github app that detects

Unsafe Cryptography

FIND WEAK CIPHERS AND HASH FUNCTIONS

BEFORE MERGING A PULL REQUEST

Unsafe Crypto Github App highlights use of weak hash functions such as MD5 or SHA1, and weak ciphers such as DES or RC4.

do not merge

insecure configuration

Many cryptographic libraries still offer old and insecure configuration. The worst offender is probably OpenSSL, but the Unsafe Crypto Github App support also python cryptography package and other libraries.

Affordable pricing

$20 subscription

One subscription covers all repositories and users for a whole GitHub organization and an unlimited amount of checks.

Pre-release avaiable soon

Try it out

Free trial will be available for all developers.