
Sighthound
Tree-sitter based static vulnerability scanner with pattern matching and taint-flow analysis for multi-language source code. Outputs findings as…

Tree-sitter based static vulnerability scanner with pattern matching and taint-flow analysis for multi-language source code. Outputs findings as…

Code security scanning tool (SAST) to discover, filter and prioritize security and privacy risks.

AST-free heuristic knowledge graph engine for deep repository intelligence and zero-trust security scanning. Integrates as a GitLab CI/CD component,…


Semgrep rules that flag header-trust auth bypass patterns (CVE-2025-29927 class). Companion to bk-security.github.io.

CLI tool to scan codebases for quantum-vulnerable cryptography

"Sucosh" is an automated Source Code vulnerability scanner and assessment framework for Python(Flask-Django) & NodeJs capable of performing code…

A static analysis tool for securing Go code

Adding this GitHub Action will scan your repository for sensitive data in your source code. We find things like passwords, server host strings, API…