sast topic

List sast repositories
trafficstars

codeql-docker

87
Stars
11
Forks
Watchers

Ready to use docker image for CodeQL

DockerENT

124
Stars
17
Forks
Watchers

The only open-source tool to analyze vulnerabilities and configuration issues with running docker container(s) and docker networks.

betterscan-ce

703
Stars
85
Forks
Watchers

Code Scanning/SAST/Static Analysis/Linting using many tools/Scanners + OpenAI GPT with One Report (Code, IaC) - Betterscan Community Edition (CE)

terrascan

4.5k
Stars
493
Forks
Watchers

Detect compliance and security violations across Infrastructure as Code to mitigate risk before provisioning cloud native infrastructure.

static-analysis

13.0k
Stars
1.3k
Forks
Watchers

⚙️ A curated list of static analysis (SAST) tools and linters for all programming languages, config files, build tools, and more. The focus is on tools which improve code quality.

semgrep

12.3k
Stars
746
Forks
Watchers

Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.

nodejsscan

2.3k
Stars
325
Forks
Watchers

nodejsscan is a static security code scanner for Node.js applications.

insider

493
Stars
80
Forks
Watchers

Static Application Security Testing (SAST) engine focused on covering the OWASP Top 10, to make source code analysis to find vulnerabilities right in the source code, focused on a agile and easy to im...

mobileAudit

196
Stars
42
Forks
Watchers

Django application that performs SAST and Malware Analysis for Android APKs

njsscan

355
Stars
76
Forks
Watchers

njsscan is a semantic aware SAST tool that can find insecure code patterns in your Node.js applications.