I'm not a developer by training. I'm an analyst.
No team, no budget. Used AI as coding hands and analytical thinking as architecture brain.
The result: Auditor Core — a CLI security auditing engine with 10 detection engines, mathematical SPI scoring (WSPM v2.2), and hardware-bound licensing.
The hardest part wasn't the code. It was understanding why nobody wanted to buy it — security teams don't want to hear that their expensive tools produce 99% noise. It threatens their jobs.
Scanned 7 real-world AI infrastructure codebases:
→ Raw findings: ~7,600
→ Actionable after context filtering: 1
→ Responsible disclosure sent: 1
Free demo — 3 runs, no signup, no telemetry:
https://github.com/auditor-core-systems/auditor-core-demo
Still figuring out distribution. Happy to hear from anyone who's been through this.