[
  {
    "id": "gecko-security-docs-1",
    "tier": "claimed-docs",
    "url": "https://gecko.security/docs/quick-start.md",
    "excerpt": "install the Gecko GitHub App and pick repositories",
    "fetchedAt": "2026-09-14T23:34:10.147Z"
  },
  {
    "id": "gecko-security-docs-2",
    "tier": "claimed-docs",
    "url": "https://gecko.security/docs/quick-start.md",
    "excerpt": "Each finding includes a severity (CVSS 4.0), a confidence score, the full source-to-sink call chain, a proof of concept, and a suggested patch.",
    "fetchedAt": "2026-09-14T23:34:10.147Z"
  },
  {
    "id": "gecko-security-docs-3",
    "tier": "claimed-docs",
    "url": "https://gecko.security/docs/quick-start.md",
    "excerpt": "Click Request fix to open a gecko/* pull request with the patch applied, or apply the patch yourself.",
    "fetchedAt": "2026-09-14T23:34:10.147Z"
  },
  {
    "id": "gecko-security-docs-4",
    "tier": "claimed-docs",
    "url": "https://gecko.security/docs/quick-start.md",
    "excerpt": "Gecko rechecks the finding and marks it Fix verified once the vulnerability is gone.",
    "fetchedAt": "2026-09-14T23:34:10.147Z"
  },
  {
    "id": "gecko-security-docs-5",
    "tier": "claimed-docs",
    "url": "https://gecko.security/docs/scanning/pr-checks.md",
    "excerpt": "Gecko posts a pass/fail check back to GitHub or GitLab so reviewers see the security status inline.",
    "fetchedAt": "2026-09-14T23:34:10.147Z"
  },
  {
    "id": "gecko-security-docs-6",
    "tier": "claimed-docs",
    "url": "https://gecko.security/docs/concepts/findings.md",
    "excerpt": "create a ticket in Jira, Linear, ClickUp, or Shortcut",
    "fetchedAt": "2026-09-14T23:34:10.147Z"
  },
  {
    "id": "gecko-security-docs-7",
    "tier": "claimed-docs",
    "url": "https://gecko.security/docs/quick-start.md",
    "excerpt": "Paste a public repository URL or upload a ZIP instead. No provider connection required.",
    "fetchedAt": "2026-09-14T23:34:10.147Z"
  },
  {
    "id": "gecko-security-docs-8",
    "tier": "claimed-docs",
    "url": "https://gecko.security/docs/connect/github.md",
    "excerpt": "GitHub Enterprise Server (GHES) is often self-hosted, so it connects with a personal access token and your instance base URL instead of the public App.",
    "fetchedAt": "2026-09-14T23:34:10.147Z"
  },
  {
    "id": "gecko-security-docs-9",
    "tier": "claimed-docs",
    "url": "https://gecko.security/docs/ai-tools/overview.md",
    "excerpt": "Connect it to an AI tool and the tool can list your repositories and scans, pull full vulnerability evidence (proof of concept, call chain, patch diff), triage findings, and file tickets.",
    "fetchedAt": "2026-09-14T23:34:10.147Z"
  },
  {
    "id": "gecko-security-docs-10",
    "tier": "claimed-docs",
    "url": "https://gecko.security/docs/api-reference/introduction.md",
    "excerpt": "Gecko's v1 API lets you trigger scans, read scan, repository, and vulnerability data, triage findings, manage scan schedules, rotate your GitLab token, and receive webhook events",
    "fetchedAt": "2026-09-14T23:34:10.147Z"
  },
  {
    "id": "gecko-security-docs-11",
    "tier": "claimed-docs",
    "url": "https://gecko.security/docs/changelog",
    "excerpt": "API keys are now visible to the whole team with owner attribution and per-request usage logging",
    "fetchedAt": "2026-09-14T23:34:10.147Z"
  },
  {
    "id": "gecko-security-docs-12",
    "tier": "claimed-docs",
    "url": "https://gecko.security/docs/changelog",
