Anthropic Offers Free AI Security Scans for Open-Source Projects
Anthropic has launched OSS Scanner, a service that gives open-source projects free, periodic vulnerability scans. The reports are generated entirely by AI with no human review, so some may be inaccurate.

Anthropic has announced a new service called OSS Scanner, designed to help open-source projects find security vulnerabilities. Projects that opt in will receive regular security scan results produced by the company's strongest models, including Claude Mythos. The service is free of charge.
The company explains that the reports will be fully model-generated, without human review or triage. This allows faster and more frequent scanning, but it also means some reports may turn out to be incorrect or invalid. Anthropic says the aim is to give open-source projects the greatest possible defensive advantage.
Not the first tool of its kind
OSS Scanner is not the first AI tool to help hunt for software bugs. In recent months, such tools have helped uncover several significant security flaws in open-source software. One example is the "Copy Fail" bug, which affected nearly every Linux distribution in May.
The problem of report overload
At the same time, some open-source projects are struggling with the sudden surge of AI-generated bug reports. Linus Torvalds and Google are among those cited as having difficulty keeping up. The new service may therefore both speed up the discovery of security problems and increase the number of reports that need to be checked.


