Security

Sast

An AI autonomous agent that fetches your web app, finds vulnerabilities, patches the code, and generates a verified report. Sast automates the full security lifecycle—identifying, fixing, and verifying vulnerabilities with functional POCs. It ensures your software is secured as fast as it is coded, delivering superior precision through total process optimization.

Sast – AI Autonomous Security

Lead UI/UX Designer & Web Architect

Status: 2x Hackathon Winner 🏆

The Problem

"Code is being generated instantly by AI, but security is still stuck in a slow, manual process. That gap is where hackers win."

How It Works?

You feed it your repository or source code, and Sast spins up 10 autonomous agents. Each one has a specific job—they scan your app fully, identify flaws, and then actually patch the code.

What does it provide?

  • Autonomous Security: An agent that fetches your app, detects vulnerabilities, and fixes them—instantly.
  • Built-in IDE: Review and merge patches in a integrated development environment.
  • AI Vulnerability Search: Deep-level security search combined with automated code patching.

What I'm Proud Of

  • We won 2 major hackathons with this, earning 70,000 EGP in prizes.
  • I designed and built the entire high-end sast.tech website solo (my friend built the core app).

Business & Sustainability

The harsh reality I learned is that college projects focus only on tech—but if a project can't make $5 to cover its own server, it's just a hobby. My project "Collectable Kit" had cool UI and tech, but it failed the money test.

"When we joined the GDG Delta Hackathon, our first question wasn't 'Which tech stack?' but 'How to sell this?'. We priced it at 200 EGP because my friend found a vulnerability in an IDE that gave us free API access, making the project profitable from day one."

What I’ve Learned

  • Business Basics: How to build a product that customers actually pay for.
  • Premium Design: Mastering high-end technical website aesthetics.

The Hardest Technical Challenge

"The hardest part was making the UI look truly premium and clean while linking everything to Supabase. I integrated MCP (Model Context Protocol) to create a 'real' and secure login system that felt seamless with the rest of the application's clean design."