Skip to the content.

AI PatchLab Scans

Security scans of public repositories run with AI PatchLab, an open-source, local-first security scanner.

Every report on this page was generated locally. No source code was sent to any third party, no AI provider was contacted, and no paid API was called. AI PatchLab orchestrates Semgrep, Gitleaks, Trivy, and pip-audit, then applies deterministic remediation and confidence rules to normalize the findings.

Want this run privately against your own codebase? I do independent security review of AI agents, MCP servers, and LLM apps — work with me →. 54 scans, 11 confirmed fixes, methodology in the open.

OpenAI just launched Daybreak and Patch the Planet. Same remediation loop, opposite trade-off: their path is a cloud frontier model; this one keeps your code on your disk. Why local-first still matters →

How these scans work

Scans


About AI PatchLab

AI PatchLab is a Python CLI that produces JSON and Markdown security reports from a local repository path. It is designed for engineers and maintainers who want a real audit without sending their codebase to a cloud service.

For setup and full documentation, see the project README.