Vulert
Agentless software composition analysis from manifest or SBOM files — no code access, hourly scans, license compliance and container SBOMs.
Visit Vulert
vulert.comAbout Vulert
Vulert performs software composition analysis without installing an agent or being granted access to your source code. It works from manifest or SBOM files — package.json, requirements.txt and their equivalents — which is the detail that makes it adoptable in situations where a code-access-based scanner is a non-starter: agencies auditing a client's stack, contractors under a restrictive NDA, or a security team that needs coverage before legal signs off on repository access. Dependencies are monitored continuously with hourly scans, and alerts arrive by dashboard, email or JIRA, with alert policy management to keep the noise survivable. The product line spans application SCA, container and Docker image scanning, SBOM generation for both application and Docker layers, and license compliance — which identifies unwanted or incompatible open-source licences before they become a legal obligation rather than after. An AI-enhanced tier called Code Guard goes beyond "this dependency has a CVE" to identify whether the vulnerable code path is actually reachable in your usage, which is the difference between a genuine finding and the false-positive flood that trains teams to ignore scanners. A free public vulnerability database and scanner are available without an account, and pricing is per-application with unlimited packages and users on every tier.
Does ChatGPT recommend your AI tool?
If you're building in AI Security & Testing, run a free AI-visibility scan on your own product — we ask ChatGPT across 5 prompt angles and score how often you get named. ~30 seconds, no signup, no card.
Key Features
Tags
Is Vulert your tool?
This is the page buyers and AI assistants read when they look up Vulert. Claim your listing for $19 one-time — no subscription, nothing to cancel — and get a Featured badge, top placement in your category, and a permanent dofollow backlink. Prefer it ongoing? Monthly is one click away on the next page.
Complete Your Security Stack
Other security tools in our catalog:
1Password
Try FreeSecrets and credential manager
Keep API keys and .env secrets out of your repo
Gamma
Try FreeAI presentation builder
Turn ideas into polished decks instantly
AdCreative.ai
Try FreeAI-powered ad creatives
Generate marketing visuals in seconds
💰 Affiliate disclosure: We may earn a commission if you sign up through these links at no extra cost to you.
Stay updated on AI Security & Testing tools — join our weekly newsletter
One concise email with fresh launches, trending picks, and featured standouts.
Alternatives to Vulert
View all Vulert alternatives →More AI Security & Testing tools
Bot Butcher
LLM-based spam classification API for contact forms — a reCAPTCHA alternative with no visitor friction
SkillShield
Security-scanned directory of agent skills and MCP servers, with a local CLI scanner and VS Code extension
ZeroLeaks
Continuous AI red teaming for agents, endpoints and MCP tools, with unlimited scans on every plan
Vuln0x
AI pentest agent running 40+ parallel scanners and 29 Kali tools against Replit, Bolt, Lovable, Cursor and v0 projects, free 200 credits then $29–$199/month
Vynaris
Hosted uncensored Qwen3.8-27B, DeepSeek-V4-Flash-073, and Qwen3.6-35B-A3B for authorized security researh.
Xalgorix
An open-source autonomous AI pentester that proves every finding with a working exploit before reporting it, and gates CI on verified results — from $16/mo
Agent connectivity: not yet verified