Small, free tools for AI-built apps. Each one runs entirely in your browser, no account and no data leaving your machine.
Pick what your site actually uses (analytics, Stripe, Supabase, fonts) and get a ready-to-paste Content-Security-Policy header.
10 yes/no questions covering the security basics an AI-generated app commonly misses, with a fix for anything you answer no to.
Exposed a Stripe, OpenAI, AWS, or Supabase key? Exact revoke-and-rotate steps for the service in question.