| home |
| name |
text |
tagline |
actions |
| Certifai |
AI-Powered Security Compliance |
Automated SAST, SBOM, DAST, CVE monitoring, and code intelligence for your repositories |
| theme |
text |
link |
| brand |
Get Started |
/guide/getting-started |
|
| theme |
text |
link |
| alt |
Features |
/features/overview |
|
|
|
| title |
details |
| Smart Findings with AI Triage |
Every finding is triaged by an LLM that considers severity, blast radius, and codebase context. You get a confidence score, rationale, and remediation guidance -- not just raw scanner output. |
|
| title |
details |
| SBOM & License Compliance |
Full software bill of materials with dependency inventory, vulnerability tracking, license compliance analysis, and export to CycloneDX and SPDX formats. |
|
| title |
details |
| Dynamic Testing (DAST) |
Black-box security testing of live web applications and APIs. Crawls endpoints, fuzzes parameters, and detects SQL injection, XSS, SSRF, and auth bypass vulnerabilities. |
|
| title |
details |
| Code Knowledge Graph |
Interactive visualization of your codebase structure. Understand function calls, class hierarchies, and module dependencies at a glance. |
|
| title |
details |
| AI-Powered Chat |
Ask questions about your codebase using RAG-powered AI. Code is embedded and retrieved contextually to give accurate, source-referenced answers. |
|
| title |
details |
| MCP Integration |
Expose your security data to LLM tools like Claude and Cursor through the Model Context Protocol. Query findings, SBOMs, and DAST results from any MCP-compatible client. |
|
|