About Vibe App Scanner
Vibe App Scanner tests a deployed app from the outside. You enter a web address, and it checks reachable pages and endpoints for exposed secrets, database access problems such as missing row-level security on Supabase, and authentication issues, with the aim of finding gaps in apps built with AI coding tools like Lovable. A first report arrives in a few minutes and records which checks ran and any coverage limits, across security, SEO, AI search readiness and performance.
Each finding comes with evidence, such as the observed endpoint and returned data, and a priority. An Export for AI option packages the finding and the intended permissions so your coding tool can propose a change, which you review and test; the scanner does not apply fixes itself. After deployment you rescan and verify access paths such as signed out, owner and different user, and Pro includes weekly monitoring.
The first scan is free with no card and shows a score, the number of issues and a single finding in full, while paid plans unlock the full report. A lifetime deal was offered on AppSumo, and the site has scanner pages for Lovable and Supabase and a sample report.
Key features
- External scan of a live app
- Exposed secret and database access checks
- Authentication issue detection
- Evidence and priorities for each finding
- Export for AI fix guidance
- Weekly monitoring on Pro
Good fit for
- Checking a Lovable or Supabase app before launch
- Verifying a security fix after deployment
Vibe App Scanner: questions and answers
- What is Vibe App Scanner used for?
- Vibe App Scanner is an external security scanner for AI-built apps that checks a live URL for exposed secrets, database access and auth issues and exports fix evidence for your coding tool. It is a good fit for checking a Lovable or Supabase app before launch and verifying a security fix after deployment.
- Is Vibe App Scanner free?
- Yes. Vibe App Scanner has a free plan, and paid plans start at $19 per month.
- Is Vibe App Scanner open source?
- No. Vibe App Scanner is proprietary (closed-source) software and can't be self-hosted. In the Security category, open-source options include Trivy, Password Pusher and Onetime Secret.
- What are some alternatives to Vibe App Scanner?
- Vibe App Scanner competes with CheckVibe, AuditYourApp and Aikido Security.
Open-source alternatives to Vibe App Scanner
See all
Trivy
Security
Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code rep
Apache-2.0vs Snyk★ 38kPassword Pusher
Security
🔐 Securely share sensitive information with automatic expiration & deletion after a set
Apache-2.0★ 3.2k
Onetime Secret
Security
Keep passwords and other sensitive information out of your chat logs and inboxes.
MIT★ 3k
Kubescape
Security
Kubescape is an open-source Kubernetes security platform for your IDE, CI/CD pipelines, an
Apache-2.0vs Wiz★ 12k
DefectDojo
Security
Open-Source Unified Vulnerability Management, DevSecOps & ASPM
BSD-3-Clausevs Tenable★ 5k
Horusec
Security
Horusec is an open source tool that improves identification of vulnerabilities in your pro
Apache-2.0vs Checkmarx★ 1.3k
SaaS alternatives to Vibe App Scanner
See all
CheckVibe
Security
Scans live sites for security, SEO and performance issues left behind by AI coding agents
SaaS
AuditYourApp
Security
Scans Supabase projects, websites and mobile apps for exposed RLS rules, open RPCs and leaked API keys
SaaS
Aikido Security
Security
All-in-one application security platform for code, cloud and runtime scanning
SaaS
Intruder
Security
Cloud-based vulnerability scanner for external attack surface
SaaS
Snyk
Security
Developer security platform that scans code, dependencies, containers and IaC
SaaS
UseShipReady
Security
Scans a live URL for security holes, SEO gaps and launch blockers, with GitHub code scan and AI fixes
SaaS

