Backslash Security
Integrate Backslash Platform with your IDE to detect vulnerabilities in your code, open source dependencies, and AI-assisted development environment.
Features
- AI Coding Security: Analyze AI coding risks including Model Context Protocol (MCP) servers, custom rules, and AI models
- Secure AI-Generated Code: Apply Backslash security rules to validate AI-generated code
- Software Composition Analysis (SCA): Scan manifest files for vulnerable open source dependencies
- Static Analysis (SAST): Detect security vulnerabilities and code quality issues
- Secrets Detection: Identify exposed credentials, API keys, and sensitive data in your codebase
Installation
- Open VS Code
- Go to the Extensions view (Ctrl+Shift+X / Cmd+Shift+X)
- Search for "Backslash Security"
- Click Install
Getting Started
Authentication
You'll need a Backslash account to use this extension. Choose one of the following authentication methods:
Option 1: OAuth (Recommended)
- Click the Backslash icon in the Activity Bar
- Click Sign in to Backslash
- Complete the authentication in your browser
Option 2: Personal Access Token
- Get your token from the Backslash Security portal
- Open VS Code settings (File > Preferences > Settings)
- Search for "Backslash"
- Select Personal Access Token as the authentication method
- Paste your token in the Backslash: API Key field
Running Scans
Open your project in VS Code
Click the Backslash icon in the Activity Bar
Choose the type of scan you want to run:
- Code Scan: Detect security vulnerabilities in your code
- OSS Scan: Check for vulnerable dependencies
- Secrets Scan: Find exposed credentials
- License Scan: Review open source license compliance
- Malicious Scan: Detect potentially malicious packages
- Diff Scan: Scan only files changed in your current git diff
View results in the Backslash panel with detailed findings and recommended fixes
Additional Scan Options:
- Right-click any files or folders in the Explorer and select Backslash - Scan Selected Files to scan specific items
Support
| |