Skip to content
Back to the index

vexa-scan

PyPIInfrastructure

PulseGate's liveness check found it on 14 Sep 2026; it is registered on GitHub and PyPI and has been in the index since 29 Jul 2026. How this is checked

vexa-scan is a command-line security platform that performs autonomous vulnerability scanning, CVE detection, and self-healing actions. Built for DevSecOps workflows, it integrates SAST capabilities and helps teams maintain secure codebases with minimal manual oversight. The tool is distributed as a Python package with an MIT license.

Inferred · not functionally tested

Open SourceApache-2.0CLI
Visit PyPI
2.6kstars
405forks
4features
2025since

Overview

4 features

Purpose: Identifying and automatically addressing security vulnerabilities in development and deployment pipelines without manual intervention.

Inferred · not functionally tested

Audience: security and DevOps engineers

Inferred · not functionally tested

Functions: Unknown

Interfaces: API: unknown · MCP: unknown · CLI: indicated (inferred, not tested) · Self-hosting: unknown

Recorded constraints: pricing: open_source · license: Apache-2.0 · platforms: CLI · deployment: cli

Constraint provenance is unknown; confirm requirements with the publisher.

Record sources: pypi.org · github.com. These links do not verify the individual claims.

vexa-scan is an Application security & vulnerability scanning project. Inferred · not functionally tested: It focuses on identifying and automatically addressing security vulnerabilities in development and deployment pipelines without manual intervention. Inferred · not functionally tested: It is built as an open-source project for security and DevOps engineers. Basis unknown · not verified: The project is open source (Apache-2.0). Basis unknown · not verified: It ships for the command line.

It is developed by vexa-ai, and it first shipped in 2025. Development happens publicly on GitHub with 2.6k stars and 1.2k commits in the last 90 days. Inferred · not functionally tested: Among its 4 catalogued features are autonomous scanning, self-healing security, and CVE detection.

Summary written by a language model from the project’s public pages.

Tasks: Inferred · not functionally tested

  • Autonomous scanning
  • Self-healing security
  • CVE detection
  • DevSecOps integration

Topics: Inferred · not functionally tested

Tags
security-clivulnerability-scannerself-healingdevsecopssast-tool

JSON profile · Text profile · Access guide

Built with & integrations

Runs on
CLI

Trust & compliance

License
Apache-2.0
Public signals
HTTPSOpen SourceGitHub · ★ 2.6kActive maintenance

Indexing history

1

What PulseGate has recorded for this listing

  1. Indexed29 Jul · 14:38 UTC
    vexa-scan seen via PyPI Bulk Enumerator
    Source: PyPI Bulk Enumerator · Open

Frequently asked questions about vexa-scan

What is vexa-scan?
Inferred · not functionally tested: Vexa-scan focuses on identifying and automatically addressing security vulnerabilities in development and deployment pipelines without manual intervention. It is catalogued under Application security & vulnerability scanning on PulseGate.
Who should use vexa-scan?
Inferred · not functionally tested: vexa-scan is an open-source project built for security and DevOps engineers.
Does vexa-scan have a free plan?
Basis unknown · not verified: Yes — vexa-scan is open source under the Apache-2.0 license and free to use.
What platforms does vexa-scan run on?
Basis unknown · not verified: vexa-scan runs on the command line.
Is vexa-scan still maintained?
PulseGate's liveness check found it on 14 Sep 2026. Its GitHub repository shows 1.2k commits in the last 90 days.
What are alternatives to vexa-scan?
Similar projects tracked by PulseGate include VEXA CLI, autosecscan, and Vexlab.VEXA CLIautosecscanVexlab
Who develops vexa-scan?
vexa-scan is developed by vexa-ai.
How long has vexa-scan been around?
vexa-scan first shipped in 2025.

Similar projects

Closest matches by what these projects do