
phpstan
PHP Static Analysis Tool - discover bugs in your code without running it!

PHP Static Analysis Tool - discover bugs in your code without running it!

Kubernetes object analysis with recommendations for improved reliability and security. kube-score actively prevents downtime and bugs in your…

Horusec is an open source tool that improves identification of vulnerabilities in your project with just one command.

A security scanner for your LLM agentic workflows

Create useful, lightweight static analyses using open source tools + a tiny bit of your code

📦 :octocat: A GitHub Action that performs a security scan of your GitHub Actions.

Adding this GitHub Action will scan your repository for sensitive data in your source code. We find things like passwords, server host strings, API…

Do You Know What's In Your Python Packages? A Tool for Visualizing Python Package Registry Security Audit Data

OpenAI's Codex Security CLI and TypeScript SDK for finding, validating, and fixing security vulnerabilities. npm:…

AI-powered bug bounty hunting toolkit that works with or without subscription.

Code security scanning tool (SAST) to discover, filter and prioritize security and privacy risks.

This skill helps Claude write secure code and prevent common vulnerabilities.

StaCoAn is a crossplatform tool which aids developers, bugbounty hunters and ethical hackers performing static code analysis on mobile applications.

Semantic-aware SAST scanner for Node.js applications that detects insecure code patterns using libsast pattern matching and semgrep syntax-aware…

Static code analysis tool based on Elasticsearch

Scans project source code across 16 languages to flag dangerous functions linked to SQLi, XSS, SSRF, command injection, weak crypto, and other web…

Processes SARIF output from static analysis tools to detect and redact hard-coded secrets in source code, creating a clean copy without the original…

CLI tool to scan codebases for quantum-vulnerable cryptography