NNadhi Fix-It Challenge
Open until 24 August

Fix a real vulnerability.
Let the machine prove it.

Point Nadhi Audit at a repository you own. It finds the security holes, patches them, verifies every patch on your own machine, and opens the pull request. Submit that PR — the highest score takes ₹5,000.

How the two weeks run

All times IST. Submissions close before judging starts — a fix that lands after the deadline still counts if the pull request was submitted in time.

15 Aug — 24 Aug
Submissions open

Audit a repository you own, let Nadhi open the pull request, submit the link. The board scores it the moment it verifies.

25 Aug — 26 Aug
Judging

Entries close. We read the top diffs by hand against the findings they claim — automatic scoring orders the board, a human signs the cheque.

27 Aug
Results

Winner announced here and on Product Hunt. Licences go out to everyone whose entry verified.

How to enter

Four minutes, start to finish, on a repository you already own.

1

Run the audit

Open Nadhi Audit and type /full_audit <repo>. It scans, judges every finding, and applies only the fixes it can verify — nothing leaves your machine.

2

Let it open the PR

Fixes are committed to a nadhi branch and pushed as a pull request, with each remediated finding listed by severity.

3

Paste the link

Drop the PR URL on the Submit page. We verify it against GitHub and it appears on the board immediately.

Why we are running this

An auditor that finds problems is easy. One whose patches you are willing to ship is not. Every entry here is a public pull request against a real codebase its owner actually maintains — read by the one person with the strongest reason to reject a bad fix. That is what the prize is buying. It is also why we kept this to your own repositories: a competition that pays people to patch strangers' projects buries maintainers, and we are not doing that for a launch.

The Nadhi Fix-It Challenge — ship a verified security fix, win ₹5,000