Invisible Unicode attacks, Trojan Source, Glassworm steganography, Rules File Backdoor — combining static analysis and AI deep analysis in one MCP server.
Detects 30+ invisible Unicode characters including Zero-Width Space, Soft Hyphen, and more
Detects CVE-2021-42574 attacks that use bidirectional control characters to disguise code execution order
Detects CVE-2021-42694 attacks where Cyrillic/Greek characters masquerade as Latin variable names
Detects Glassworm attack patterns — malicious payloads hidden in Variation Selectors
Detects prompt injection hidden in AI config files like .cursorrules, CLAUDE.md, and more
Detects typosquatting, slopsquatting, malicious install scripts, and suspicious packages
CodeBERT deep learning model automatically classifies obfuscated malicious code — catches threats that static rules miss
ProDetects eval+base64, env variable exfiltration, reverse shells, crypto wallet C2 channels, and more
Static analysis is free. AI deep analysis — pay only for what you use.
CodeSafer is a fully automated software product. All analysis is performed by static rules and AI models — no human-driven services are involved.
Free plan for individual developers
For freelancers and small projects
For teams and startups
Yes. Static analysis (invisible characters, BiDi, homoglyphs, obfuscation, and 8 scanners total) is unlimited and free. Only AI deep analysis is limited to 10 per session on the free plan.
Static analysis matches known patterns with rules. AI analysis uses a CodeBERT deep learning model to judge the intent of code — detecting new attack patterns that don't match any existing rules.
No. Static analysis runs entirely locally. AI analysis also runs the ONNX model locally. Only when using the API plan are code snippets sent to our server for processing — and they are never stored.
We offer a 30-day money-back guarantee on all paid plans. Refunds are processed within 7 business days. See our Refund Policy for details.
Any editor that supports the MCP protocol. This includes Claude Code, Cursor, VS Code (Copilot), and more.
Email us at paletteboxofficial@gmail.com. Dev plan users receive email support, and Team/Enterprise users get priority support with faster response times.