Traditional SCA/SAST tools are too noisy for the AI coding era. RunSec is a local MCP server that audits your workspace in real-time. It feeds crucial security context back to Cursor or Claude, catching hardcoded API keys, vulnerable packages, and logic flaws before the commit. Zero noise, instant proof, actionable diffs.
Hi Product Hunt! 👋 I’m Ivan, an AppSec Engineer and the builder behind RunSec. After years of building enterprise DevSecOps pipelines and hunting vulnerabilities (HackTheBox Top-500 ), I got incredibly frustrated with traditional SAST/SCA tools. They generate way too much noise, and the alerts almost always come after the bad code is already committed. Now, with AI coding assistants like Cursor writing code at lightspeed, the risk of leaking secrets or pulling vulnerable dependencies is higher than ever. AI agents need native security context.That’s exactly why I built RunSec. It’s a local MCP server that acts as a real-time security guard for your AI IDE.How it works:Plug & Play: Drops right into Cursor or Claude Desktop via a quick npx command.Pre-commit Interception: Scans your workspace for hardcoded secrets and CVEs while you prompt.Zero Noise: Feeds actionable fixes directly into the chat—no massive log files.I'd love for you to try it out. Roast my code, drop your feedback, and let me know how we can make AI coding actually secure!Cheers,Ivan
Report
No reviews yetBe the first to leave a review for RunSec