Commented on InsurStaq · Oct 5, 2026
Hey everyone 👋 I'm Yaman, the founder of InsurStaq. I built it because most security tools want your source code on their servers, and a lot of teams can't send it. So everything runs on your Mac. Point InsurStaq at a repository and it shows you: • attack paths an outsider could reach, down to the file and line • exposed secrets, including old ones in Git history • vulnerable dependencies and infrastructure-as-code risks • readiness evidence for SOC 2, ISO 27001, PCI DSS and OWASP ASVS You can ask it about your own code in plain English. InsurStaq's own security model, fine-tuned for security work, explains findings and drafts fixes. Nothing changes until you confirm, and every fix is re-scanned on your Mac. It needs macOS 14 or later and is built for Apple silicon. Plans start at $19/month. I'd love your feedback, especially on what it finds (or misses) in your own repos. I'm here to answer questions.