A declarative static analysis tool for jvm bytecode based Datalog like CodeQL
-
Updated
Jan 6, 2024 - Shell
A declarative static analysis tool for jvm bytecode based Datalog like CodeQL
🐚 GitHub Action for running ShellCheck differentially
CloudDefense.ai is an automated web application security testing tool that audits your web applications by checking for vulnerabilities like SQL Injection, Cross-site scripting and other exploitable vulnerabilities.
This GitHub Action allows you to run Gitleaks in your GitHub workflow.
Github Action for security scanning utilizing Salus by Coinbase
pre-commit hooks to run snyk
A simple GitHub Action for AWS CloudFormation static code analysis to improve infrastructure-as-code security.
GItHub Action for cfn-guard and aws-guard-rules-registry
Action to execute clj-holmes in Clojure/Clojurescript projects.
Scanner-One is a freely usable Static Application Security Testing (SAST) scanner for all source code languages. Currently functional for Cpp, Java, Javascript, PHP and Python.
GitHub Action for Steampunk Spotter
Customized toolbox to perform offline scanning of a code base.
This repo holds the SAST-SCANNER Dockerfile used in Command Center Scanner.
A script to automate SAST analysis of your decompiled APKs with Checkmarx, and a Dockerfile if you ever need it.
blackduckcopilot
pre-commit hooks to run grype
Add a description, image, and links to the sast topic page so that developers can more easily learn about it.
To associate your repository with the sast topic, visit your repo's landing page and select "manage topics."