Resources

FAQ

Quick answers to common questions.

Is my source code safe?

Access is read-only wherever possible and detected secrets are masked before storage. We never sell your data. See Data & security and the Privacy Policy.

Does Riscly guarantee my app is secure?

No. Riscly is an assistive tool. Automated analysis cannot find every issue and fixes are suggestions you must review and test. Security responsibility for your systems stays with you.

Can I use Riscly outside Germany / the EU?

Yes — Riscly is offered worldwide. International data transfers rely on EU Standard Contractual Clauses and, where certified, the EU-US Data Privacy Framework.

Do I need a credit card to start?

No. You can run your first project on the free tier. Upgrade when you need more projects, scans or seats — see Pricing.

How are scans billed?

Plans include a daily scan allowance and project/seat limits. Read your current usage and limits from the billing endpoint or Settings → Billing.

What languages and providers are supported?

Source: GitHub and GitLab. Cloud & services: Vercel, Supabase, AWS and more. See Connect a repository for the current list.

How do I delete my data?

Delete a project to remove its scan data, or contact us to delete your account. Statutory retention may apply to invoices.

Is there an API?

Yes — the same REST API powers the dashboard. Start with Authentication and the API reference.