Blog

Building for Autonomy

Thoughts on agent-first infrastructure, self-hosted systems, and owning the stack.

Filtering by: #machin-secure × Clear
#machin #ai-agents #open-source #agent-first #ai-engineering #devtools #peage #self-hosted #agents #cli #compiler #security #automaintainer #dogfooding #mfl #remotecmd #infrastructure #performance #roam #supercli #x402 #a2a #agent-economy #analytics #compilers #concurrency #devops #game-dev #grange #hart
Product · August 2026

Free SAST for private repos — no per-developer seat tax

GitHub CodeQL is free for public repos. For private repos it's $49/committer/month. Snyk is $25/dev. Semgrep is $40/dev plus AI credits per finding. machin-secure is free — for private repos too, no enterprise plan required, no per-developer seat tax, your code never leaves your CI. Here's what it is, what it isn't, and why I built it.

#machin-secure #security #ci #open-source #sast
Read more
Product · August 2026

I Built a Security Auditor for AI Agents. It Has No AI Inside.

machin-secure scans a codebase for secrets, injection, and weak crypto and streams JSONL findings. The interesting part isn't the scanner — it's that it has no LLM client, no report generator, and no sandbox. The calling agent already is the model.

#machin-secure #machin #ai-agents #open-source #self-hosted #security #hart
Read more