Sentrint
Sentrint is an automated source-code security scanner for apps built with AI coding and no-code tools. It aims to give non-security experts an honest, plain-English assessment of exposed vulnerabilities and copy-paste fixes tailored to the AI tool that created the app.
At a Glance
- Non-technical founders and indie developers building with AI or no-code tools
- Developers and teams shipping AI-assisted applications
- Small SaaS teams that need automated security checks alongside code review and CI
- Apps built with Lovable, Bolt, Cursor, v0, Replit, Base44 and related platforms
AI Tools by Sentrint
(1)Sentrint
AI Security Scanner for Vibe Code
Discussions
No discussions yet
Be the first to start a discussion about Sentrint
Latest News
Published 'Six security checks you can run on your own SaaS in 15 minutes,' covering RLS, permissive policies, frontend secrets, browser-only auth, git-history secrets and webhook signatures.
Published an XSS guide explaining why AI-generated code continues to ship cross-site scripting and where it hides.
Published a v0/Next.js security checklist covering patched Next.js versions, server-side authorization, server actions, secrets, RLS, paywalls, XSS and input validation.
Published guidance on Supabase RLS, emphasizing that enabling policies does not revoke default grants and recommending explicit grants, policies and security-invoker views.
Products & Services
Reads a selected repository in an isolated job and checks application code, configuration, dependency manifests and up to three years of git history. It returns a score, letter grade, severity-ranked findings, plain-English explanations, dependency inventory and AI-reviewed fix prompts tailored to the AI builder used.
A collection of client-side utilities including a secret scanner, JWT debugger, CSP evaluator, SRI hash generator, hash generator and Base64 encoder/decoder. The secret scanner processes pasted .env/config/diff text in the browser without uploading it.
An embeddable README or website badge reflecting a repository's current scan grade; it unlocks at grade C and falls back to an unrated state if a later scan drops below C.
Market Position
Sentrint positions itself between generic static/security scanners and a full penetration test: it focuses on common vulnerabilities introduced by fast AI-assisted building, filters findings with an AI review layer, explains them for non-security specialists and produces fixes tailored to the originating AI tool. Its own documentation says it complements rather than replaces code review, CI or a human pentest.
Leadership
Founders
Gourab Dasgupta
Founder and the sole developer/operator of Sentrint; publicly described as working in OSINT and cybersecurity and as a cyber-defense analyst. He also writes Sentrint's security guidance and handles support.
Executive Team
Gourab Dasgupta
Founder and sole developer/operator
Cybersecurity and OSINT practitioner described publicly as a cyber-defense analyst; builds the product, authors its security guidance and answers customer support.
Founding Story
Sentrint was started to close the gap between AI-generated apps that work and apps that are safe. Its stated premise is that AI builders optimize for functionality, while traditional security scanners overwhelm non-specialists with jargon and noisy findings; Sentrint was created to provide an honest, plain-language read and actionable fixes for people who are not security engineers.
Business Model
Revenue Model
Freemium SaaS selling additional repository scans. The free plan provides one scan per month; Top-up is a one-time six-scan credit pack; Founder is a recurring monthly or annual subscription for 36 scans per month.
Pricing Tiers
One scan per month, no card; full findings, score, grade, README badge, fix prompt and per-finding AI fix.
One-time purchase; credits do not expire; includes full reports, fix prompts, AI fixes and expanded AI false-positive review.
36 scans per month, CSV/JSON export, full reports and fixes; cancel anytime.
36 scans per month; annual billing pays for ten months and provides twelve months of service.
Target Markets
- Non-technical founders and indie developers building with AI or no-code tools
- Developers and teams shipping AI-assisted applications
- Small SaaS teams that need automated security checks alongside code review and CI
- Apps built with Lovable, Bolt, Cursor, v0, Replit, Base44 and related platforms
- Security checks for AI-generated or no-code SaaS applications before launch
- Reviewing apps built with Lovable, Bolt, v0, Cursor, Replit, Base44 and similar tools
- Finding exposed secrets in current files and git history
- Checking database access rules, authentication, authorization, admin routes, dependencies and code paths
- Iteratively fixing vulnerabilities with an AI builder and confirming fixes by rescanning
- Adding a current security grade to a repository README