45% of AI-generated code has vulnerabilities. Traditional tools miss hallucinated APIs, phantom dependencies, and compliance violations. CodeTrust catches them all.
7 analyzers detect hallucinated APIs, phantom dependencies, SQL injection, hardcoded secrets, XSS, correctness bugs, and test gaps. Catches issues that only exist because AI wrote the code.
Scan deployed apps for security headers, TLS, exposed API keys, CSRF, CORS, debug mode. Plain-English explanations + AI fix prompts. Perfect for Lovable, Bolt, Cursor apps.
6 regulatory frameworks: FCA FinProm, GDPR, HIPAA, SOC 2, ISO 27001, EU AI Act. Scan text or codebases. Generate audit evidence. Deadline-aware.
JWT + MFA (TOTP). 6 roles, 40 permissions. Organization hierarchy with teams. API key management. Brute-force protection. Audit trail on every action.
GitHub Action, CLI, MCP server for Cursor/Claude Code. SARIF export for GitHub Code Scanning. Slack, Teams, PagerDuty webhooks. Prometheus + OpenTelemetry metrics.
Trust score trends. Issue breakdown by category. Compliance posture per framework. Team leaderboards. Usage tracking. Exportable audit trail for auditors.
Install in 30 seconds. First scan in 60 seconds. No credit card required.