
wpbullet
A static code analysis for WordPress (and PHP)

A static code analysis for WordPress (and PHP)

"Sucosh" is an automated Source Code vulnerability scanner and assessment framework for Python(Flask-Django) & NodeJs capable of performing code…

RIPS - A static source code analyser for vulnerabilities in PHP scripts




Jackhammer - One Security vulnerability assessment/management tool to solve all the security team problems.

Vimana is an experimental security tool that aims to provide resources for auditing Python web applications.


A Static Analysis Tool for Detecting Security Vulnerabilities in Python Web Applications

Semantic-aware SAST scanner for Node.js applications that detects insecure code patterns using libsast pattern matching and semgrep syntax-aware…

Extract URLs, paths, secrets, and other interesting bits from JavaScript

Security-focused static analysis for the Phoenix Framework

Open-source Interactive Application Security Testing (IAST) tool that passively instruments Java applications to detect vulnerabilities and…

A Chrome extension static analysis tool to help aide in security reviews.

Go-based CLI tool that scans codebases for launch readiness, detecting missing configuration, security hygiene issues, secret leaks, and integration…