BridgeMindbridgemind.ai viewers: Get Snitch free $49.99 $0

open source program

Free for
open source.

If you maintain an open source project, Snitch is yours. Same 60 categories, same OWASP coverage, same SARIF export. No catch, no time limit. We believe open source deserves real security tooling.

Apply below with a link to your public repository. We review every application by hand to make sure it's a real project. If approved, you'll get the full Snitch plugin by email.

What you get

The full Snitch plugin — not a trial, not a lite version

68 security categories covering SQL injection, XSS, secrets, SSRF, CSRF, auth, compliance, and 62 more. Every finding backed by file path, line number, and exact code.

Works with 30+ AI coding tools

Claude Code, Codex CLI, Cursor, GitHub Copilot, VS Code, Gemini CLI, Goose, Roo Code, and 20+ more. One installer handles all of them.

SARIF export for GitHub Security tab

Export findings as SARIF 2.1.0 and plug them directly into your CI/CD pipeline. CSV export for issue tracking. CycloneDX SBOM from your lockfiles.

Compliance evidence templates

If your project needs to demonstrate security posture for SOC 2, HIPAA, PCI-DSS, GDPR, CCPA, or SOX, the compliance templates generate evidence packages from your scan results.

Who qualifies

1

Your project is publicly available on GitHub, GitLab, or a similar platform

2

It has a real open source license (MIT, Apache, GPL, BSD, etc.)

3

It's an active project — not a fork with no changes or an empty repo

4

You're a maintainer or core contributor, not just a user of the project

Apply

We'll send your download link here if approved.

Link to your public repo. We'll check that it's open source.

Questions

How long does approval take?

We review applications by hand, usually within 24 hours. You'll get an email either way.

What exactly do I get?

The full Snitch plugin. 68 category files, 22 reference files, 6 compliance templates, custom rules framework, and cross-platform installer scripts.

Is there a time limit or usage cap?

No. Once approved, the plugin is yours. Use it on as many projects as you want, forever. No subscription, no expiration.

Does my project need a minimum number of stars or contributors?

No. We're looking for real projects with real open source licenses. A 10-star utility library maintained by one person qualifies just as much as a 10,000-star framework.

Can I use it on my private/commercial projects too?

The license covers your open source work. If you want to use Snitch on commercial projects, check out the plugin at /plugin.

What if my application is denied?

We'll let you know why. Common reasons: the repo is private, there's no open source license, or the project appears inactive. You can reapply after addressing the issue.

I maintain multiple open source projects. Do I need to apply for each one?

No. One approval covers all your open source work. The plugin installs globally and works across all your projects.