VulX Watch gave us something we were missing: confidence that our code was still safe after it shipped. A lot of our repo was written with AI tools, and while those tools are great at producing code, they are not reliable at checking their own work.
Setup was straightforward, and once GitHub was connected, VulX Watch kept scanning the codebase as new vulnerabilities emerged. That ongoing monitoring is the main value for us. We do not have a dedicated security team, so having an automated second pair of eyes has made security much easier to manage.
It is simple, low-maintenance, and genuinely useful for small teams shipping quickly.
If you have any questions or feedback I would love to hear it and will try to answer as quickly as possible thank you again for being here
@ngotomek Super clean landing page! How do notifications work once a vulnerability is found? Can we route alerts to Slack or Email...
@priya_kushwaha1 Right now it's email only. When a new CVE lands on a package your app depends on you get a digest from watch@vulx.ai, we check twice a day and dedupe, so no repeat pings. Findings from the code scan itself live in the dashboard. And I completely forgot about Slack if it would be included would you prefer it to be rollups daily or every finding. Open to any suggestions you might have regarding how it should look like.
@ngotomek sounds great, I think daily rollups would work best for most users, with an option to switch to instant alerts for critical vulnerabilities. all the best for your launch🙌
@priya_kushwaha1 Ok sounds good will add this to next rollout list should. This should be live by next week
Ansy.ai
This solves a very real problem, especially for small teams shipping AI-generated code without a dedicated security function. Continuous re-checking as new vulnerabilities emerge is far more valuable than a one-time scan. The positioning around "your model can’t audit itself" is sharp and easy to understand.
Great product.
@chirag_chamoli Thanks means a lot, and you named the exact reason we built it. The "small team shipping AI code with no security function" is precisely who gets left out. Real security tooling is priced for companies with a security budget and those are the people who need it just as much. Appreciate you taking the time 🙏
Lancepilot
Sounds very interesting, worth trying as i do vibe coding a lot!
@istiakahmad Thanks a lot. That's exactly what we're going for, letting people build as much as they want, free for now, with the guarantee that whatever you vibe-code gets an independent verification. So you don't have to worry as much about what your AI is producing. Thank you again for this comment and if you have any suggestions on improvements please let us know
Acti
With the increase of vibe coders and recent surge of vulnerabilities in many packages and libraries, tools like VulX are much needed, excited to try it out
@kisekiya Thanks 🙏 That surge is what we are going after, more people shipping faster with less ability to verify it. It's free, so give it a run and let me know what you think
Pythagora
Congrats on the launch of VulX Watch! This is a thoughtful idea and I’m excited to see where it goes. 🙌
@leon_ostrez Thank you, appreciate the words of support. Any suggestions for improvement?