Product
A scanner that reviews your code like a security expert.
One file, a folder or the whole repo: dotation.app spots what’s wrong and explains how to fix it.
The scanner
Run a scan. We’ll tell you what smells like smoke.
You pick the scope, dotation.app combs through the code and ranks what’s wrong by severity.
- Secrets and keys left in the code
- Injections and unfiltered inputs
- Authentication and passwords
- Dependencies and pipeline
- Configuration: CORS, .env, headers
$ dotation scan src/auth.ts
criticalsrc/auth.ts:12API key hardcoded in the file
highsrc/auth.ts:27password compared without hashing
mediumsrc/auth.ts:41no limit on login attempts
hygiene 5/10
Sample output, not a real scan.
Under the hood
One rules engine, two brains.
The engine applies clear rules. The AI explains what it finds and suggests the fix. Small local model for free, bigger cloud model for Pro.
Your codea file, a folder or the repo
Rules engineopen and readable
Local AIFree · runs on your machine
Cloud AIPro · a beefier model
Open core: the engine and the base rules are open. The Pro AI and the server stay closed.
Ready to wash your code?
Join the waitlist: a single email, at launch.