bearer

Code scanner

A tool for discovering and prioritizing security risks in software code

Code security scanning tool (SAST) to discover, filter and prioritize security and privacy risks.

GitHub

2k stars
20 watching
105 forks
Language: Go
last commit: 6 days ago
Linked from 3 awesome lists

appseccode-qualitycompliancedataflowdevsecopsdevsecops-toolsgdprowaspprivacysastsecuritysecurity-auditsecurity-automationsecurity-scannersecurity-toolsstatic-analysisstatic-code-analysisvulnerabilitiesvulnerability

Backlinks from these awesome lists:

Related projects:

Repository Description Stars
tcosolutions/betterscan A toolchain that scans source code and infrastructure IaC for security risks and provides a unified report. 817
insidersec/insider A tool that analyzes source code to identify security vulnerabilities and provides reporting on compliance with the OWASP Top 10 516
nodesecure/js-x-ray A tool that scans JavaScript code for potential security vulnerabilities and patterns 229
security-code-scan/security-code-scan Detects vulnerabilities in C# and VB.NET code 944
codingo/reconnoitre Automates reconnaissance and service enumeration of network hosts to gather information and write recommendations for further testing. 2,110
flatt-security/shisho A tool that analyzes code for security vulnerabilities and provides feedback to developers 371
twostraws/codescanner A framework for scanning and detecting various types of codes using the camera 1,056
dragon-dreamer/binary-valentine An executable file analyzer tool that detects security, configuration, optimization, system, and format issues in Windows executables 16
albuch/sbt-dependency-check Automatically monitors dependencies for known vulnerabilities and generates reports on security issues 266
ztgrace/changeme A tool designed to detect default and backdoor credentials by scanning various protocols 1,450
mattzcarey/code-review-gpt An automated code review tool powered by Large Language Models that scans source code for potential issues and provides feedback 1,600
tenable/terrascan Detects security vulnerabilities and compliance issues in infrastructure code before provisioning cloud-native infrastructure. 4,766
zupit/horusec Identifies security flaws in software projects through static code analysis 1,149
coinbase/salus A tool for coordinating security scanning of software projects 21
solomonsklash/sri-check A tool to identify missing Subresource Integrity attributes in web resources 13