vexa-scan is a command-line security platform that performs autonomous vulnerability scanning, CVE detection, and self-healing actions. Built for DevSecOps workflows, it integrates SAST capabilities and helps teams maintain secure codebases with minimal manual oversight. The tool is distributed as a Python package with an MIT license.
vexa-scan is a Developer Tools project. It focuses on identifying and automatically addressing security vulnerabilities in development and deployment pipelines without manual intervention. It is built as an open-source project for security and DevOps engineers. The project is open source (Apache-2.0). It ships for the command line.
It is developed by vexa-ai, and it first shipped in 2025. Development happens publicly on GitHub with 2.6k stars and 1.2k commits in the last 90 days. Among its 4 catalogued features are autonomous scanning, self-healing security, and CVE detection.
Summary written by a language model from the project’s public pages.
What PulseGate has recorded for this listing
Closest matches by what these projects do