Show HN: GitHub scanner that finds real ISO 27001/SoC 2 gaps – no AI, no signup

chrisbuilds421 pts0 comments

Free GitHub Security Scan | Normos.io — Normos.io<br>Log inBook a Demo<br>Book Demo

FREE GITHUB SECURITY SCAN<br>See real findings.<br>Not a slide deck.<br>Connect one GitHub repository and get a genuine forensic scan in minutes — the same deterministic detectors that power Normos, applied to your own code.

Scan your repo<br>Solve the challenge below, then connect one repository via GitHub's own install screen.

Scan my repoNo account required. No credit card. Results shown once, then discarded.

4 real detectors<br>Unpinned GitHub Actions, dependency exposure windows, secret filenames, and branch protection gaps — a genuine subset of Normos's 21.

Single repo, read-only<br>You choose exactly one repository during GitHub's own install flow. Four read-only permissions. Nothing else is touched.

Nothing stored<br>Results are shown once and discarded. No account, no email required to see them, no data kept afterward.

This is 4 of 21 detectors.<br>The full Normos platform scans your whole GitHub org daily, across 5 domains, with a SHA-256 forensic hash chain and an auditor-ready evidence portal — for ISO 27001 and SOC 2.<br>Book a 30-minute demoAsk a question

github scan normos real repository detectors

Related Articles