Catarina checks the code ChatGPT, Claude and Gemini give you, and tells you in plain words if something looks risky, before you copy or run it.
Add to Chrome — coming soonFree. No account. Your code never leaves your browser.
import requests r = requests.get(url, verify=False) print(r.status_code)
API keys, tokens, private keys, passwords written into code.
SQL built from text, shell commands, unescaped user input.
Disabled certificate checks, weak hashes, open CORS, risky deserialization.
Open ChatGPT, Claude or Gemini and ask for code. Catarina outlines each block that needs a look, adds a short note with the line number, why it matters and how to fix it, and warns you if you copy a high-risk block.
All checks run on your own computer. There is no server, no account and no tracking. Read the privacy policy.
Catarina matches known risk patterns. She doesn't find missing login checks or flaws that span several files. "Clear" means no known pattern matched, not that the code is safe.