
ship-safe v9.7.5
AI द्वारा लिखे गए सॉफ़्टवेयर के लिए स्वतंत्र सुरक्षा एजेंट। समस्याएँ ढूँढता है, जाँचता है कि वे वास्तविक हैं या नहीं, और आपको प्रमाण दिखाता है। नियतात्मक कोर, किसी API कुंजी की आवश्यकता नहीं, JSON और SARIF आउटपुट।
AI द्वारा लिखे गए सॉफ़्टवेयर के लिए स्वतंत्र सुरक्षा एजेंट। यह समस्याओं को ढूँढता है, जाँचता है कि वे वास्तविक हैं या नहीं, और आपको प्रमाण दिखाता है।
वेबसाइट · दस्तावेज़ · सुरक्षा और डेटा प्रवाह · बेंचमार्क · मूल्य निर्धारण · ब्लॉग · योगदान करें
Ship Safe CLI
Ship Safe आपके रेपो में स्थानीय रूप से चलता है और दो परतों में काम करता है।
एक नियतात्मक इंजन एप्लिकेशन कोड, AI एजेंट, MCP कॉन्फ़िग, प्रॉम्प्ट, निर्भरताओं, CI/CD, सीक्रेट्स, और क्लाउड-निकट कॉन्फ़िगरेशन में समस्याएँ ढूँढता है। तेज़, दोहराने योग्य, और बेंचमार्क किया गया — यह सेंसर परत है।
इसके बाद एक जाँच परत तय करती है कि निष्कर्षों का मूल्य क्या है। यह उस मान का पता लगाती है जो किसी सिंक तक पहुँचता है, परियोजना में उन नियंत्रणों की खोज करती है जिन्हें कोई नियम गायब बताता है, ऐसी कॉन्फ़िगरेशन में आक्रमण श्रृंखलाएँ बनाती है जो कोई एकल फ़ाइल नहीं रखती, और — जब आप इसे कहते हैं — तो लीक हुई कुंजी को उसके प्रदाता के विरुद्ध परखती है। प्रत्येक निष्कर्ष अपने साथ वह पास लेकर आता है जिसने उसे प्राप्त किया और वे पंक्तियाँ जो उसने पढ़ीं:
CONFIRMED — traced end to end (10)
NoSQL Injection via $where [high]
app/data/allocations-dao.js:78 NOSQL_INJECTION_WHERE
why: threshold is assigned from the HTTP request and reaches the sink without validation on that path.
decided by: dataflow
1. value reaches NOSQL_INJECTION_WHERE here app/data/allocations-dao.js:78
2. getByUserIdAndThreshold is called here with threshold app/routes/allocations.js:23
3. threshold is assigned here app/routes/allocations.js:20
fix: Replace $where with standard MongoDB operators ($eq, $gt, $regex, etc.)
OWASP NodeGoat के विरुद्ध ship-safe investigate से वास्तविक आउटपुट। दूषित मान एक route फ़ाइल में destructure किया जाता है और तीन डायरेक्टरी दूर एक DAO में पास किया जाता है।
एक कमांड से शुरू करें:
npx ship-safe
साइनअप नहीं। स्कैनिंग के लिए API key आवश्यक नहीं। कोर जाँचों के लिए ऑफ़लाइन काम करता है। AI-समर्थित red-team मोड उपलब्ध होने पर आपके कॉन्फ़िगर किए गए provider का उपयोग करते हैं।
पूरी तरह से लोकल स्कैन की गारंटी के लिए --no-ai का उपयोग करें। Provider-समर्थित classification, deep analysis, और GPT-Red best-effort credential masking के बाद bounded context सीधे आपके चयनित provider को भेजते हैं। सटीक सीमाओं और context limits के लिए Security & Data Flow देखें।
Quick Start
# Interactive REPL: scan, fix, and ask questions in one session
npx ship-safe
# Full audit: secrets + 30 agents + deps + remediation plan
npx ship-safe audit .
