01
You drop your URL
Lovable, v0, Bolt, or your own build. Public URL is enough, no auth needed.
01 / Audit
Drop your URL. Within 72 hours I record a 5-minute Loom auditing your build: auth, data, security, observability. No call. No pitch. Just the video.
02 / Process
Three steps. No call. No pitch.
01
Lovable, v0, Bolt, or your own build. Public URL is enough, no auth needed.
02
I record a 5-minute Loom looking at six axes: auth, data, security, tests, deploy, observability.
03
Reply lands in your inbox. Usually faster than 72h, that's the worst case.
03 / Submit
I review every submission personally. Reports go out within 72 hours, usually faster.
04 / Scope
Six axes that catch ~80% of what breaks an AI-built prototype in production.
Auth
Provider, session storage, MFA presence, token leakage.
Data
API exposure, hardcoded keys, anonymous data access.
Security
HTTPS, headers, common path enumeration, mixed content.
Tests
Source maps shipped, console errors, broken-link rate.
Deploy
CDN, compression, cache headers, custom domain.
Observability
Error tracking, analytics, health endpoints.
05 / FAQ
No. The 5-minute Loom is free. There's no card on file, no follow-up call required, no upsell email sequence.
No call, no deck. The Loom is the deliverable. If your build needs a deeper rebuild, I'll mention it once at the end of the video and link my offer. That's it.
Send me the public landing page or screenshots of the post-login flow. I'll audit what's reachable. The deeper the access, the deeper the audit.
Almost always faster, usually 24–48 hours. The 72 hours is the worst-case promise.
That's what the Production-grade MVP is for. The Loom shows the cracks, the rebuild closes them.
06 / Next
If your build needs more than a quick fix, the Production-grade MVP rebuilds it on a foundation that survives your first paying customer.
See the offer