Gardera SecurityFind vulnerabilities, leaked secrets, and risky dependencies in the comfort of your IDE. FeaturesDependency ScanningScan your lockfiles for known vulnerabilities. Gardera automatically downloads and runs the scan. No extra setup needed. Secrets ScanningDetect hardcoded secrets and credentials in your source files. Runs automatically every time you save, so leaked keys are caught immediately. GardWatch — Dependency Health ScoringProtect yourself from supply chain attacks. Get a health score for your dependencies when you open or modify a lockfile. Understand which packages are well-maintained and which ones are a risk. Platform FindingsConnect to the Gardera platform to browse security findings across your organization's repositories. Asset Label ManagementView and manage repository labels directly from the IDE. AI Agent IntegrationProtect your AI coding assistant from installing risky dependencies. See gardwatch.dev for setup instructions. Getting Started
Local ScansDependency and secrets scanning work out of the box. No account or API key required. Click "Scan Workspace" in the Scanners tab to get started. PlatformTo access platform features (findings, labels), add your API key:
GardWatch for AI AgentsGardWatch can run as an MCP server so your AI coding assistant checks dependencies before installing them. Set up via Claude Code OAuth or add the MCP server manually. See gardwatch.dev/docs/setup for instructions. |