This product was not featured by Product Hunt yet. It will not be visible on their landing page and won't be ranked (cannot win product of the day regardless of upvotes).
ShimGuard
Verify merged status of PR fixes for closed issues"
ShimGuard is a dual CLI and library tool that validates GitHub issue integrity. It verifies whether issues marked as "fixed" actually have a corresponding merged pull request, bridging the gap between issue tracker claims and repository reality. It ships as a read-only, MIT-licensed package on npm and PyPI, bringing the same level of automated auditing to issue tracking that tools like TruffleHog bring to secret scanning.
While collaborating on security workflows and repository audits, we noticed a glaring blind spot. Just because a GitHub issue is closed as fixed does not mean the corresponding code was actually merged. Security scanners like Trivy, Grype, and OSV-Scanner do a fantastic job catching dependency CVEs, and tools like Gitleaks or TruffleHog are excellent for finding secrets. However, absolutely none of them verify a project's issue tracker claims against the actual repository reality. Security auditors need a definitive, automated way to know if a cited fix PR actually made it into the codebase.
We built ShimGuard to eliminate this gap by reporting a definitive MATCH, MISMATCH, or UNVERIFIED status.
What started as a lightweight check quickly evolved into a robust CLI and library architecture. To maximize accessibility, we expanded the build process to ship as packages on both npm and PyPI. Basic merge-status checking was simply not enough, so the tool evolved to include an optional deep-inspection feature to confirm that the vulnerable code pattern is actually absent at HEAD. To ensure teams could adopt it without security concerns of their own, we locked down the architecture to be completely read-only and released it under an open-source MIT license.
Repo: https://github.com/RudrenduPaul/...
MCP Servers:
https://mcpservers.org/servers/r...https://glama.ai/mcp/servers/Rud...
NPM: https://www.npmjs.com/package/sh...
PyPI: https://pypi.org/project/shimgua...
We are excited to get this into your hands. What specific edge cases in GitHub issue tracking do you think we should tackle in our next update?
No comment highlights available yet. Please check back later!
About ShimGuard on Product Hunt
“Verify merged status of PR fixes for closed issues"”
ShimGuard was submitted on Product Hunt and earned 0 upvotes and 1 comments, placing #158 on the daily leaderboard. ShimGuard is a dual CLI and library tool that validates GitHub issue integrity. It verifies whether issues marked as "fixed" actually have a corresponding merged pull request, bridging the gap between issue tracker claims and repository reality. It ships as a read-only, MIT-licensed package on npm and PyPI, bringing the same level of automated auditing to issue tracking that tools like TruffleHog bring to secret scanning.
ShimGuard was featured in Open Source (68.8k followers), Developer Tools (518.4k followers), Artificial Intelligence (477.4k followers) and GitHub (41.4k followers) on Product Hunt. Together, these topics include over 242k products, making this a competitive space to launch in.
Who hunted ShimGuard?
ShimGuard was hunted by Sourav Nandy. A “hunter” on Product Hunt is the community member who submits a product to the platform — uploading the images, the link, and tagging the makers behind it. Hunters typically write the first comment explaining why a product is worth attention, and their followers are notified the moment they post. Around 79% of featured launches on Product Hunt are self-hunted by their makers, but a well-known hunter still acts as a signal of quality to the rest of the community. See the full all-time top hunters leaderboard to discover who is shaping the Product Hunt ecosystem.
Want to see how ShimGuard stacked up against nearby launches in real time? Check out the live launch dashboard for upvote speed charts, proximity comparisons, and more analytics.