Hey Bubblers ! Today we are really excited to introduce a Security Plugin to the Bubble Community
. For 3 years Iāve been bubbling for several apps and i learnt a lot about Bubble Security (thanks to tinkso ex-ideable and their tool apicheck). But today I saw a lot of vulnerabilities in the majority of Bubble apps! Itās so important for the no-code future to take security seriously and keep it confident.
Thatās why we worked for several months with my co-founder Kevin on a Security Plugin to let you check your own app and see if there are any security breaches (Token/Secret/Bearer, webhooks, Users emails, Business Data and moreā¦).
We check Data API, Plugin & API Connector, Option Sets content, Pages List, Database Default Value, Static Content (premium) and Privacy Rules (premium).

How itās works:
1/ Enter the URL of your Bubble app on https://nocodenohack.com and authenticate it by adding the nocode:nohack plugin.
2/ Wait for the test end (less than 10min)
3/ Upgrade if you want to see more vulnerabilities (30 days money back)
4/ Review vulnerabilities (ignore all false-positive) and learn how to fix them
5/ If you need help, contact us by using our live chat ![]()

After your sign up, you will receive our ebook āGuide to Secure your Bubble appā
We are adding more and more features to our security engine to help you to secure your Bubble app better and better. Contact us if you have some ideas ![]()
ps : yes, itās a Bubble app too
!










. Now, even with the workaround used, a user cannot scan an application that he doesnāt own. We havenāt seen other users using this workaround, thank you very much for your help