Product
Feature status
An honest view of what you can use today, what is in development and each integration's limits.
Analyze and plan
Product Quality Diagnostic
Crawler checks UI/UX, performance, SEO, accessibility, console and network.
AvailablePassive Security Diagnostic
Passive checks for headers, HTTPS, CSP, TLS, DNS and unintended exposure, plus detection of exposed secrets and credentials in the rendered HTML (API keys, tokens, passwords in attributes or scripts), masked before ever appearing in the report.
AvailableUpdate
Dependency upgrade plan from a pasted manifest (npm, pip, Maven, Gradle, Go, NuGet, Composer, Cargo and others) or investigated directly on GitHub, with a repository readiness assessment (tests, CI, overall risk) shown inline when the project isn't ready to receive it safely.
AvailableActive Security Test
Opt-in only: rate-limit checks, user-enumeration signals and a curated set of detection payloads, with a circuit breaker. Requires explicit per-project consent.
AvailableCode and Dependency Analysis
Scans a connected repository (GitHub or GitLab) for known-vulnerable dependencies (CVEs), insecure code patterns, committed secrets, and misconfigurations in Dockerfiles, Terraform, and Kubernetes manifests, without touching the live site. Connecting GitHub or GitLab is required to run any diagnostic on a project.
AvailableContinuous monitoring
Critical Flows
Scripted monitoring of critical journeys (login, checkout, lead forms) every 15 minutes, hourly or daily. The route inventory consolidates all completed diagnostics, the project URL and static Next.js routes inferred from GitHub or GitLab. Protected routes require a custom flow with encrypted test credentials.
AvailablePlan and track
Action plans
Turns diagnostics and dependency updates into remediation checklists, can break a plan into trackable GitHub issues and can place an AI-suggested change in a reviewable GitHub/GitLab branch when an eligible file is identified.
AvailablePDF and universal bridge
Export for human execution or a development AI.
AvailableMCP server per project
Read the plan and update items through MCP.
AvailablePlan status on the project
No separate run state — calculated on the project page by comparing the latest diagnostic against its action plans and quality gates.
AvailableConnections
GitHub
OAuth connection with personal-token fallback; creates branches and pull requests, and supports code diagnostics and review tracking.
AvailableGitLab
OAuth connection with personal-token fallback; creates branches and merge requests, and supports code diagnostics and review tracking.
AvailableMCP and universal bridge
Lets a development tool read the plan and update its checklist without exposing a shared AI key.
Available