
graudit
grep rough audit - source code auditing tool

grep rough audit - source code auditing tool

Static analysis tool for detecting ReDoS (Regular Expression Denial of Service) vulnerabilities in JavaScript and Scala codebases, providing…

PHP static application security testing (SAST) tool that performs taint analysis to detect XSS, SQL injection, and other vulnerabilities using…

OWASP Static Application Security Testing (SAST) tool for analyzing code quality and vulnerabilities, designed for DevSecOps integration to help…

Static analysis tool for infrastructure as code that detects cloud misconfigurations, vulnerabilities, and secrets across Terraform, Kubernetes,…

Code security scanning tool (SAST) to discover, filter and prioritize security and privacy risks.

Static code analysis tool for Kubernetes object definitions that scores YAML/Helm charts for security, reliability, and best practices, with CI/CD…

Tool for reverse engineering of Angular applications

Cross-platform static code analysis tool for mobile applications. Decompiles APK files and scans for hardcoded credentials, API keys, URLs, and…

a static analysis tool for finding vulnerabilities in C/C++ source code

CLI tool to scan codebases for quantum-vulnerable cryptography

AI-powered CLI tool that reviews code for security vulnerabilities, bugs, and anti-patterns using LLMs. Supports local and cloud providers, git…

KubeLinter is a static analysis tool that checks Kubernetes YAML files and Helm charts to ensure the applications represented in them adhere to best…

Linting tool for CloudFormation templates

A static analysis tool for securing Go code

UT based automated fuzz driver generation

Source code security scanner for expert code review; emits file:line findings in plain text, designed for fast manual triage and filtering with…

Fast code security scanner designed for manual security code review by experts. Outputs line-referenced findings to text files for easy filtering and…