Helps fix security vulnerabilities identified by DryRunSecurity. Activates when the user shares a DryRunSecurity comment (from a GitHub PR or GitLab MR) or asks for help fixing any security finding including SQL injection, XSS, CSRF, SSRF, path traversal, command injection, authentication bypass, authorization flaws, and prompt injection. Researches authoritative sources and applies fixes grounded in the user's specific codebase context.
99
Quality
99%
Does it follow best practices?
Impact
Pending
No eval scenarios have been run
DryRunSecurity focuses on real, exploitable code vulnerabilities. Understanding what it filters out helps you trust the findings and avoid over-fixing.
DryRunSecurity intentionally does NOT report:
If DryRunSecurity flagged it, it passed rigorous filtering. The finding represents:
Trust the finding. Your job is to fix it correctly, not to second-guess whether it's real.
Install with Tessl CLI
npx tessl i dryrunsecurity/remediation