vexa-scan
PulseGate's liveness check found it on 14 Sep 2026; it is registered on GitHub and PyPI and has been in the index since 29 Jul 2026. How this is checked
vexa-scan is a command-line security platform that performs autonomous vulnerability scanning, CVE detection, and self-healing actions. Built for DevSecOps workflows, it integrates SAST capabilities and helps teams maintain secure codebases with minimal manual oversight. The tool is distributed as a Python package with an MIT license.
Inferred · not functionally tested
Overview
4 featuresPurpose: Identifying and automatically addressing security vulnerabilities in development and deployment pipelines without manual intervention.
Inferred · not functionally tested
Audience: security and DevOps engineers
Inferred · not functionally tested
Functions: Unknown
Interfaces: API: unknown · MCP: unknown · CLI: indicated (inferred, not tested) · Self-hosting: unknown
Recorded constraints: pricing: open_source · license: Apache-2.0 · platforms: CLI · deployment: cli
Constraint provenance is unknown; confirm requirements with the publisher.
Record sources: pypi.org · github.com. These links do not verify the individual claims.
vexa-scan is an Application security & vulnerability scanning project. Inferred · not functionally tested: It focuses on identifying and automatically addressing security vulnerabilities in development and deployment pipelines without manual intervention. Inferred · not functionally tested: It is built as an open-source project for security and DevOps engineers. Basis unknown · not verified: The project is open source (Apache-2.0). Basis unknown · not verified: It ships for the command line.
It is developed by vexa-ai, and it first shipped in 2025. Development happens publicly on GitHub with 2.6k stars and 1.2k commits in the last 90 days. Inferred · not functionally tested: Among its 4 catalogued features are autonomous scanning, self-healing security, and CVE detection.
Summary written by a language model from the project’s public pages.
Tasks: Inferred · not functionally tested
- Autonomous scanning
- Self-healing security
- CVE detection
- DevSecOps integration
Topics: Inferred · not functionally tested
Built with & integrations
Trust & compliance
Indexing history
1What PulseGate has recorded for this listing
Frequently asked questions about vexa-scan
- What is vexa-scan?
- Inferred · not functionally tested: Vexa-scan focuses on identifying and automatically addressing security vulnerabilities in development and deployment pipelines without manual intervention. It is catalogued under Application security & vulnerability scanning on PulseGate.
- Who should use vexa-scan?
- Inferred · not functionally tested: vexa-scan is an open-source project built for security and DevOps engineers.
- Does vexa-scan have a free plan?
- Basis unknown · not verified: Yes — vexa-scan is open source under the Apache-2.0 license and free to use.
- What platforms does vexa-scan run on?
- Basis unknown · not verified: vexa-scan runs on the command line.
- Is vexa-scan still maintained?
- PulseGate's liveness check found it on 14 Sep 2026. Its GitHub repository shows 1.2k commits in the last 90 days.
- What are alternatives to vexa-scan?
- Similar projects tracked by PulseGate include VEXA CLI, autosecscan, and Vexlab.VEXA CLIautosecscanVexlab
- Who develops vexa-scan?
- vexa-scan is developed by vexa-ai.
- How long has vexa-scan been around?
- vexa-scan first shipped in 2025.
Similar projects
Closest matches by what these projects do