
cryptoptic
CodeQL-based scanner that inventories cryptographic function calls across repositories and GitHub organizations, producing a Cryptographic Bill of…

CodeQL-based scanner that inventories cryptographic function calls across repositories and GitHub organizations, producing a Cryptographic Bill of…

Adding this GitHub Action will scan your repository for sensitive data in your source code. We find things like passwords, server host strings, API…

CodeQL: the libraries and queries that power security researchers around the world, as well as code scanning in GitHub Advanced Security

GitHub Action for Offensive360 SAST scans and SARIF results. See the open-source program for eligibility and setup.

Web-based Source Code Vulnerability Scanner

Specialized reasoning LLM for source-code vulnerability detection in C/C++ and Python, with dataset construction, SFT/DPO training, and…

Static analysis security rules for vulnerability detection and audit-focused code review across Java, Go, Python, C#, Kotlin, PHP, Kubernetes, and…

📦 :octocat: A GitHub Action that performs a security scan of your GitHub Actions.

Go static analysis tool that checks for security issues using an AST.