Visual Studio Code
Microsoft's extensible code editor
Packaged runtime verified on 0.5.0
Open in Visual Studio CodeVS Marketplace fallbackcode --install-extension soterai.soterai-ide-guardFree IDE extension for risk-free vibe coding — keep secrets out of AI.
✦ Risk-free vibe coding
Stop your API keys, tokens, and customer secrets from reaching AI. SoterAI IDE Guard inspects every prompt, selection, and file before it leaves your editor — scanning secrets, PII, prompt injection, MCP configuration, and terminal commands where your team works.
Live on both registries
Version 0.5.0 API-verified
5 editor runtimes verified
Same packaged VSIX, seven host checks
No account for local scans
Cloud connection is explicit and optional
Choose your editor
Click the primary action to open SoterAI directly in your installed editor. Use the registry fallback if the browser blocks the editor prompt or the IDE is not installed on this device.
Microsoft's extensible code editor
Packaged runtime verified on 0.5.0
Open in Visual Studio CodeVS Marketplace fallbackcode --install-extension soterai.soterai-ide-guardAI-native software development
Packaged runtime verified on 0.5.0
Open in CursorOpen VSX fallbackcursor --install-extension soterai.soterai-ide-guardAgentic development environment
Packaged runtime verified on 0.5.0
Open in WindsurfOpen VSX fallbackwindsurf --install-extension soterai.soterai-ide-guardSpec-driven agentic IDE
Packaged runtime verified on 0.5.0
Open in KiroOpen VSX fallbackkiro --install-extension soterai.soterai-ide-guardAgent-first development environment
Packaged runtime verified on 0.5.0
Open in AntigravityOpen VSX fallbackantigravity --install-extension soterai.soterai-ide-guardCommunity-built, telemetry-free editor
Published on Open VSX; local runtime verification pending
Open in VSCodiumOpen VSX fallbackcodium --install-extension soterai.soterai-ide-guardNeed an offline or controlled deployment?
Download the exact Open VSX package, then verify its registry-provided SHA-256 checksum.
Protection surface
Local checks are available immediately after installation. Strong enforcement applies to workflows routed through SoterAI's guarded commands or local broker.
Scan files, selections, git changes, and prompts locally. Create a redacted copy before content reaches an AI workflow.
Detect prompt injection, hidden instruction patterns, and obfuscated content with explicit allow, redact, ask, or block decisions.
Review MCP configuration and tool permissions before connection, with honest detection-only coverage labels where mediation is unavailable.
Preflight risky terminal commands and use the controlled terminal route for fixed-argument, allowlisted operations.
Product evidence
These captures come from the extension-host verification flow and use synthetic test data only.

A local scan reports the risk without exposing the detected value in the result.

Review selected context and produce a safer copy before sharing it with an AI assistant.

Apply a local protection profile and keep the active posture visible inside the editor.
Enterprise deployment
Start local, then add team policy and brokered traffic controls where your threat model requires consistent enforcement and reviewable evidence.
Safety settings that can weaken protection or change data routing cannot be overridden by a repository setting.
Local scanning remains available in restricted workspaces while cloud connection, token storage, and remote escalation stay disabled.
Review redacted decisions, hashes, file metadata, and policy state without retaining raw secrets in exported views.
Route supported OpenAI- and Anthropic-compatible traffic through the authenticated loopback broker for request and response checks.
Release details
Registry availability and release identity were verified against the Visual Studio Marketplace extension query API and the Open VSX Registry API. Runtime status reflects packaged execution evidence stored for version 0.5.0; VSCodium is marked separately because a local host verification artifact is not present.