Self-serve docs for GuardianX. Search articles, browse categories, or open the in-app chat for direct support.
Sign up, verify your email, and get admin-approved.
Upload a codebase and start a scan in 3 clicks.
The 8 main tabs and what each is for.
Admin vs Viewer — what each role can do.
Static analysis finds code bugs; DAST attacks live endpoints.
Enter a URL → get a 15-page PDF report.
Critical / High / Medium / Low — what each means.
Detect leaked API keys, tokens, and credentials in source.
Generated → sandbox-tested → approved → applied → verified.
Diff view, AI reasoning, exploit replay, and the chat panel.
Why we re-attack the patched code.
What if a patch breaks production?
DPDPA, GDPR, ISO 27001, SOC 2, PCI-DSS, NIST CSF.
India's Digital Personal Data Protection Act.
SHA-256 hashed audit trail for every approved patch.
CSV / JSON export for SIEM ingestion.
Bearer JWT tokens, 7-day expiry, cookie + header.
300 req/min/IP for the general API; stricter for auth.
Get notified on patch_approved, incident_created, etc.
Block merges on critical findings via GitHub Actions.
Interactive Swagger UI at /api-doc.
Why your account isn't active yet + how to escalate.
Common scan failure modes and fixes.
SMTP config, test emails, and the Email Log.
Running /supabase/migrations/0001_init.sql.
In-app chat, email, and the status page.