# FullStackRoadmap > A production readiness scanner for vibe-coded and AI-built apps. Paste a GitHub repo or upload a ZIP and get a scored report of the launch blockers your coding agent left behind — exposed secrets, missing auth, dependency CVEs, SAST issues, and business gaps — each with a copy-paste fix prompt your agent can run. FullStackRoadmap is built for solo founders and developers shipping apps from tools like Lovable, Bolt, Cursor, Replit, and Claude Code. These tools optimize for a working demo, not a safe production launch, so AI-generated code often ships with hardcoded secrets, wide-open CORS, unenforced auth, and vulnerable dependencies. The scanner finds those issues, scores production readiness out of 100, and hands you agent-ready fixes. Apply the fixes, re-scan, and watch the score climb as they verify. ## What it checks - Security and secrets: committed API keys, risky CORS, missing auth checks, weak security headers, unsafe production defaults (full-repo secret scan with masked evidence). - AI-generated code and dependency risk: lockfile CVE audit against the OSV database with fixed versions, plus SAST-lite detection of injection and SSRF sinks with exact file and line. - Product and launch gaps: legal pages, password reset, billing dunning, backups, analytics, and SEO basics. - Max Deep Audit: full-code AI review, business-risk analysis, and a live UX + Lighthouse probe of a deployed URL. ## Key pages - [Home — production readiness scanner](https://www.fullstackroadmap.com/): what it does, how it works, feature coverage, and pricing. - [Sample report](https://www.fullstackroadmap.com/report/demo): an example production readiness report with score, risk breakdown, launch checklist, dependency CVEs, and Deep Audit coverage. - [Terms of Service](https://www.fullstackroadmap.com/terms) - [Privacy Policy](https://www.fullstackroadmap.com/privacy) ## Pricing - Free scan ($0): a full production readiness scan on any public repo or ZIP — score, risk breakdown, issue titles/severities/summaries, and a launch checklist. 5 scans per month, no credit card. - Project Unlock ($29 one-time, per project): full CVE details, secret evidence, agent-ready fix prompts, manual guides, affected files, verification steps, and unlimited standard re-scans for that project. - Pro ($20/month): every project unlocked, private-repo scanning via GitHub, and 250 scans per month. - Max ($100/month): everything in Pro plus the Deep Audit (full-code AI review, SAST security analysis, AI business-risk review, live UX/Lighthouse probe) and 1000 scans per month. ## Contact - Support: support@fullstackroadmap.com