Natively - Free open-source AI interview copilot & meeting assistant. The best Cluely alternative, Final Round AI alternative, and Interview Coder alternative. Real-time transcription, undetectable stealth mode, local RAG, BYOK. No subscriptions. No data breaches.
# Add to your Claude Code skills
git clone https://github.com/Natively-AI-assistant/natively-cluely-ai-assistantGuides for using ai agents skills like natively-cluely-ai-assistant.
Last scanned: 5/1/2026
{
"issues": [
{
"type": "npm-audit",
"message": "@google-cloud/speech: Vulnerability found",
"severity": "medium"
},
{
"type": "npm-audit",
"message": "@hono/node-server: @hono/node-server: Middleware bypass via repeated slashes in serveStatic",
"severity": "medium"
},
{
"type": "npm-audit",
"message": "@tapjs/after: Vulnerability found",
"severity": "medium"
},
{
"type": "npm-audit",
"message": "@tapjs/after-each: Vulnerability found",
"severity": "medium"
},
{
"type": "npm-audit",
"message": "@tapjs/asserts: Vulnerability found",
"severity": "medium"
},
{
"type": "npm-audit",
"message": "@tapjs/before: Vulnerability found",
"severity": "medium"
},
{
"type": "npm-audit",
"message": "@tapjs/before-each: Vulnerability found",
"severity": "medium"
},
{
"type": "npm-audit",
"message": "@tapjs/chdir: Vulnerability found",
"severity": "medium"
},
{
"type": "npm-audit",
"message": "@tapjs/config: Vulnerability found",
"severity": "medium"
},
{
"type": "npm-audit",
"message": "@tapjs/core: Vulnerability found",
"severity": "medium"
},
{
"type": "npm-audit",
"message": "@tapjs/filter: Vulnerability found",
"severity": "medium"
},
{
"type": "npm-audit",
"message": "@tapjs/fixture: Vulnerability found",
"severity": "medium"
},
{
"type": "npm-audit",
"message": "@tapjs/intercept: Vulnerability found",
"severity": "medium"
},
{
"type": "npm-audit",
"message": "@tapjs/mock: Vulnerability found",
"severity": "medium"
},
{
"type": "npm-audit",
"message": "@tapjs/node-serialize: Vulnerability found",
"severity": "medium"
},
{
"type": "npm-audit",
"message": "@tapjs/processinfo: Vulnerability found",
"severity": "medium"
},
{
"type": "npm-audit",
"message": "@tapjs/reporter: Vulnerability found",
"severity": "medium"
},
{
"type": "npm-audit",
"message": "@tapjs/run: Vulnerability found",
"severity": "medium"
},
{
"type": "npm-audit",
"message": "@tapjs/snapshot: Vulnerability found",
"severity": "medium"
},
{
"type": "npm-audit",
"message": "@tapjs/spawn: Vulnerability found",
"severity": "medium"
},
{
"type": "npm-audit",
"message": "@tapjs/stdin: Vulnerability found",
"severity": "medium"
},
{
"type": "npm-audit",
"message": "@tapjs/test: Vulnerability found",
"severity": "medium"
},
{
"type": "npm-audit",
"message": "@tapjs/typescript: Vulnerability found",
"severity": "medium"
},
{
"type": "npm-audit",
"message": "@tapjs/worker: Vulnerability found",
"severity": "medium"
},
{
"type": "npm-audit",
"message": "@tootallnate/once: @tootallnate/once vulnerable to Incorrect Control Flow Scoping",
"severity": "low"
},
{
"type": "npm-audit",
"message": "@xenova/transformers: Vulnerability found",
"severity": "critical"
},
{
"type": "npm-audit",
"message": "@xmldom/xmldom: xmldom: Uncontrolled recursion in XML serialization leads to DoS",
"severity": "high"
},
{
"type": "npm-audit",
"message": "axios: Axios has a NO_PROXY Hostname Normalization Bypass that Leads to SSRF",
"severity": "medium"
},
{
"type": "npm-audit",
"message": "brace-expansion: brace-expansion: Zero-step sequence causes process hang and memory exhaustion",
"severity": "medium"
},
{
"type": "npm-audit",
"message": "cacache: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "diff: jsdiff has a Denial of Service vulnerability in parsePatch and applyPatch",
"severity": "low"
},
{
"type": "npm-audit",
"message": "dompurify: DOMPurify is vulnerable to mutation-XSS via Re-Contextualization ",
"severity": "medium"
},
{
"type": "npm-audit",
"message": "electron: Electron has ASAR Integrity Bypass via resource modification",
"severity": "high"
},
{
"type": "npm-audit",
"message": "electron-rebuild: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "esbuild: esbuild enables any website to send any requests to the development server and read the response",
"severity": "medium"
},
{
"type": "npm-audit",
"message": "flatted: flatted vulnerable to unbounded recursion DoS in parse() revive phase",
"severity": "high"
},
{
"type": "npm-audit",
"message": "follow-redirects: follow-redirects leaks Custom Authentication Headers to Cross-Domain Redirect Targets",
"severity": "medium"
},
{
"type": "npm-audit",
"message": "hono: Hono missing validation of cookie name on write path in setCookie()",
"severity": "medium"
},
{
"type": "npm-audit",
"message": "http-proxy-agent: Vulnerability found",
"severity": "low"
},
{
"type": "npm-audit",
"message": "jspdf: jsPDF has a PDF Object Injection via FreeText color",
"severity": "critical"
},
{
"type": "npm-audit",
