Sentrail
AI-NATIVE SECURITY, Human-Led Control
Sentrail is an evidence-gated security layer for AI-built applications. It runs seven mandatory security checks across GitHub repositories, Supabase databases, and Vercel deployments to compute an honest launch-readiness verdict. Sentrail provides approval-gated remediation, generating fixes as draft pull requests without ever auto-merging.

The security release layer
for AI-built applications.

Know what's safe to ship before it reaches production.

No credit card required. Know what needs fixing before you ship.

Read-onlyby default
Approval-gatedremediation
Consent-basedanalytics
PROJECT VERDICT
READY
0 critical findings
All 7 checks verified
SECURITY CHECKS7/7 PASS
Database RLSPass
Secrets & ConfigPass
Dependency CVEsPass
Deployment PosturePass

THE ANSWER, WITH THE EVIDENCE

Can I ship this release, and why?

See the checks behind the verdict and the next thing to address. Missing evidence is never a passing result.

How verdicts work
SAMPLE PROJECT / RELEASE REVIEWIllustrative data, not a live scan
Insufficient Evidence

The database check has not run. Review the known finding, then collect the missing evidence before deciding to ship.

Repository checks
Fresh
Database access policies
Missing
Dependencies
Fresh

A successful check can still report findings. Fresh does not mean risk-free.

Finding to review

HighRepository / secrets

A secret is exposed to client code

A public-prefixed environment variable can be included in the browser bundle. The credential value is redacted.

Next action

Review the affected configuration, remove the exposure, and rotate the affected credential. Rerun the check to verify.

Start free

1 project. 5 database audits per month on the free plan.

FROM YOUR STACK TO YOUR NEXT STEP

Connect. Review. Fix with confidence.

01

Connect your stack

Map a GitHub repository and Supabase project. Add Vercel when you want deployment evidence, too.

02

See what needs attention

Run a review. Inspect the findings, their source, and which checks are fresh, missing, or failed.

03

Fix, then verify

Review a proposed change before applying it. Rerun the affected checks: a change alone is not a verified fix.

Connects withGitHubSupabaseVercel (optional)Setup guide

YOUR APP. YOUR DECISION.

Inspect first. Change only with approval.

Know what you connect

Authorize provider access, then choose the repository or project Sentrail reviews.

Understand what is retained

Provider credentials are encrypted. Findings, redacted evidence, and audit receipts are retained to support the review.

Keep control of changes

Review changes before execution. Supported repository fixes use draft pull requests; you control the merge.

START SMALL. REVIEW BEFORE YOU SHIP.

Start free. Choose more when you need it.

Monthly prices in USD. Compare full limits and annual billing before choosing a paid plan.

Hacker

$0/ free plan

Solo founders shipping their first app.

  • 1 active project
  • 5 database audits per month
  • Basic secret checks and AI chat
Start free

Pro

$29/ month

Builders shipping weekly with Supabase.

  • More projects and database audits
  • Scan history and receipts
  • Approval-gated remediation
Explore Pro

Team

$99/ month

Teams with compliance requirements.

  • Pro features
  • Shared workspaces
  • Audit log export
Explore Team

Need Growth or a custom agreement? Contact sales.

BEFORE YOU CONNECT

A few straight answers.

Know what you are connecting, what you get, and what a verdict does and does not mean.

What do I need to connect?

Connect a GitHub repository and Supabase project for the core review. Vercel is optional for deployment evidence. Authorize each provider and map the resources you want to inspect; connecting an account alone does not complete a review.

What does the free plan include?

The Hacker plan includes 1 active project, 5 database audits per month, basic secret checks, and AI chat. Paid plans add capabilities such as scan history and approval-gated remediation. Compare the full limits on the pricing page.

Will Sentrail change my code or database?

Security reviews inspect your connected resources. Changes use separate approval-gated workflows. Review a prepared proposal before submitting or executing it; supported repository changes use draft pull requests that you merge. Applying a change is not proof of resolution: rerun the affected checks.

Does Ready mean my app cannot be hacked?

No. A verdict describes the findings and evidence within the review's scope, not a guarantee of security. Missing, failed, or stale required evidence produces Insufficient Evidence. Inspect the coverage and findings before deciding to ship.

Is my source code or database content stored?

Sentrail is read-only by default and uses scoped tokens with least-privilege access. Repository contents are processed in an ephemeral scan workspace; Sentrail retains findings, redacted evidence, audit receipts, connection metadata, and encrypted provider credentials needed to operate your project. Matched credentials and API tokens are fingerprinted and redacted before findings reach a model.

Make your next release an informed decision.

Start with one project. Let the evidence guide your next step.

Start free