A security dashboard is something people visit after an incident. Findings addressable by PR and by file mean the question can be asked where the work is happening — during review, about the diff in front of you. That is the difference between a tool that reports and one that changes what ships. No tool list is published, so the surface here is DryRun's description of it.
DryRun Security's insights endpoint. They publish no tool list; the documented capabilities are recent security activity, findings scoped to a pull request or file, natural-language questions about posture, and their Code Security Intelligence trends.
- Summaries of recent security activity
- Findings queried per pull request or per file
- Natural-language questions about security posture
- Code Security Intelligence trends and agent status
A bearer API key; OAuth protected-resource metadata is also present. MCP is included with the platform through API access keys, and sales is direct — the pricing page redirects to the homepage.
Paste a URL, then authorize — add the endpoint to your client, then approve the OAuth consent screen