Deterministic security scanning that needs no model or API key, plus governed coding tasks.
Verification confirms publisher identity (repo ownership), not code safety. The security scan covers known CVEs and suspicious install scripts — it cannot prove the absence of malicious code.
Deterministic security scanning that needs no model or API key, plus governed coding tasks.