Cantina
Cantina is Who’s taking the first pass? Find a crit and receive up to $40,000 USDC. It is ranked #713 on the Dev Radar, in Security, first seen 20 days ago and shared in 5 posts (17.3k views).
What Cantina says about itself
Clarion adds Claude Code and MCP server visibility, human approvals and exposure sweeps. Apex gains Audit Setup, CLI updates and clear scan controls.
Claude Code and MCP Telemetry in Clarion | Cantina Changelog Skip to main content Get a free FHIR vulnerability scan, funded by Cantina. Copy logo as SVG View brand guidelines Copied Log in Start a Trial Products Apex Code security and pentesting Clarion Agentic Security Operations Bounties Researcher-powered security validation Onchain Security Secure smart contracts and protocols The Cantina Platform One security brain, shared by every agent One record of your environment, one set of autonomy policies, across every product. How the platform works Agents Integrations Trust & governance Use Cases Cloud Detection & Response Endpoint…
What people said about Cantina on X
Researchers, fresh bug bounty just landed @tenbinlabs is building a tokenization protocol that brings assets and their underlying liquidity on-chain, starting with yield-bearing BRL and MXN, alongside commodities like gold. the core code is live for hunting on Cantina. Who’s taking the first pass? Find a crit and…
— @cantinasecurity, 10 days ago · 74 likes · see the post
We pointed Apex at Pathling, an open source FHIR server used in hospitals. It discovered 5 high-severity findings and 6 public CVEs, one allowed a token limited to a single patient to access records that it should never have been able to reach. None of them would fail a conformance test. Building FHIR APIs for 2027?…
— @cantinasecurity, 20 days ago · 23 likes · see the post
In 2011, researchers spent six CPU years stress testing CompCert and found zero bugs in its formally verified core. CompCert later added new x86-64 code. 15 years after, Apex found a vulnerability in the new code which followed another discovery of 3 CompCert bugs a few weeks earlier. CompCert’s mathematical model…
— @cantinasecurity, 5 days ago · 22 likes · see the post
Alternatives to Cantina
- security-audit-skill — A coding-agent skill for multi-phase security audits with independently verified, machine-readable findings -…
- Cloudflare Blog — Use production traffic and security signals to prioritize findings, prepare edge mitigations when safe, and propose…
- not-a-mused — First, one of 0day PoCs
- entratrace — EntraTrace is a defensive security research tool for tracking and identifying the behavior of offensive tooling…
- CSA — Traditional threat modeling assumes you can map the attack surface ahead of time. An autonomous agent doesn't work…
- Gist — ZCode (zai-org/ZCode) 凭据加密的兜底密钥机制:默认情况下加密密钥由平台/家目录/用户名推导,偷取密文文件即等于拿到全部 API Key - ZCode-credential-fallback-gist.md
Cantina in numbers
- Rank on the Dev Radar: #713 of 2352
- Shared in 5 posts by 2 accounts: @cantinasecurity, @spearbit
- 17.3k views on those posts
- First seen 20 days ago, last shared 5 days ago
- Pricing seen by Jev: free
- Market: Security
FAQ
What is Cantina?
Who’s taking the first pass? Find a crit and receive up to $40,000 USDC It was first shared on X 20 days ago and is ranked #713 on the Dev Radar.
Is Cantina free?
Yes, it is free to use.
Who shared Cantina?
2 accounts on X, including @cantinasecurity, @spearbit, in 5 posts totalling 17.3k views.
Every post is read and classified by Jev (TypeSafe): what it is, which market it belongs to, and whether the link is a real tool. 20.7k posts from 4.9k X accounts over the last 21 days, 2.4k tools, 12 markets. Collected every 5 minutes, fully re-ranked every hour — last update 2026-09-22 08:21 UTC. Full method.