Back to docs

Verglos 2.0.0 direction

Verglos is the security evidence agent for AI-generated code.

It scans AI-assisted JavaScript and TypeScript locally today. The v2 track adds local hunt verification and signed evidence for client handoff. Free scanner forever; hunt and attest move through the alpha and beta track.

Moat

AI-authorship provenance as a first-class risk dimension.

Moat

Local-first scan today and local-first hunt on the v2 track.

Moat

Signed evidence artifacts on the v2 track for client, buyer, and auditor handoff.

Verglos v2 flow from local scan to local sandbox hunt to signed attestation

What Verglos refuses

  • /Not an autonomous pentest platform.
  • /Not a cloud SAST wrapper.
  • /Not a Vanta replacement.
  • /Not a product that hides maturity behind broad AI claims.

CLI trio

`verglos scan` produces deterministic findings and provenance. `verglos hunt` verifies selected findings locally. `verglos attest` signs verified evidence into a portable bundle. Hunt and attest are command shells in alpha; functional verification and signing ship in beta.

Plan matrix

Free

scan + provenance + MCP scan

Pro $29/mo

hunt Critical + High track, before-write MCP, fix, thresholds, monitor

Studio $199/mo

hunt Medium track, attest, verify URL, white-label, Firecracker, agency dashboard

Enterprise

SSO, self-hosted verify, audit log, custom detectors

Roadmap

2.0.0-alpha

Shipping now: scan, provenance, slopsquat, MCP scan, and honest hunt / attest command shells.

2.0.0-beta

Functional local hunt loop, verified verdicts, signed attestations, public verify URLs, and Studio evidence docs.

2.1 Compliance

Compliance-readiness outputs built on top of signed evidence, not a replacement for a compliance program.

2.2 Enterprise

SSO, self-hosted verify chain, audit log, and custom detector packs after customer demand justifies them.