Hacker Newsnew | past | comments | ask | show | jobs | submit | lorikmor's commentslogin

I played it and thought it was dumb initially but then I loved the way it was not stressing me. Interesting concept


i tried it, it didn't work


cool concept, i enjoyed playing with it


interesting, seeing such things be built from scratch


I didn't like that i need to give my email


Hi HN,

I recently launched securevibing.com, a tool designed to help indie developers catch security issues before they ship.

It does two main things:

Website Security Scan - Instantly scans your deployed site for common security issues like leaked API keys, missing HTTP headers, public environment files, etc.

SupaCheck Widget - A small script you can run to simulate authenticated users accessing your Supabase backend. It tests whether users can read or modify sensitive data like credits, has_access, or other fields, helping you catch RLS and auth misconfigurations.

I built this because I kept seeing (and making) small security mistakes that aren’t always caught until it’s too late. Would love your feedback, suggestions, or ideas on what to add next.

Thanks!


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: