SnippKit Logo
Back to LaunchGuard Scanner

How LaunchGuard Works

LaunchGuard is a 100% client-side pre-deployment security scanner designed to run on any operating system and browser without server telemetry.

Zero Telemetry

Files are ingested into your browser's local memory only. Nothing is ever uploaded, sent to an external API, or stored on servers.

Cross-Platform Heuristics

Runs on macOS, Linux, and Windows. Detects OS junk (.DS_Store, Thumbs.db), CRLF line endings, and tech stacks automatically.

Multi-Tier Access

Supports Native File Access API, HTML5 Webkit Directory Upload, and Drag & Drop across Safari, Firefox, Chrome, and Edge.

Platform & OS Compatibility

macOS Support

Detects .DS_Store, .__MACOSX, and AppleDouble metadata files leaked into repositories.

Windows Support

Detects Thumbs.db, desktop.ini, path separators (\ vs /), and shell CRLF line endings.

Linux Support

Detects .directory, Linux hidden mount files, and POSIX shell executable permissions.

Scan Rule Breakdown

Secrets & Environment FilesHigh Severity

  • Purpose: Prevent accidental git commits of AWS keys, Stripe tokens, OpenAI API keys, Firebase credentials, and private RSA keys.
  • Method: Regex scanning across source files for high-entropy secret patterns and client-side exposed prefixes (NEXT_PUBLIC_, VITE_).

Console Logs & DebuggersAuto-Fix Supported

  • Purpose: Eliminate active debug console outputs and main-thread blocking debugger statements before pushing to production.
  • One-Click Auto Fix: With directory access, LaunchGuard can safely comment out console.log lines and uncomment them later if needed.

Git & OS HygieneCross-Platform

  • Purpose: Keep repositories clean of tracked node_modules, build outputs (.next, dist), OS metadata files, and git conflict markers (<<<<<<< HEAD).