Preflight.sh is a CLI tool that scans your codebase for launch readiness before you deploy. It checks for leaked secrets, broken configs, expired SSL, missing SEO tags, security gaps, and misconfigured services.
Run preflight init and preflight scan, or wire it into CI or a GitHub Action. It works without an account or config files, and it gives you a plain pass/fail read on the stuff that usually slips through.
It checks things like environment variables, health endpoints, security headers, dependency vulnerabilities, Open Graph and Twitter cards, robots.txt, sitemap.xml, and more. It also covers a long list of common services, from Stripe and Sentry to Postmark, Auth0, Slack, and Cloudflare.
Follow the project
→Built by
