audit/bench
Services

Everything one audit checks

Paste a file or upload a repository — the same engine reviews both, and every finding comes back in the same structured shape.

Code ingestion

Get code in however it's easiest.

Paste code

Drop a snippet or a full file straight into the editor.

Upload a repository

Zip up a project and get a full cross-file review.

Security coverage

The security lens is checked on every audit, backed by a deterministic secrets scanner in addition to model reasoning.

SQL InjectionXSSCSRFSSRFJWT / auth issuesHardcoded secretsOWASP Top 10

Repository analysis

Beyond per-file review, a repository scan looks at how files relate to each other.

Dependency graph

Maps imports across the repository and flags circular dependencies.

Dead code

Finds files nothing imports and that aren’t entry points.

Duplicate code

Hashes normalized code blocks to surface copy-pasted logic.

Secrets scan

Regex rules for AWS keys, private keys, Slack/GitHub/Stripe tokens, and more.

Every finding, same shape

No vague warnings — every finding is structured so it's immediately actionable.

Severity
critical, high, medium, or low
Title
a short, specific summary
Description
what is wrong and why it matters
Root cause
the underlying mistake that produced it
Suggested fix
a concrete, actionable change
Example patch
a code snippet showing the fix
Confidence score
how sure the model is

See it on your own code

Get started free