We just shipped a security release on MergeGuard: OSV (npm lockfile advisories) and Trivy (filesystem vulns, secrets, misconfig) run in the same pass as our AI code review. Findings land in the PR as a Security review section—and on Files changed when the diff allows inline threads.
For further actions, you may consider blocking this person and/or reporting abuse

Top comments (0)