Skip to content

Product

Feature status

An honest view of what you can use today, what is in development and each integration's limits.

Available In development Deferred

Analyze and plan

Product Quality Diagnostic

Crawler checks UI/UX, performance, SEO, accessibility, console and network.

Available

Passive Security Diagnostic

Passive checks for headers, HTTPS, CSP, TLS, DNS and unintended exposure, plus detection of exposed secrets and credentials in the rendered HTML (API keys, tokens, passwords in attributes or scripts), masked before ever appearing in the report.

Available

Update

Dependency upgrade plan from a pasted manifest (npm, pip, Maven, Gradle, Go, NuGet, Composer, Cargo and others) or investigated directly on GitHub, with a repository readiness assessment (tests, CI, overall risk) shown inline when the project isn't ready to receive it safely.

Available

Active Security Test

Opt-in only: rate-limit checks, user-enumeration signals and a curated set of detection payloads, with a circuit breaker. Requires explicit per-project consent.

Available

Code and Dependency Analysis

Scans a connected repository (GitHub or GitLab) for known-vulnerable dependencies (CVEs), insecure code patterns, committed secrets, and misconfigurations in Dockerfiles, Terraform, and Kubernetes manifests, without touching the live site. Connecting GitHub or GitLab is required to run any diagnostic on a project.

Available

Continuous monitoring

Critical Flows

Scripted monitoring of critical journeys (login, checkout, lead forms) every 15 minutes, hourly or daily. The route inventory consolidates all completed diagnostics, the project URL and static Next.js routes inferred from GitHub or GitLab. Protected routes require a custom flow with encrypted test credentials.

Available

Plan and track

Action plans

Turns diagnostics and dependency updates into remediation checklists, can break a plan into trackable GitHub issues and can place an AI-suggested change in a reviewable GitHub/GitLab branch when an eligible file is identified.

Available

PDF and universal bridge

Export for human execution or a development AI.

Available

MCP server per project

Read the plan and update items through MCP.

Available

Plan status on the project

No separate run state — calculated on the project page by comparing the latest diagnostic against its action plans and quality gates.

Available

Connections

GitHub

OAuth connection with personal-token fallback; creates branches and pull requests, and supports code diagnostics and review tracking.

Available

GitLab

OAuth connection with personal-token fallback; creates branches and merge requests, and supports code diagnostics and review tracking.

Available

MCP and universal bridge

Lets a development tool read the plan and update its checklist without exposing a shared AI key.

Available
Feature status — MuriOps