"message": "lodash: lodash vulnerable to Code Injection via `_.template` imports key names",
"severity": "high"
},
{
"type": "npm-audit",
"message": "make-fetch-happen: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "minimatch: minimatch ReDoS: nested *() extglobs generate catastrophically backtracking regular expressions",
"severity": "high"
},
{
"type": "npm-audit",
"message": "node-gyp: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "onnx-proto: Vulnerability found",
"severity": "critical"
},
{
"type": "npm-audit",
"message": "onnxruntime-web: Vulnerability found",
"severity": "critical"
},
{
"type": "npm-audit",
"message": "picomatch: Picomatch: Method Injection in POSIX Character Classes causes incorrect Glob Matching",
"severity": "high"
},
{
"type": "npm-audit",
"message": "postcss: PostCSS has XSS via Unescaped </style> in its CSS Stringify Output",
"severity": "medium"
},
{
"type": "npm-audit",
"message": "prismjs: PrismJS DOM Clobbering vulnerability",
"severity": "medium"
},
{
"type": "npm-audit",
"message": "protobufjs: Arbitrary code execution in protobufjs",
"severity": "critical"
},
{
"type": "npm-audit",
"message": "react-code-blocks: Vulnerability found",
"severity": "medium"
},
{
"type": "npm-audit",
"message": "react-syntax-highlighter: Vulnerability found",
"severity": "medium"
},
{
"type": "npm-audit",
"message": "refractor: Vulnerability found",
"severity": "medium"
},
{
"type": "npm-audit",
"message": "sqlite3: Vulnerability found",
"severity": "high"
},
{
"type": "npm-audit",
"message": "styled-components: Vulnerability found",
"severity": "medium"
},
{
"type": "npm-audit",
"message": "tap: Vulnerability found",
"severity": "medium"
},
{
"type": "npm-audit",
"message": "tar: node-tar Vulnerable to Arbitrary File Creation/Overwrite via Hardlink Path Traversal",
"severity": "high"
},
{
"type": "npm-audit",
"message": "teeny-request: Vulnerability found",
"severity": "low"
},
{
"type": "npm-audit",
"message": "uuid: uuid: Missing buffer bounds check in v3/v5/v6 when buf is provided",
"severity": "medium"
},
{
"type": "npm-audit",
"message": "vite: Vite Vulnerable to Path Traversal in Optimized Deps `.map` Handling",
"severity": "medium"
},
{
"type": "npm-audit",
"message": "yaml: yaml is vulnerable to Stack Overflow via deeply nested YAML collections",
"severity": "medium"
}
],
"status": "FAILED",
"scannedAt": "2026-05-01T06:39:45.120Z",
"semgrepRan": false,
"npmAuditRan": true,
"pipAuditRan": true
}If you’re looking for a hosted desktop recording API, consider checking out Recall.ai, an API that records Zoom, Google Meet, Microsoft Teams, in-person meetings, and more.
The best free alternative to Cluely, Final Round AI, LockedIn AI, and Interview Coder. Same UI as Cluely. More features. $0. Open source. No data breaches.
No comments yet. Be the first to share your thoughts!
Competitors charge $20–$149/month, store your data on their servers, and one already breached 83,000 users. Natively costs $0, runs locally, and has never had a data breach. Your keys, your models, your machine.
Requires macOS 12+ (Apple Silicon & Intel) or Windows 10/11
👥 9,000+ Users · 🔥 700+ DAU · 💸 $0 vs $149/mo rivals · ⚡ <500ms latency · 🛡️ 0 data breaches
Natively started as a pixel-perfect recreation of Cluely's interface — then kept going. If you've used Cluely, you already know how to use Natively. Same overlay, same workflow, same shortcuts. Except it's free, open-source, runs locally, supports any LLM, and has never breached a single user's data.
Looking for a free Cluely alternative? A Cluely open-source clone? You found it.
"This is a fantastic piece of software and you should definitely keep up the great work! This is exactly what I was looking for. I started out trying the open-source version, and because it worked so well, I decided to go ahead and buy the full premium license."
— Oskar Krzak (⭐⭐⭐⭐⭐ via Gumroad)
"Natively is significantly faster than Cluely when it comes to response time and screen analysis. The latency is practically non-existent."
— Premium User
"Just wanted to say thanks! Natively helped me completely crack the first two rounds of my Software Engineering interviews. The responses were incredibly fast and accurate."
— Private Email Feedback
"Used the free version of Natively for my interviews and just landed a massive summer internship. It took all the stress out of the live coding and behavioral rounds!"
— Private Email Feedback
While other tools act as simple API wrappers, Natively is a complete, native intelligence system designed specifically for high-stakes meetings and interviews.
Every star pushes Natively higher in GitHub search, helping developers and job seekers find a free, private alternative instead of paying $149/month for tools that store their data on someone else's server.

This demo shows a complete live meeting scenario:
| Feature | Natively | Cluely | Pluely | LockedIn AI | Final Round AI | | :------------------------ | :------------------------- | :------