ZeroFlaw

Documentation

Code scan (ZIP)

What is a code scan?

In a code scan you upload your source code as a ZIP file. ZeroFlaw extracts it and runs multiple security scanners over the code. You get a detailed list of all vulnerabilities found – from critical security flaws to minor improvement suggestions.

How to start a code scan

  1. In the dashboard click "New scan".
  2. Select the "Upload code" tab.
  3. Drag your ZIP file into the upload area or click to choose a file.
  4. Click "Start scan".

Which files are checked?

ZeroFlaw detects the programming language automatically and selects the right scanners. Supported languages include:

  • JavaScript / TypeScript (including Node.js, React, Vue, Angular)
  • Python
  • PHP
  • Java / Kotlin
  • Go
  • Ruby
  • C / C++
  • C# / .NET
  • and more – see Scanner engines

File size and limits

PropertyLimit
Maximum file size200 MB
Allowed formatsZIP
Concurrent scansmax. 3
Tip Exclude folders like node_modules, vendor or .git from your ZIP file. This makes the upload faster and avoids unnecessary findings in third-party code.

What happens behind the scenes?

  1. Your ZIP file is stored encrypted on the server.
  2. A worker extracts the file in an isolated environment.
  3. Multiple scanner engines analyze the code simultaneously (see Engines).
  4. Results are merged, rated and displayed in your dashboard.
  5. Your source code is automatically deleted after the scan.
Important Only upload code you are authorized to scan. ZeroFlaw may only be used for your own or authorized systems.

FAQ

My upload fails – what should I do?

Check that your file is a valid ZIP and not larger than 200 MB. Make sure the file is not password-protected.

Can I upload individual files instead of a ZIP?

No, currently only the ZIP format is supported. Simply zip your project – most operating systems can do this with a right-click.

How long does a scan take?

It depends on the size of your project. Small projects often take just 1–2 minutes, larger ones up to 10 minutes. You can see the progress live in the dashboard.