About BattleTester
A solo-built tool for testing the security of web apps, written by someone who got tired of seeing fast-built sites ship with no security at all.
I'm Yovel Ovadia. I've been a software developer for the last 6-7 years, and I recently left my job to just build things I actually find interesting.
I started building BattleTester after seeing the rise of AI vibe-coded sites and the lack of security they have. Figured, if they are so easy to build, why not make it easy to test them?
So I started working on the project, but I wanted to make it better than just bashing an AI against a site with a bunch of random tools.
The way BattleTester works is by using AI only when "human supervision" is needed. A lot of the code is deterministic, and it only calls AI to verify false negatives, connect the dots between endpoints, or find exploits in the structured data it's given. This gives it high coverage while keeping it more accurate and cheaper than just letting an AI throw everything it has at a target with no clear signal.
I'm building this in public, with a Discord community where you can follow the progress, report bugs, share feedback, and help shape what gets built next. No corporate roadmap, no marketing fluff. Just a tool getting better every week.
If that sounds like something you need, join the Discord or just start a scan.