# Investigate: confirmed / likely / unresolved / refuted, with the evidence
npx ship-safe investigate .
npx ship-safe investigate . --all # also detail unresolved and refuted
npx ship-safe investigate . --verify # probe leaked keys against their providers
# Before you open an unfamiliar folder with an agent: what runs on open?
npx ship-safe trust ~/Downloads/take-home
npx ship-safe trust . --json
# What can an AI agent working in this repo actually reach?
npx ship-safe capabilities .
# AI agent red-team scenarios for agent-readable content
npx ship-safe red-team . --gpt-red
# Interactive fix agent: plan, diff, approve, verify the path closed
npx ship-safe agent .
npx ship-safe agent . --severity critical # critical findings only
npx ship-safe agent . --branch --pr # fix on a branch + open a PR
# Undo the last fix
npx ship-safe undo
# CI/CD mode — fails on any critical finding
npx ship-safe ci . --sarif results.sarif
npx ship-safe ci . --fail-on high # stricter: critical or high
# Gate on evidence instead of severity: block only what was established
npx ship-safe ci . --fail-on-verdict confirmed
npx ship-safe ci . --ignore-refuted # do not block on what was argued away
पुल अनुरोधों के लिए, एक विश्वसनीय बेस स्कैन की तुलना हेड स्कैन से करें ताकि मौजूदा रिपॉज़िटरी ऋण असंबंधित परिवर्तनों को अवरुद्ध किए बिना दिखाई देता रहे:
# On the trusted base revision
npx ship-safe ci . --fail-on none --no-deps \
--write-baseline-report /tmp/ship-safe-base.json
# On the pull request head
npx ship-safe ci . --base-report /tmp/ship-safe-base.json --fail-on high
The base artifact में hashed finding identities, relative paths, और rule metadata शामिल हैं। यह raw matched secrets संग्रहीत नहीं करता। PR results findings को introduced, resolved, unchanged, या uncertain के रूप में classify करते हैं; ambiguous matches दिखाए जाते हैं लेकिन pull request को block नहीं करते।
Ship Safe क्या खोजता है
| Area | Examples |
|---|---|
| AI और LLM security | Prompt injection, agent hijacking, excessive agency, memory poisoning, RAG poisoning, unsafe tool calls |
| MCP और agent configs | Over-broad tool permissions, poisoned registries, untrusted transports, dangerous allowlists |
| Application security | SQL/NoSQL injection, XSS, SSRF, auth bypass, path traversal, insecure API routes |
| Secrets और compliance | API keys, tokens, credentials, PII, git history में leaked secrets |
| Supply chain | Typosquatting, dependency confusion, risky install scripts, unpinned AI actions |
| CI/CD | Pipeline poisoning, unpinned GitHub Actions, secret logging, unsafe workflow triggers |
यह कैसे काम करता है
- Locally scan करें - Ship Safe targeted agents के साथ आपके repo का निरीक्षण करता है और उन checks को छोड़ देता है जो लागू नहीं होते।
- प्रत्येक finding की जाँच करें - अलग-अलग passes तय करते हैं कि यह वास्तविक है या नहीं, इस तरह ranked कि एक सस्ता pass कभी किसी अधिक महँगे pass को overturn न करे: एक traced data path किसी model की उसी file की reading से ऊपर है, और एक probe जिसने authenticate किया वह दोनों से ऊपर है।
- Evidence पढ़ें - Findings confirmed, likely, unresolved, या refuted में resolve होते हैं, प्रत्येक उन lines का हवाला देता है जिनसे निष्कर्ष निकाला गया, ताकि आप severity label के बजाय किसी step से असहमत हो सकें।
- Control के साथ fix करें - Agent एक plan और diff प्रस्तावित करता है, लिखने से पहले पूछता है, परिणाम verify करता है, और changes को reversible रखता है।
- CI में gate करें - Risky builds को fail करने और GitHub code scanning में SARIF upload करने के लिए
ship-safe ciका उपयोग करें।