Back to browse
bolt.diy
AgentPrompt, run, edit, and deploy full-stack web apps
StackBlitz289.0K installs4.3 (1.7K)
88
TrustedSecurity
90
Quality
85
Maintenance
87
Safety Tier Medium Risk
Security ScanScan Passed
PriceFree
Last Scanned5/12/2026
About
Open-source version of Bolt.new. Build full-stack NodeJS web apps from prompts directly in the browser. Supports 19+ LLMs, MCP integration, Git integration, and file locking.
Tags
Categories
Developer ToolsFrontend
Security Scan
90/100
11 checks · 10 passed · 1 finding5/13/2026
Scanners:customsemgrepgitleakstrivy
SSRF Detection1
Prompt Injection
Data Exfiltration
Dangerous Commands
Secret Detection
Obfuscation
External Fetches
Credential Access
Privilege Escalation
Secret Detection (Gitleaks)
Static Security Analysis
Findings (1)
highPrivate IP range accesscustom
docker-compose.yaml:91
50 files scanned from repository