deduped CLI

Velonus released an open-source CLI that merges five Python security scanners—Bandit, pip-audit, Safety, Semgrep, and detect-secrets—into a single deduplicated tool, with the core scanner and normaliz…

14:17
2026-08-05
byteiota.com
ai-tools

Claude Security Plugin: Where It Fits in Your Stack

Anthropic shipped the Claude Security Plugin for Claude Code in public beta on July 22, a multi-agent vulnerability scanner that runs in the terminal and finds bugs that rule-based tools like Semgrep …

01:14
2026-07-28
velonus.com
developer-tools

Velonus – now in beta, with AI triage and one-click fix PRs

Velonus has launched in beta, offering a developer tool that runs multiple security scanners in a single parallelized pass with AI-ranked findings and one-click fix pull requests. The tool supports Ba…

09:23
2026-07-25
getdebug.dev
ai-safety

Show HN: AI codebase analyser and auto-fixer

Getdebug CLI 0.4.0 adds Python AI-app regex prefilters for five categories (prompt-injection, unsafe-role-merge, pii-in-prompt, unbounded-stream, unsafe-tool-output), running in milliseconds with no L…

01:16
2026-07-24
promptcube3.com
developer-tools

Snyk vs BrassCoders: Dependency vs Source Scanning

A comparison of Snyk and BrassCoders shows that Snyk specializes in Software Composition Analysis (SCA) by scanning dependency files like requirements.txt to find CVEs in third-party packages, while B…

17:20
2026-07-22
dev.to
developer-tools

Scaling Vibe Coding: Why 10 Developers Need One Scanner

BrassCoders treats every developer's code the same way by running 12 static-analysis scanners and emitting the union of their findings as YAML, catching vulnerabilities that AI assistants miss. The to…

17:17
2026-07-22
dev.to
ai-safety

SQLAlchemy ORM Security: The Raw Query Escape Hatch

BrassCoders finds that AI-generated Python code using SQLAlchemy's text() function with f-strings or % formatting introduces SQL injection vulnerabilities, as the ORM's automatic parameterization is b…

17:08
2026-07-22
dev.to
developer-tools

The AI Code Review Policy Template for Engineering Teams

BrassCoders released a template for an AI code review policy designed to help engineering teams formalize their review process for AI-assisted code. The policy covers technical gates, human review req…

10:10
2026-06-13
github.com
ai-safety

Show HN: Model Due Diligence

A developer released model-due-diligence, an open-source Python CLI tool that performs static supply-chain security checks on local AI model files and repositories before they are imported into runtim…

// co-occurs with top 8 entities
// topics top 6 topics