Observed arrival · 2026-09-21
MANTISS Wants AppSec to Show Its Work
An AI-native application-security demo that links simulated scanning, evidence, remediation previews, and a changing security score.
- For
- Application-security and software-engineering teams
- Worth noticing
- The fixed fixture reports 14 candidates, 7 credible signals, and 3 confirmed findings.
Field notes
The homepage separates candidates, credible signals, and confirmed findings, then ties a sample SQL-injection candidate to api/orders.py:91, POST /api/orders, and the parameter id. Its three evidence layers combine static code analysis, controlled behavioral reproduction, and correlation across CWE, endpoint, parameter, and data-flow hints. The displayed auto-fix is only a synthetic patch preview: the page says it neither opens a repository nor creates a branch or pull request.
Observed signals
Read the marks
Editorial observations of this landing page, not a rating.
One card from the complete issue