com.project-feldspar/scan

Feldspar free repository security scan

Free deterministic security scan of public git repos: OSV.dev vulnerable deps, secrets, config lint.

0.2.0
Version
remote
Transport
2
Tools

Security review

Review passed

Reviewed 22h ago.

  • tools: 2 tools scanned
  • metadata: scanned

No findings.

Tools (2)

  • scan_repository

    Clone a public git repository and run feldspar-scan: OSV.dev advisories for pinned dependencies in lockfiles (npm, pnpm, yarn, pip/uv/poetry, Cargo, Go, Gemfile.lock, composer), secret patterns with redacted evidence, and configuration lint. Returns a JSON report with summary counts and per-finding severity, file, line, advisory id and fixed versions. Deterministic, no LLM involved. Takes 2-90 s depending on repository size.

  • audit_pricing

    Describe Project Feldspar's paid code audit (security, correctness, maintainability; three independent review passes plus consolidation and manual verification of every reported file:line), its price, turnaround, and the Stripe checkout URL. No arguments.