ZeroPath is an AI security platform that scans code for vulnerabilities like a pentester, from auth issues to exposed secrets. With one-click patch generation, ship secure software faster and reduce risks.
Hey Product Hunt!
We're excited to introduce ZeroPath, an all-in-one product security platform driven by LLMs. We combine powerful SAST with dependency scanning, secrets detection, and IaC security to catch conventional technical vulnerabilities (like SQL injection, XSS, SSRF) and complex security issues like broken auth and business logic flaws. ZeroPath integrates seamlessly with GitHub, GitLab, and Bitbucket, providing automated security reviews and one-click patch generation in your workflow.
What sets ZeroPath apart is its contextual understanding of your codebase and focus on actionable results - no more endless false positives or manual patch writing that wastes developer time. ZeroPath learns and interprets your code's context to assess risk and generate precise fixes accurately. Plus, we've made security truly collaborative with built-in integrations for Jira, Linear, and Slack, custom reporting, and team analytics.
We've built what we wished existed since we started doing security research and engineering: a security tool that's both powerful and practical, with real-world validation from finding critical zero-days in enterprise codebases, including ones owned by Netflix, Hulu, and Salesforce. For a detailed breakdown of how ZeroPath works and our zero-day discoveries, check out our blog post: https://zeropath.com/blog/0day-d....
Have questions or need help? Join our Discord community (https://discord.gg/Whukqkw3Qr) - we're always here to help you get the most out of ZeroPath!
Report
@raphael_karger Great innovation, love the UI/UX design! Grats
@sentry_co PR scans on github are provided through Github's "checks" feature. You just install the addon, select the repositories you want scanned, and our bot replies to PRs with alerts + patches.
https://docs.github.com/en/pull-...
@will_mccall You can sign up on the site (free, no cc)--if you want to scan a private repo, you can use our GitHub app, or if it's public, you can provide any Git url :)
I've been using ZeroPath for my Open Source Invoice Builder, and it's been a game-changer in catching vulnerabilities before they become real issues. The contextual analysis and one-click patching saved me so much time compared to traditional security tools.
Hey Product Hunt!
We're excited to introduce ZeroPath, an all-in-one product security platform driven by LLMs. We combine powerful SAST with dependency scanning, secrets detection, and IaC security to catch conventional technical vulnerabilities (like SQL injection, XSS, SSRF) and complex security issues like broken auth and business logic flaws. ZeroPath integrates seamlessly with GitHub, GitLab, and Bitbucket, providing automated security reviews and one-click patch generation in your workflow.
What sets ZeroPath apart is its contextual understanding of your codebase and focus on actionable results - no more endless false positives or manual patch writing that wastes developer time. ZeroPath learns and interprets your code's context to assess risk and generate precise fixes accurately. Plus, we've made security truly collaborative with built-in integrations for Jira, Linear, and Slack, custom reporting, and team analytics.
We've built what we wished existed since we started doing security research and engineering: a security tool that's both powerful and practical, with real-world validation from finding critical zero-days in enterprise codebases, including ones owned by Netflix, Hulu, and Salesforce. For a detailed breakdown of how ZeroPath works and our zero-day discoveries, check out our blog post: https://zeropath.com/blog/0day-d....
Have questions or need help? Join our Discord community (https://discord.gg/Whukqkw3Qr) - we're always here to help you get the most out of ZeroPath!
Just tried out ZeroPath to analyze one of our git repos for vulnerabilities. I only spent a little time with it, but it already highlighted a few areas that were easy fixes for us. The feedback was pretty straightforward and helpful. Looking forward to seeing how it performs with more of our projects. Definitely worth a look if you’re into improving code security.
ZeroPath
CodeViz (YC S24)
ZeroPath
ZeroPath
DiffSense
ZeroPath
CodeViz (YC S24)
ZeroPath
CodeViz (YC S24)
ZeroPath
WeirdSpot.fyi by humit
ZeroPath
ZeroPath