Safeguard
Version 5.0.0

Download Safeguard

Secure your software supply chain from your desktop, phone, IDE, or terminal. Available for Windows, macOS, Linux, Android, and all major IDEs.

◈ the handoff — one build, three surfaces
Apps

Desktop & mobile

Ask your supply chain anything — every CVE, component, project and control you have scanned, answerable in plain English, in a native window that opens instantly.

Installing & verifying

Windows — run the installer; it is per-user and needs no administrator rights. These builds are not yet code-signed, so SmartScreen will show “Windows protected your PC” — choose More info → Run anyway. That warning is expected until code signing lands, not a sign the file is corrupt; verify the checksum below if you want certainty. Prefer a smaller download? Architecture-specific installers: x64 · arm64.

> certutil -hashfile Safeguard-0.4.0.exe SHA25676230dcbfbc9018ee3b171b87380c6c2b4223fb7d4804ac8fb64b35bc459f967

macOS — open the .dmg and drag Safeguard to Applications. Both builds are signed with Safeguard.sh Inc’s Developer ID and notarized by Apple, so there are no warnings to click through. Apple menu → About This Mac tells you which build you need: “Apple M…” is Apple Silicon, “Intel” is x64.

Apple Silicon 76925052f5500766 · Intel 52c03998cd00e78d — full checksums in the release’s SHA256SUMS.

Linux — an AppImage needs no installer: mark it executable and run it. Requires a 64-bit x86 Linux with FUSE available.

$ chmod +x Safeguard-0.4.0-x86_64.AppImage && ./Safeguard-0.4.0-x86_64.AppImage

Verify what you downloaded with sha256sum Safeguard-0.4.0-x86_64.AppImage

735bbef66f890ee7709b03a5ac0530e04666d045eab8727adcbd26e9a038de47

The Android build installs from the APK, not the Play Store, so your phone will ask you to allow installing from this source. Verify it with sha256sum Safeguard-1.0.2.apk

ef1e24f0d50623548ed13e1bf6860722068dd32a9854bac9f6555917f7d91143
Terminal

CLI Tool

Scan from your terminal or CI/CD pipeline. Version 1.2.0, a single static binary with no runtime to install.

Install — detects your OS, verifies the checksum
macOS · Linux
$ curl -fsSL https://cli.safeguard.sh/install | bash
Windows
> irm https://cli.safeguard.sh/install.ps1 | iex
$ safeguard scan --dir ./my-project$ safeguard code-scan --file app.py$ safeguard detect --path .
Included

What's Included

Everything in the box, on every surface.

30+ asset type discovery (AI models, databases, cloud, CI/CD & more)
Zero-day vulnerability scanning powered by AI (TAOR engine)
Guardrail enforcement with OWASP, EU AI Act, NIST compliance
One-click dependency remediation (auto version bump)
Inline code security annotations (like git blame)
Supply chain provenance & attestation verification
Real-time security posture assessment
License compliance & supplier risk analysis

Self-healing security runs on Safeguard.

Your first fix PR is minutes away.

No sales call required, even your agent can complete the purchase over MCP.