Static security analysis for FiveM

Scan FiveM resources before they reach your server.

Upload a script or resource and inspect it for suspicious code, hidden backdoors, obfuscation, dangerous events, remote requests, and other security risks.

Static analysis only Source stays private No code execution
security-report.rgInterface preview
RESOURCE REPORTvehicle-pack128 files analyzed
34Low risk
4 findings2.4k lines1.2s scan
External request requires reviewserver/logger.lua · line 42
Debug logging enabledclient/main.lua · line 18
No dynamic code execution detected
Purpose-built analysis

A clearer view of every resource.

Focused checks for the behavior that matters on a FiveM server, presented without the noise of a traditional security dashboard.

Archive inspection

Safely maps ZIP and RAR archives with traversal and archive-bomb defenses.

Backdoor detection

Finds remote loaders, command execution, and concealed administrative behavior.

Obfuscation detection

Surfaces encoded payloads, hidden Unicode, and unusually concealed source.

Network request analysis

Extracts remote destinations and explains when request behavior deserves review.

FiveM event analysis

Reviews network events near sensitive money, inventory, and permission operations.

Dependency inspection

Maps manifests, referenced files, and unexpected resource relationships.

Detailed reports

Every finding includes evidence, confidence, impact, and a practical recommendation.

Scan history

Keep metadata and reports while uploaded source can be removed after analysis.

Three thoughtful steps

From upload to understanding.

01

Upload your resource

Choose an archive or source file. Validation begins before extraction.

02

Wait for secure analysis

Files are inspected statically. XProtect never runs uploaded scripts.

03

Review and export

Explore evidence line by line, then export the report for your team.

Private by design

Your source is yours.

Resources are processed as untrusted input, never published, and can be deleted immediately after scanning. Reports preserve useful metadata without exposing complete source code.