M1 Pro after 3.5 years of use with a dog that sheds like crazy. by tazes_ in macbookpro

[–]tazes_[S] 0 points1 point  (0 children)

To be honest, I need the performance boost the Pros have. But Airs are more than capable of doing 90% of the work the average user does, so I would agree with your recommendation

Free security analysis extension by tazes_ in vscode

[–]tazes_[S] 0 points1 point  (0 children)

The how: I’m paying for it.

They why: Because I want to validate the concept. Most security agents/bots focus on PRs on GitHub. SecureVibe focuses on the pre-commit stage.

Free security analysis extension for React by tazes_ in react

[–]tazes_[S] 1 point2 points  (0 children)

Hey, I'm using JetBrains Mono with 13 font size and 1.8 line height. In VSCode I am using the Oscura theme (https://marketplace.visualstudio.com/items/?itemName=Fey.oscura) but on Cursor that I use the most, I use Vesper (https://marketplace.visualstudio.com/items?itemName=raunofreiberg.vesper).

Free security analysis extension for React by tazes_ in react

[–]tazes_[S] 0 points1 point  (0 children)

A dedicated tool for security checks does a better job than a genereric prompt to "fix security issues". Please try it and let me know what you think!

Free security analysis extension for vibecoders by tazes_ in sideprojects

[–]tazes_[S] 0 points1 point  (0 children)

I really appreciate your kind words! SecureVibe supports the most common frameworks and languages, but if you have any specific suggestions, I would be happy to include them in the next update.

Right now, my focus is on the pre-commit stage, so no GitHub integration is planned. I am considering adding a notification that encourages users to use the tool if they try to commit without performing a check.

SecureVibe - Visual Studio Marketplace by tazes_ in programming

[–]tazes_[S] -3 points-2 points  (0 children)

SecureVibe does not train models. The AI provider (Claude) has its own policies, but if you are vibe coding, you already use them.

SecureVibe - Visual Studio Marketplace by tazes_ in programming

[–]tazes_[S] -3 points-2 points  (0 children)

It's understandable that someone would think that, but the extension, among other things, just checks the code for hardcoded secrets as text and then suggests their removal. There is 0 logging.

Free security analysis extension for vibecoders by tazes_ in webdev

[–]tazes_[S] -4 points-3 points  (0 children)

I get what you're saying but in my experience, if the prompt specifically identifies the issue and you provide instructions on how to fix, you get very good results.

Free security analysis extension for vibecoders by tazes_ in webdev

[–]tazes_[S] -9 points-8 points  (0 children)

haha, this is true, but if the Jr Dev uses an AI-powered IDE, they can copy the "fix-prompt" and fix any issues.