RedFlag
Deep AI security audits

Your code has bugs it isn't telling you.

RedFlag runs a deep AI audit across your whole GitHub repo and returns every real vulnerability - ranked by blast radius, each with a one-click fix for Cursor, Claude, or ChatGPT.

try
See how it works
No credit card required First scan free Works with private repos
RedFlag
Security score
82/100Good
Issues
128
12284543
Repositories
24
18 scanned · 2 scanning · 4 not scanned
SQL InjectionCriticalOpen
Hardcoded API KeyHighOpen
Insecure DeserializationHighOpen
Reflected XSSMediumOpen
What it catches

Built for modern engineering teams

From leaked secrets and vulnerable dependencies to the subtle access-control and injection bugs that automated linters miss entirely.

Deep code understanding

Reasoning models read your code the way an attacker would - following data flow across files, not just pattern-matching a ruleset.

Contextual & actionable

Every finding ships with a concrete exploit scenario and a copy-paste fix prompt for Cursor, Claude, or ChatGPT.

Fast & scalable

From a repo URL to a ranked report in minutes. Scan many repos at once, or wire RedFlag straight into your CI pipeline.

Private by design

Your repository is analysed in ephemeral memory and never written to disk - only the findings are kept. Access tokens are encrypted, and you can revoke anytime.

How it works

Three steps. Zero setup.

01

Connect a repo

Sign in with GitHub and point RedFlag at any repo - public or private. Nothing to install, no config files, no CI to wire up.

02

Deep hybrid analysis

Grounded scanners catch leaked secrets and known-vulnerable dependencies. Then reasoning models read your most security-critical code.

03

Fix it fast

Get a prioritised report of every real issue. Copy a ready-made fix prompt for one finding - or all of them - into your AI assistant.

Pricing

Start free. Scale when you ship.

Free forever for public repos. Personal is free for your first month - private repos and deep scans. Team is unlimited with seats for everyone.

Free

Kick the tyres on your public code.

$0
No card required
  • 5 scans / month
  • Public repositories
  • Standard scan depth
  • Full prioritised report
  • Copy-to-AI fix prompts

Personal

For individual devs shipping real projects.

$25/mo
First month free, then $25/mo
  • First month free
  • 8 scans / month
  • Public & private repositories
  • Deep (Max) scan depth
  • Large codebases
  • Re-scan to verify fixes
Most popular

Team

Security coverage for your whole engineering team.

$250/mo
Billed monthly · cancel anytime
  • Unlimited scans
  • Up to 10 team seats
  • Everything in Personal
  • Scan many repos at once
  • CI integration + API access
  • Largest codebases
  • Priority analysis queue

All plans include the full report and copy-to-AI fixes. Cancel anytime. Compare plans →

Secure your code.
Ship with confidence.

Your first scan is free - or get Personal free for a month for private repos and deep scans. See exactly how exposed your codebase is in minutes.

Scan your repo Free scan, no card · First month of Personal free