
njsscan
Semantic-aware SAST scanner for Node.js applications that detects insecure code patterns using libsast pattern matching and semgrep syntax-aware…

Semantic-aware SAST scanner for Node.js applications that detects insecure code patterns using libsast pattern matching and semgrep syntax-aware…

a static analysis tool for finding vulnerabilities in C/C++ source code

AI-first security scanner. NEW in v2026.7: Claude Code compromise detection — vet .claude/ hooks, permissions & skills before you clone — plus an…

Web-based Source Code Vulnerability Scanner

Static analysis scanner for infrastructure-as-code that detects security vulnerabilities, compliance violations, and misconfigurations across…

nodejsscan is a static security code scanner for Node.js applications.

A security scanner for your LLM agentic workflows

Tree-sitter based static vulnerability scanner with pattern matching and taint-flow analysis for multi-language source code. Outputs findings as…

OWASP ASST (Automated Software Security Toolkit) | A Novel Open Source Web Security Scanner.

Whalescan is a vulnerability scanner for Windows containers, which performs several benchmark checks, as well as checking for CVEs/vulnerable…

Security scanner for AI/ML model files. Detects malicious code, backdoors, and vulnerabilities before deployment

👮 👊 RegEx Denial of Service (ReDos) Scanner

Static PHP code scanner that detects SQL injection, XSS, SSRF, LFI, command injection, insecure deserialization, and other web vulnerabilities in…

Command-line static analysis scanner that detects critical vulnerabilities in PHP and YAML source code using custom semgrep rules, with Jira and…


Fast code security scanner designed for manual security code review by experts. Outputs line-referenced findings to text files for easy filtering and…

client-side prototype pullution vulnerability scanner

Static code analysis scanner for WordPress plugins and themes. Detects vulnerabilities like XSS and SQL injection via modular, extensible…