Home
Security guides
Security guides for AI-built apps.
What each AI dev tool secures by default, and what it quietly leaves to you. Pick your stack to see the real risks, fixes, and a free 30-second audit.
Is Bolt.new secure?
Bolt.new ships fast. Here's what it doesn't check.
6 top risks · 5 fixes · free audit
Is Lovable.dev secure?
Lovable builds it pretty. Did it build it locked?
6 top risks · 5 fixes · free audit
Is v0 by Vercel secure?
v0 generates beautiful UI. The security is your problem.
6 top risks · 5 fixes · free audit
Is Cursor + Claude Code secure?
Your AI editor ships your code. Did it ship your secrets?
5 top risks · 4 fixes · free audit
Is Supabase secure?
Supabase is incredible. Without RLS, it's also a public read.
5 top risks · 4 fixes · free audit
Is Firebase secure?
Firebase Security Rules are powerful — and silently wrong.
5 top risks · 4 fixes · free audit
Is Replit Agent secure?
Replit Agent ships in minutes. Production security takes hours.
5 top risks · 4 fixes · free audit
Is Windsurf secure?
Cascade builds whole features autonomously. Audit what it shipped.
5 top risks · 4 fixes · free audit
Not sure what your stack leaks?
Paste your URL for a free 30-second audit — every finding ships with an AI-ready fix prompt.
Scan your site free