Introducing The Trust Index: a living public leaderboard for site security
The Trust Index turns private scan results into a public trust signal without turning the product into a vanity scoreboard.
Public signal
A score is more useful when it can be compared
Starting now, every VibeLeak scan has a percentile rank. That gives users a quick answer to the only question that matters: where does this site land relative to everything else we have seen?
Hall of Fame
Grade A / S
Opt-in only. Best for public credibility and trust badges.
Most Improved
Auto-tracked
No opt-in required. Biggest grade jumps get surfaced automatically.
Recent Feed
50 domains
Unlocks once the system has enough unique domains to feel alive.
Hall of Fame
Opt-in should feel like a reward, not a form
Grade A and S sites can add themselves to the Hall of Fame. That keeps the leaderboard honest and makes the opt-in moment feel intentional.
What users see
Recent feed
The recent tab is gated until the dataset is real
The feed unlocks only after enough unique domains have been scanned. That keeps the page from pretending to be live before there is enough signal.
- The recent tab remains locked until the threshold is reached.
- When it unlocks, the feed auto-refreshes on a slow interval.
- The lock state explains the threshold directly so users know what to do next.
Mechanics
Why the opt-in flow matters
Public trust systems only work when they make the reward legible. The trust index should make it obvious how to qualify, what the category means, and where the result links back.
Scan
Run a public scan and earn a score that can be compared to the rest of the corpus.
Qualify
Grades A and S can opt in to the leaderboard or stay private if that is the better move.
Show the proof
The public entry links back to the saved result so the signal stays auditable.
Product loop
The index is a growth mechanic, not decoration
People share rankings faster than they share raw numbers. The index gives the product a public surface while still keeping the underlying scan useful.
Practical outcome
Next action
Run the scanner against your own site
The article lands hardest when it turns into a fix list. Scan, close the gaps, and recheck.
Continue reading
More field notes
Security
Is VibeLeak safe to use? Report privacy, logs, and exports explained
A plain-English look at how VibeLeak scans public sites safely, what gets stored, who can see reports, and why full findings and Markdown exports stay owner-only.
Open articleSecurity
We Scanned the Moz Top 500. Even the Internet's Giants Are Missing the Basics.
VibeLeak ran its full trust surface scan against the Moz Top 500 most popular websites. This historical corpus still shows how common basic web security gaps are.
Open articleWorkflow
How to read a VibeLeak scan result
A VibeLeak scan returns a grade, a list of findings, and a percentile rank. Here is how to read each piece so you know what to fix first.
Open article