
phpstan
PHP Static Analysis Tool - discover bugs in your code without running it!

PHP Static Analysis Tool - discover bugs in your code without running it!

Code-quality and static-analysis platform with quality gates, multi-language scanning, and security-focused rules to detect vulnerabilities and…

Bandit is a tool designed to find common security issues in Python code.

An extensible multilanguage static code analyzer.

C++ python bytecode disassembler and decompiler

AI-powered bug bounty hunting toolkit that works with or without subscription.

KubeLinter is a static analysis tool that checks Kubernetes YAML files and Helm charts to ensure the applications represented in them adhere to best…

The OWASP DevSecOps Guideline can help us to embedding security as a part of the development pipeline.

AI-driven pentest harness with black-box, white-box, grey-box, host/cloud, and LLM red-team modes; validates findings with cross-model voting and…

OpenAnt from Knostic is the leading open source LLM-based vulnerability discovery product, helping defenders proactively find verified security flaws…

grep rough audit - source code auditing tool

VisualCodeGrepper - Code security scanning tool.

Horusec is an open source tool that improves identification of vulnerabilities in your project with just one command.

This skill helps Claude write secure code and prevent common vulnerabilities.

Curated Ghidra scripts to automate reverse engineering and vulnerability analysis: locate insecure functions, extract decompiler pseudocode, fix…

Find regular expressions which are vulnerable to ReDoS (Regular Expression Denial of Service)

PHP static application security testing (SAST) tool that performs taint analysis to detect XSS, SQL injection, and other vulnerabilities using…

Static code analysis tool based on Elasticsearch