Free Scan of Posted Source (no GitHub repo required)
scan_sourceFree nittim look: committed secrets and known CVEs over posted source files. No account, no key, no nittim credits. Hard evidence only: never scores, never a production verdict. Send SOURCE files, not build output (no node_modules, no dist, no binaries).
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| name | Yes | A display label for this project, e.g. 'my-abacus-app'. Sanitized before use — no path/URL characters needed. | |
| files | Yes | The source files to audit, as { path, content }[]. Send SOURCE files, not build output (no node_modules, no dist/build, no binaries) — pre-filter before posting. At most 1000 files; the highest-priority ones (manifests, lockfiles, CI config, .env-shaped files, server-execution routes) win if you're over the internal per-audit cap. | |
| uploadGrant | No | The grant id `preview_upload` returned, once the account owner has confirmed it. Required only for a post larger than the small-upload threshold; a smaller one goes straight through. |