OpenSpec Cloud

Catch spec drift before it ships

Install once. Get a clear answer in GitHub.

Choose repositories once. We scan on install, every day, and on each pull request, then comment with exact evidence and the next step.

Expected
A password reset invalidates every active session.
Observed
src/auth/reset.ts:42 leaves existing refresh tokens valid.
Next
Fix the code and add a regression check. Keep the requirement.

Install the App to start scanning. Log in to see results, repositories, and scan history.