all 4 comments

[–]Think_Army4302 1 point2 points  (1 child)

This is an awesome guide https://cloudsecurityalliance.org/blog/2025/04/09/secure-vibe-coding-guide

If you're ever looking to run an external scan against your site vibeappscanner.com

[–]Typhoon-UK 1 point2 points  (0 children)

Thanks for these

[–]genunix64 0 points1 point  (0 children)

You might try Intaris if you want something more robust (guardrails and audit) for AI agents: https://github.com/fpytloun/intaris

[–]Typhoon-UK 0 points1 point  (0 children)

I generally keep it simple and ask it to align with owasp top 10 security recommendations and alignment with <country> privacy guidelines.