    "excerpt": "PATCH /integrations/gitlab swaps in a fresh token, built for secret managers and rotation scripts.",
    "fetchedAt": "2026-09-14T23:34:10.147Z"
  },
  {
    "id": "gecko-security-docs-13",
    "tier": "claimed-docs",
    "url": "https://gecko.security/docs/deployment/hybrid.md",
    "excerpt": "the scanner, S3 storage, and all AI inference run inside your AWS account. Gecko hosts only the dashboard, database, and scan orchestration.",
    "fetchedAt": "2026-09-14T23:34:10.147Z"
  },
  {
    "id": "gecko-security-docs-14",
    "tier": "claimed-docs",
    "url": "https://gecko.security/docs/changelog",
    "excerpt": "resolves a version to its release... the response includes the digest-pinned image_ref to pull",
    "fetchedAt": "2026-09-14T23:34:10.147Z"
  },
  {
    "id": "gecko-security-docs-15",
    "tier": "claimed-docs",
    "url": "https://gecko.security/docs/quick-start.md",
    "excerpt": "Click **Request fix** to open a `gecko/*` pull request with the patch applied, or apply the patch yourself.",
    "fetchedAt": "2026-09-16T20:47:54.864Z"
  },
  {
    "id": "gecko-security-docs-16",
    "tier": "claimed-docs",
    "url": "https://gecko.security/docs/quick-start.md",
    "excerpt": "When the fix merges, Gecko rechecks the finding and marks it **Fix verified** once the vulnerability is gone.",
    "fetchedAt": "2026-09-16T20:47:54.864Z"
  },
  {
    "id": "gecko-security-docs-17",
    "tier": "claimed-docs",
    "url": "https://gecko.security/docs/how-gecko-works.md",
    "excerpt": "Repository wiki: An AI-written map of your app: architecture, routing, and security model.",
    "fetchedAt": "2026-09-16T20:47:54.864Z"
  },
  {
    "id": "gecko-security-docs-18",
    "tier": "claimed-docs",
    "url": "https://gecko.security/docs/how-gecko-works.md",
    "excerpt": "Endpoint map: The HTTP attack surface Gecko discovered in your code.",
    "fetchedAt": "2026-09-16T20:47:54.864Z"
  },
  {
    "id": "gecko-security-docs-19",
    "tier": "claimed-docs",
    "url": "https://gecko.security/docs/how-gecko-works.md",
    "excerpt": "PR reviews & fixes: On pull requests, a security review summary and one-click fixes.",
    "fetchedAt": "2026-09-16T20:47:54.864Z"
  },
  {
    "id": "gecko-security-docs-20",
    "tier": "claimed-docs",
    "url": "https://gecko.security/docs/how-gecko-works.md",
    "excerpt": "Compiler-accurate (precise cross-file analysis) | TypeScript · JavaScript · Python · Go · Java · Scala · C# · Rust",
    "fetchedAt": "2026-09-16T20:47:54.864Z"
  },
  {
    "id": "gecko-security-docs-21",
    "tier": "claimed-docs",
    "url": "https://gecko.security/docs/deployment/hybrid.md",
    "excerpt": "the scanner, S3 storage, and all AI inference run inside your AWS account.",
    "fetchedAt": "2026-09-16T20:47:54.864Z"
  },
  {
    "id": "gecko-security-docs-22",
    "tier": "claimed-docs",
    "url": "https://gecko.security/pricing",
    "excerpt": "100 scans per month\n*   Team management (up to 5)",
    "fetchedAt": "2026-09-16T20:47:54.864Z"
  },
  {
    "id": "gecko-security-docs-23",
    "tier": "claimed-docs",
    "url": "https://gecko.security/pricing",
    "excerpt": "Unlimited scanning\n*   On-prem / self-hosted / private cloud",
    "fetchedAt": "2026-09-16T20:47:54.864Z"
  },
  {
    "id": "gecko-security-docs-24",
    "tier": "claimed-docs",
    "url": "https://gecko.security/docs/api-reference/webhooks",
