
DakshSCRA
Framework-aware static code analysis tool for automated source code review with platform-specific rules, taint analysis, effort estimation, and…

Framework-aware static code analysis tool for automated source code review with platform-specific rules, taint analysis, effort estimation, and…

VisualCodeGrepper - Code security scanning tool.

UT based automated fuzz driver generation

Link sources to sinks in C# applications.

jshunter is a command-line tool designed for analyzing JavaScript files and extracting endpoints. This tool specializes in identifying sensitive…

Automated static code analysis framework integrated with SonarQube for early vulnerability detection in source code by scanning Git repositories…

"Sucosh" is an automated Source Code vulnerability scanner and assessment framework for Python(Flask-Django) & NodeJs capable of performing code…

Current development for Call Map takes place at https://github.com/ajylee/call_map. Call Map is a tool for navigating Python call graphs.

PHP Static Analysis Tool - discover bugs in your code without running it!

Bandit is a tool designed to find common security issues in Python code.

grep rough audit - source code auditing tool

Static analysis tool for detecting ReDoS (Regular Expression Denial of Service) vulnerabilities in JavaScript and Scala codebases, providing…

PHP static application security testing (SAST) tool that performs taint analysis to detect XSS, SQL injection, and other vulnerabilities using…

Static code analysis tool based on Elasticsearch

A variant analysis and visualisation tool that scans codebases for similar vulnerabilities

Go static analysis tool that checks for security issues using an AST.

Matt.Net is a simple GUI wrapper around Microsoft's CAT.NET Code Auditing Tool

Do You Know What's In Your Python Packages? A Tool for Visualizing Python Package Registry Security Audit Data