HOME / FREE REPOSITORY SCAN

Scan any public repository. No account.

Paste a public GitHub repository and Spartyx will read it the way it reads a customer's codebase — parsing each file into a syntax tree and following untrusted data through it, rather than grepping for patterns.

Public repositories only, no account needed. Nothing is stored — the scan runs and the result is returned to your browser.

WHAT IT LOOKS FOR

Injection, XSS, command execution, path traversal, hardcoded secrets and known- vulnerable dependencies — 30+ classes across 14 languages.

WHY IT IS SHALLOW

The free scan reads the first 20 files and returns the ten most severe findings. It is a sample of the engine, not a full audit.

WHAT WE KEEP

Nothing. An anonymous scan writes no record — no copy of the code, no findings, no account. Close the tab and it is gone.

Private repositories are refused here by design. To scan one, connect the GitHub App from your dashboard — it asks only for read access to the repositories you pick.