qodana-action⚙️ Scan your Java, Kotlin, PHP, Python, JavaScript, TypeScript projects at GitHub with Qodana
Stars: ✭ 112 (+273.33%)
Sonar Php 🐘 SonarPHP: PHP static analyzer for SonarQube & SonarLint
Stars: ✭ 288 (+860%)
cargo-valgrindA cargo subcommand, that runs valgrind and displays its output in a helpful manner.
Stars: ✭ 66 (+120%)
pipelinit-cliAutomatically generates pipelines for your project.
Stars: ✭ 36 (+20%)
CflintStatic code analysis for CFML (a linter)
Stars: ✭ 156 (+420%)
megalinter🦙 Mega-Linter analyzes 48 languages, 22 formats, 19 tooling formats, excessive copy-pastes, spelling mistakes and security issues in your repository sources with a GitHub Action, other CI tools or locally.
Stars: ✭ 534 (+1680%)
Android-CICDThis repo demonstrates how to work on CI/CD for Mobile Apps 📱 using Github Actions 💊 + Firebase Distribution 🎉
Stars: ✭ 37 (+23.33%)
InferA static analyzer for Java, C, C++, and Objective-C
Stars: ✭ 12,823 (+42643.33%)
detekt-hintDetection of design principle violations in Kotlin as a plugin to detekt.
Stars: ✭ 63 (+110%)
Sonar DotnetCode analyzer for C# and VB.NET projects https://redirect.sonarsource.com/plugins/vbnet.html
Stars: ✭ 466 (+1453.33%)
Reviewdog🐶 Automated code review tool integrated with any code analysis tools regardless of programming language
Stars: ✭ 4,541 (+15036.67%)
elm-reviewAnalyzes Elm projects, to help find mistakes before your users find them.
Stars: ✭ 195 (+550%)
PmdAn extensible multilanguage static code analyzer.
Stars: ✭ 3,667 (+12123.33%)
XcovNice code coverage reporting without hassle
Stars: ✭ 467 (+1456.67%)
Test Each🤖 Repeat tests. Repeat tests. Repeat tests.
Stars: ✭ 89 (+196.67%)
eclipse-pmdeclipse-pmd has been moved to
Stars: ✭ 20 (-33.33%)
static-code-analysis-pluginA plugin to simplify Static Code Analysis on Gradle. Not restricted to, but specially useful, in Android projects, by making sure all analysis can access the SDK classes.
Stars: ✭ 36 (+20%)
Static Analysis⚙️ A curated list of static analysis (SAST) tools for all programming languages, config files, build tools, and more.
Stars: ✭ 9,310 (+30933.33%)
PylintIt's not just a linter that annoys you!
Stars: ✭ 3,733 (+12343.33%)
SonarjsSonarSource Static Analyzer for JavaScript and TypeScript
Stars: ✭ 696 (+2220%)
sonar-esql-pluginSonar plugin to analyze ESQL-sourcecode of IBM Integration Bus projects
Stars: ✭ 26 (-13.33%)
Pep8speaksA GitHub app to automatically review Python code style over Pull Requests
Stars: ✭ 546 (+1720%)
CheckstyleCheckstyle is a development tool to help programmers write Java code that adheres to a coding standard. By default it supports the Google Java Style Guide and Sun Code Conventions, but is highly configurable. It can be invoked with an ANT task and a command line program.
Stars: ✭ 6,481 (+21503.33%)
WpbulletA static code analysis for WordPress (and PHP)
Stars: ✭ 148 (+393.33%)
CodelyzerStatic analysis for Angular projects.
Stars: ✭ 2,436 (+8020%)
Bento[DEPRECATED] Find Python web-app bugs delightfully fast, without changing your workflow. 🍱
Stars: ✭ 147 (+390%)
RubocopA Ruby static code analyzer and formatter, based on the community Ruby style guide.
Stars: ✭ 11,593 (+38543.33%)
emaciScheduler for compilations in emacs.
Stars: ✭ 12 (-60%)
TipStatic program analysis for TIP
Stars: ✭ 140 (+366.67%)
Sonar Pmd☕️ PMD Plugin for SonarQube
Stars: ✭ 139 (+363.33%)
WhispersIdentify hardcoded secrets and dangerous behaviours
Stars: ✭ 66 (+120%)
I18n TasksManage translation and localization with static analysis, for Ruby i18n
Stars: ✭ 1,748 (+5726.67%)
Owasp OrizonOwasp Orizon is a source code static analyzer tool designed to spot security issues in Java applications.
Stars: ✭ 130 (+333.33%)
Phpstan PhpunitPHPUnit extensions and rules for PHPStan
Stars: ✭ 247 (+723.33%)
SpotbugsSpotBugs is FindBugs' successor. A tool for static analysis to look for bugs in Java code.
Stars: ✭ 2,569 (+8463.33%)
Fb Contriba FindBugs/SpotBugs plugin for doing static code analysis for java code bases
Stars: ✭ 124 (+313.33%)
FeramFeram finds & fixes bugs in your commits
Stars: ✭ 122 (+306.67%)
GrepbugsA regex based source code scanner.
Stars: ✭ 118 (+293.33%)
NsdepcopNsDepCop is a static code analysis tool that helps to enforce namespace dependency rules in C# projects. No more unplanned or unnoticed dependencies in your system.
Stars: ✭ 114 (+280%)
SputnikStatic code review for your Gerrit patchsets. Runs Checkstyle, PMD, FindBugs, Scalastyle, CodeNarc, JSLint for you!
Stars: ✭ 189 (+530%)
AbaplintStandalone linter for ABAP
Stars: ✭ 111 (+270%)
PhpstanPHP Static Analysis Tool - discover bugs in your code without running it!
Stars: ✭ 10,534 (+35013.33%)
DrekA static-code-analysis tool for performing security-focused code reviews. It enables an auditor to swiftly map the attack-surface of a large application, with an emphasis on identifying development anti-patterns and footguns.
Stars: ✭ 103 (+243.33%)
Npgsql.fsharp.analyzerF# analyzer that provides embedded SQL syntax analysis, type-checking for parameters and result sets and nullable column detection when writing queries using Npgsql.FSharp.
Stars: ✭ 103 (+243.33%)
cmd-call-graphA simple tool to generate a call graph for calls within Windows CMD (batch) files.
Stars: ✭ 37 (+23.33%)
flagsmithOpen Source Feature Flagging and Remote Config Service. Host on-prem or use our hosted version at https://flagsmith.com/
Stars: ✭ 2,309 (+7596.67%)
Dg[LLVM Static Slicer] Various program analyses, construction of dependence graphs and program slicing of LLVM bitcode.
Stars: ✭ 242 (+706.67%)
PytA Static Analysis Tool for Detecting Security Vulnerabilities in Python Web Applications
Stars: ✭ 2,061 (+6770%)
UnimportA linter, formatter for finding and removing unused import statements.
Stars: ✭ 96 (+220%)