bearer

Code scanner

A tool for discovering and prioritizing security risks in software code

Code security scanning tool (SAST) to discover, filter and prioritize security and privacy risks.

GitHub

2k stars
21 watching
111 forks
Language: Go
last commit: almost 2 years ago
Linked from 3 awesome lists

appseccode-qualitycompliancedataflowdevsecopsdevsecops-toolsgdprowaspprivacysastsecuritysecurity-auditsecurity-automationsecurity-scannersecurity-toolsstatic-analysisstatic-code-analysisvulnerabilitiesvulnerability

Backlinks from these awesome lists:

Related projects:

RepositoryDescriptionStars
tcosolutions/betterscanA toolchain that scans source code and infrastructure IaC for security risks and provides a unified report.831
insidersec/insiderA tool that analyzes source code to identify security vulnerabilities and provides reporting on compliance with the OWASP Top 10519
nodesecure/js-x-rayA tool that scans JavaScript code for potential security vulnerabilities and patterns229
security-code-scan/security-code-scanDetects vulnerabilities in C# and VB.NET code942
codingo/reconnoitreAutomates reconnaissance and service enumeration of network hosts to gather information and write recommendations for further testing.2,124
flatt-security/shishoA tool that analyzes code for security vulnerabilities and provides feedback to developers369
twostraws/codescannerA SwiftUI framework for scanning barcodes and QR codes1,067
dragon-dreamer/binary-valentineAn executable file analyzer tool that detects security, configuration, optimization, system, and format issues in Windows executables18
albuch/sbt-dependency-checkAutomatically monitors dependencies for known vulnerabilities and generates reports on security issues266
ztgrace/changemeA tool designed to detect default and backdoor credentials by scanning various protocols1,457
mattzcarey/code-review-gptAn automated code review tool powered by Large Language Models that scans source code for potential issues and provides feedback1,633
tenable/terrascanDetects security vulnerabilities and compliance issues in infrastructure code before provisioning cloud-native infrastructure.4,779
zupit/horusecIdentifies security flaws in software projects through static code analysis1,154
coinbase/salusA tool for coordinating security scanning of software projects25
solomonsklash/sri-checkA tool to identify missing Subresource Integrity attributes in web resources13