Documentation
Everything you need to install, configure, and use ShipSafe to secure your codebase.
Guides
Getting Started →
Install ShipSafe, run your first scan, understand results, and set up git hooks. From zero to secured in under 60 seconds.
CLI Reference →
Complete reference for all ShipSafe CLI commands: scan, init, setup, baseline, activate, scan-environment, and config.
MCP Server →
Reference for all 8 MCP tools: shipsafe_scan, shipsafe_status, shipsafe_check_package, and more. Integrate with Claude, Cursor, and Windsurf.
Configuration →
Configure ShipSafe with .shipsafeignore, shipsafe.config.json, environment variables, and baseline management.
Quick Links
Changelog
Version history from v0.2.5 to v1.0.6
SQL Injection Rules
127 SQL injection detection rules
Prompt Injection Rules
7 prompt injection detection rules
Secret Detection
174 secret detection patterns
Scanning Claude Code Projects
Guide to securing AI-generated code
ShipSafe vs Semgrep
Side-by-side comparison
Quick Install
npm install -g @shipsafe/cliThen run shipsafe scan in any project.