Safeguard, in your dev loop.
Same engine in your IDE, your CLI, your CI, and your agents. Live findings, drafted fix PRs, low-friction guardrails.
Where Safeguard lives in your dev loop.
The same engine, exposed in every surface you touch between idea and pull request. Live findings, drafted fix PRs, and guardrails that don't nag.
IDE Extension
VS Code, JetBrains, and Cursor. Live findings, one-keystroke fixes, no context switch.
ExploreCLI Tool
Scriptable Safeguard for the terminal — same checks locally, in CI, and in incident response.
ExploreMCP Server
Model Context Protocol endpoint your agents call. Real-time, signed, scoped to your tenant.
OpenChrome Extension
Inline risk signals on GitHub, npm, PyPI, and package detail pages.
ExploreSlack App
Findings, approvals, and fix-PR reviews in the channel where work already happens.
ExploreMicrosoft Teams
Adaptive cards for triage, approvals, and policy breaks — same flow, different chat.
ExploreSafeguard Code
Local coding agent that respects your repo conventions and your security policy.
ExplorePortal
The web console — dashboards, policies, evidence, audit, billing.
ExploreDrop in wherever your pipeline runs.
A native step on every major CI, a single binary for the rest. Findings become required checks, fix PRs become routine.
Integrations
The full list of native connectors — SCM, CI, identity, observability, comms, and cloud.
ExploreGitHub Action
First-class step with annotations, status checks, and SARIF uploads.
ExploreGitLab CI
Include template for merge-request decoration and pipeline gates.
ExploreAzure DevOps
Pipeline task that fits both YAML and classic pipelines.
ExploreBitbucket
Pipe integration with PR insights and required builds.
ExploreJenkins
Declarative pipeline step, plus a classic plugin for older estates.
ExploreCircleCI
Pinned, signed orb. Reachability-aware checks in a single line of config.
ExploreDrone
Step plugin for Drone and Gitea Actions deployments.
ExplorePull Safeguard like any other dependency.
Public NPM org, public GitHub org, fully documented REST and SDKs. Everything you need to wire Safeguard into your own tools.
NPM Org
@safeguard-sh on npm — CLIs, SDKs, and reference clients, signed and provenance-attested.
OpenGitHub Org
Safeguard-sh on GitHub — open clients, action sources, examples, and issue tracking.
OpenAPI Reference
The full REST surface — auth, scans, findings, policies, webhooks, audit, exports.
ExploreDocumentation
docs.safeguard.sh — concepts, tutorials, recipes, and runbooks, kept in sync with releases.
OpenEverything else worth bookmarking.
Concepts, tutorials, guides, and the roadmap. Built for engineers who would rather read the source than the slide deck.
Concepts & Glossary
The vocabulary — reachability, VEX, SLSA, attestations, policy gates, evidence.
ExploreTutorials
End-to-end walkthroughs — first scan, first fix PR, first policy gate, first SBOM.
ExploreGuides
Opinionated how-tos for SCA, IaC, DAST, SBOM lifecycle, and AI-BOM programs.
ExploreRoadmap
What we're shipping next, what we're researching, and what we've scoped out.
ExploreChangelog
Every release, dated, with breaking changes called out. No silent rollouts.
ExploreFor the Developer Persona
How Safeguard is designed around the way engineers actually ship — flow, not friction.
ExploreWire Safeguard into your stack.
Bring a repo and a CI provider — we'll get you from first scan to first merged fix PR on the call. No tier sheet, no pretend trial.
Self-healing security runs on Safeguard.
Your first fix PR is minutes away.
No sales call required, even your agent can complete the purchase over MCP.