    "excerpt": "Gecko can push events to your systems as scans run and findings change: page a channel when a scan fails, open a workflow when a critical lands",
    "fetchedAt": "2026-09-16T20:47:54.864Z"
  },
  {
    "id": "gecko-security-docs-25",
    "tier": "claimed-docs",
    "url": "https://gecko.security/docs/admin/api-keys.md",
    "excerpt": "Give the key a descriptive name, such as `CI/CD Pipeline` or `Production`.",
    "fetchedAt": "2026-09-16T20:47:54.864Z"
  },
  {
    "id": "gecko-security-docs-26",
    "tier": "claimed-docs",
    "url": "https://gecko.security/docs/connect/github.md",
    "excerpt": "The App grants Gecko scoped, auto-rotating access, with no personal access token to manage.",
    "fetchedAt": "2026-09-16T20:47:54.864Z"
  },
  {
    "id": "gecko-security-docs-27",
    "tier": "claimed-docs",
    "url": "https://gecko.security/docs/connect/github.md",
    "excerpt": "GitHub Enterprise Server (GHES) is often self-hosted, so it connects with a **personal access token** and your instance base URL instead of the public App.",
    "fetchedAt": "2026-09-16T20:47:54.864Z"
  },
  {
    "id": "gecko-security-docs-28",
    "tier": "claimed-docs",
    "url": "https://gecko.security/docs/scanning/pr-checks.md",
    "excerpt": "Findings introduced by the PR are separated from pre-existing ones, so reviewers focus on what the change adds.",
    "fetchedAt": "2026-09-16T20:47:54.864Z"
  },
  {
    "id": "gecko-security-docs-29",
    "tier": "claimed-docs",
    "url": "https://gecko.security/docs/scanning/pr-checks.md",
    "excerpt": "**Fail-on severity**: the severity threshold that fails the check (for example, fail on High and above).",
    "fetchedAt": "2026-09-16T20:47:54.864Z"
  },
  {
    "id": "gecko-security-docs-30",
    "tier": "claimed-docs",
    "url": "https://gecko.security/docs/remediation/auto-fix-prs.md",
    "excerpt": "Commit to an existing PR: For findings from a PR scan, Gecko can commit the fix directly to the PR's head branch so the fix rides along with the change.",
    "fetchedAt": "2026-09-16T20:47:54.864Z"
  },
  {
    "id": "gecko-security-docs-31",
    "tier": "claimed-docs",
    "url": "https://gecko.security/docs/changelog",
    "excerpt": "GET /releases/{channel}/{version} resolves a version to its release.",
    "fetchedAt": "2026-09-16T20:47:54.864Z"
  },
  {
    "id": "gecko-security-docs-32",
    "tier": "claimed-docs",
    "url": "https://gecko.security/docs/changelog",
    "excerpt": "Gecko now checks your GitLab token's expiration date daily and emails team admins 7 days before it expires and again when it has expired or been revoked",
    "fetchedAt": "2026-09-16T20:47:54.864Z"
  },
  {
    "id": "gecko-security-comm-1",
    "tier": "community",
    "url": "https://news.ycombinator.com/item?id=44747204",
    "excerpt": "OAuth flow asks for permission to write GitHub email/profile settings and 'act on my behalf' - concerning for a vuln scan tool, not just fine-grained repo access.",
    "fetchedAt": "2026-09-14T23:34:29.925Z"
  },
  {
    "id": "gecko-security-comm-2",
    "tier": "community",
    "url": "https://news.ycombinator.com/item?id=44747204",
    "excerpt": "Scanned an OSS MCP server for databases and it found 0 vulnerabilities, leaving user unsure if code was perfect or the tool has issues.",
    "fetchedAt": "2026-09-14T23:34:29.925Z"
  },
  {
    "id": "gecko-security-comm-3",
    "tier": "community",
    "url": "https://news.ycombinator.com/item?id=44747204",
    "excerpt": "Tool gave 100% confidence for two vulnerabilities (severity 9.4 and 6.5) that turned out not to be real.",
