π Building MeshaSec β AI-powered security testing for developers
Hey everyone! π
I'm Sainadh, founder of MeshaSec.
We built MeshaSec because most security scanners weren't designed for modern development teams. They either:
β Only scan public pages
β Require security expertise to use
β Ask you to upload sensitive application data to the cloud
So we took a different approach.
MeshaSec is a local-first AI security scanner that runs entirely on your desktop.
It can:
π Scan authenticated applications using form login, OAuth, JWTs, session cookies, API headers, and even 2FA (TOTP).
π₯ Automatically test multiple user roles to uncover IDOR/BOLA, horizontal privilege escalation, and vertical privilege escalation vulnerabilities.
π€ Use a local LLM for complete privacy or your own OpenAI/Claude API key to explain findings, recommend fixes, and even create Jira tickets directly from the AI chat.
π» Keep your source code, credentials, API keys, and scan results on your machineβnothing is uploaded to our servers.
We're currently opening our Windows Beta, and I'd love to get feedback from developers, founders, DevOps engineers, and security professionals.
If you've ever wished security testing was as easy as running your tests before a release, I'd love to hear what you think.
Happy to answer any questions, discuss security workflows, or hear about the biggest pain points you face with application security.
π The Windows Beta is completely free. If you'd like early access, comment below or send me a DM, and I'd love to get you set up.
Replies