Verglos 2.0.0 direction
Verglos is the security evidence agent for AI-generated code.
It scans AI-assisted JavaScript and TypeScript locally today. The v2 track adds local hunt verification and signed evidence for client handoff. Free scanner forever; hunt and attest move through the alpha and beta track.
Moat
AI-authorship provenance as a first-class risk dimension.
Moat
Local-first scan today and local-first hunt on the v2 track.
Moat
Signed evidence artifacts on the v2 track for client, buyer, and auditor handoff.
What Verglos refuses
- /Not an autonomous pentest platform.
- /Not a cloud SAST wrapper.
- /Not a Vanta replacement.
- /Not a product that hides maturity behind broad AI claims.
CLI trio
`verglos scan` produces deterministic findings and provenance. `verglos hunt` verifies selected findings locally. `verglos attest` signs verified evidence into a portable bundle. Hunt and attest are command shells in alpha; functional verification and signing ship in beta.
Plan matrix
Free
scan + provenance + MCP scan
Pro $29/mo
hunt Critical + High track, before-write MCP, fix, thresholds, monitor
Studio $199/mo
hunt Medium track, attest, verify URL, white-label, Firecracker, agency dashboard
Enterprise
SSO, self-hosted verify, audit log, custom detectors
Roadmap
2.0.0-alpha
Shipping now: scan, provenance, slopsquat, MCP scan, and honest hunt / attest command shells.
2.0.0-beta
Functional local hunt loop, verified verdicts, signed attestations, public verify URLs, and Studio evidence docs.
2.1 Compliance
Compliance-readiness outputs built on top of signed evidence, not a replacement for a compliance program.
2.2 Enterprise
SSO, self-hosted verify chain, audit log, and custom detector packs after customer demand justifies them.