Security scan profiles
GASecurityReleased Jun 2026All plansSource: lovable.dev
Security scan profiles is Lovable's Security feature: Enhanced security checks now available.
Lovable introduces two built-in security scan profiles: Basic and Deep scan. Basic checks for common security issues while Deep scan includes comprehensive reviews. Both scans provide instant feedback on project security upon publishing.
Example workflows
Starting points built from this record, not transcripts of a run. Each prompt is written the way it should be sent, as one paragraph, and each is worth editing before you send it.
Stand it up from scratch
You have read the record and want Security scan profiles working in a real project rather than a sandbox.
Set up Security scan profiles in this project — enhanced security checks now available. Walk it end to end, tell me exactly what you changed, and flag anything I have to switch on myself before it works.
Expected outcomeA working setup, a plain list of what changed, and a short list of anything left for you to switch on. Check that list before assuming it is done.
Run a Basic scan for common issues before every publish
The record lists this as one of the jobs Security scan profiles is meant for, so it is a fair first test of whether it fits your app.
In this project, use Security scan profiles for run a Basic scan for common issues before every publish. Build the smallest version that a real user could complete end to end, keep the change scoped to that path, and tell me how to test it myself.
Expected outcomeOne complete path a user can walk, the files and settings that changed, and the steps to test it. Walk it yourself before you ship it.
Review it before you publish
Security scan profiles is wired in and you are about to put it in front of people. This is the pass that catches the half-configured version.
Review how this project uses Security scan profiles before I publish. Check automatic security checks and customizable scan profiles, list anything that is missing, misconfigured, or only half wired, fix what is safe to fix, and tell me what you left alone and why.
Expected outcomeA findings list split into what was fixed and what was left, with a reason for each. Anything left alone is yours to decide on.
Trigger a Deep scan for a comprehensive pre-launch review
A second job the record lists for Security scan profiles, useful once the first path works.
Extend this project so Security scan profiles also covers trigger a Deep scan for a comprehensive pre-launch review. Reuse what is already wired rather than adding a parallel setup, and tell me what you reused and what is new.
Expected outcomeA second path built on the same setup, plus a note on what was shared and what was added.
Capabilities
- Automatic security checks
- Customizable scan profiles
- In-depth security assessments
- Real-time feedback on findings
- Integrations with publish workflow
- Enhanced security reporting
Use cases
- Run a Basic scan for common issues before every publish.
- Trigger a Deep scan for a comprehensive pre-launch review.
- Get instant security feedback the moment an app is published.
The link to lovable.dev uses a referral code. The atlas is otherwise unsponsored.
Frequently asked
What is Security scan profiles?
Security scan profiles is Lovable's Security feature: Enhanced security checks now available. Lovable introduces two built-in security scan profiles: Basic and Deep scan.
Is Security scan profiles GA or in beta?
Security scan profiles is generally available (GA) on Lovable.
What Lovable plan includes Security scan profiles?
Security scan profiles is available on all Lovable plans.
When did Security scan profiles launch?
Security scan profiles launched on Jun 1, 2026.
Related in Security
See all →What Lovable Shipped
One email a week. Every new feature. Nothing else.
A curated Monday roundup of every Lovable feature added or promoted to GA in the past week — pulled straight from the atlas.
No spam. Unsubscribe anytime. Independent, not affiliated with Lovable AB.