Paste one public GitHub repository.
FOXIFY reads up to six prioritized public source/config files and returns a teaser of authority-bearing surfaces. No credentials, private repositories, dependency installation or active testing.
What the preview looks for
- Tool registration and actions exposed to an AI agent or MCP client.
- Secrets, ambient credentials and identity-bearing configuration.
- Filesystem, shell/process, database, browser and network authority.
- Payment or transaction-related code paths that may carry financial consequence.
- Visible approval, validation or confirmation guardrails around those actions.
The result is intentionally observation-first. It helps a developer decide where deeper review is justified without claiming that a source match is exploitable.
Where it fits
Use the free preview for a fast first look at one public repository. Use the GitHub Action when you want repeatable CI evidence, the Quick Check when you want a bounded static report, and runtime or human review when the agent can actually change production state.
The preview is cached for six hours to keep the free lane bounded. For repeatable CI, use the free GitHub Action.