    "fetchedAt": "2026-09-14T23:34:29.925Z"
  },
  {
    "id": "gecko-security-comm-4",
    "tier": "community",
    "url": "https://news.ycombinator.com/item?id=44747204",
    "excerpt": "Ran Gecko on a C project after Semgrep AI flagged a minor real issue; Gecko found nothing. After removing the fix and recreating the project, scan showed as started but scan list stayed empty - suspected UI bug.",
    "fetchedAt": "2026-09-14T23:34:29.925Z"
  },
  {
    "id": "gecko-security-comm-5",
    "tier": "community",
    "url": "https://news.ycombinator.com/item?id=44747204",
    "excerpt": "Uploaded a project (sydbox) to scan; took 10 minutes and found only one vulnerability, an 'RCE: IRC Message Command Execution Bypass' in an IRC bot script for a CTF server, deemed hilarious/inaccurate by the user.",
    "fetchedAt": "2026-09-14T23:34:29.925Z"
  },
  {
    "id": "gecko-security-comm-6",
    "tier": "community",
    "url": "https://news.ycombinator.com/item?id=44747204",
    "excerpt": "Encountered a raw JSON error ('EISDIR: illegal operation on a directory, read') visible only via dev tools, with no user-facing error message in the UI - criticized as poor error handling for a security tool.",
    "fetchedAt": "2026-09-14T23:34:29.925Z"
  },
  {
    "id": "gecko-security-comm-7",
    "tier": "community",
    "url": "https://news.ycombinator.com/item?id=44747204",
    "excerpt": "User objects to GitHub OAuth requesting 'act on your behalf' permission, equating it to full admin access across all repos and orgs; asks Gecko to use fine-grained GitHub App permissions instead, stating they'll never sign up otherwise.",
    "fetchedAt": "2026-09-14T23:34:29.925Z"
  },
  {
    "id": "gecko-security-comm-8",
    "tier": "community",
    "url": "https://news.ycombinator.com/item?id=45574313",
    "excerpt": "Gecko Security accused of stealing CVE reporting credit from FuzzingLabs; Gecko responded that they work directly with maintainers via GitHub (not bounty platforms), publicly credited FuzzingLabs for 2 CVEs where their findings came first, and noted disputed links were already marked duplicate/invalid on Huntr.",
    "fetchedAt": "2026-09-14T23:34:29.925Z"
  },
  {
    "id": "gecko-security-probe-1",
    "tier": "probe",
    "url": "https://gecko.security/llms.txt",
    "excerpt": "PROBE llms.txt: HTTP 200 at https://gecko.security/llms.txt # Gecko Security\n\n> Gecko Security is an AI security engineer that finds exploitable vulnerabilities and helps developer",
    "fetchedAt": "2026-09-16T20:47:56.192Z"
  },
  {
    "id": "gecko-security-probe-2",
    "tier": "probe",
    "url": "https://gecko.security/docs.md",
    "excerpt": "PROBE docs-md: HTTP 200 at https://gecko.security/docs.md ---\ntitle: \"Gecko Security - Gecko Security\"\ndescription: \"An AI security engineer that finds real, exploitable vulnerab",
    "fetchedAt": "2026-09-16T20:47:56.192Z"
  },
  {
    "id": "gecko-security-probe-3",
    "tier": "probe",
    "url": "https://gecko.security/openapi.json",
    "excerpt": "PROBE openapi: HTTP 200 at https://gecko.security/openapi.json — contains \"openapi\" key",
    "fetchedAt": "2026-09-16T20:47:56.192Z"
  },
  {
    "id": "gecko-security-probe-4",
    "tier": "probe",
    "url": "https://gecko.security/docs/ai-tools/overview",
    "excerpt": "official MCP server documented at https://gecko.security/docs/ai-tools/overview",
    "fetchedAt": "2026-09-16T20:47:56.192Z"
  }
]
