All Projects → Nodejsscan → Similar Projects or Alternatives

866 Open source projects that are alternatives of or similar to Nodejsscan

Njsscan
njsscan is a semantic aware SAST tool that can find insecure code patterns in your Node.js applications.
Stars: ✭ 128 (-93.17%)
Mutual labels:  static-analysis, lint, devsecops
qodana-action
⚙️ Scan your Java, Kotlin, PHP, Python, JavaScript, TypeScript projects at GitHub with Qodana
Stars: ✭ 112 (-94.02%)
sonarqube-action
Integrate SonarQube scanner to GitHub Actions
Stars: ✭ 90 (-95.2%)
intercept
INTERCEPT / Policy as Code Static Analysis Auditing / SAST
Stars: ✭ 54 (-97.12%)
Mutual labels:  static-analysis, devsecops, sast
Reviewdog
🐶 Automated code review tool integrated with any code analysis tools regardless of programming language
Stars: ✭ 4,541 (+142.32%)
Mutual labels:  static-analysis, lint, code-review
Larastan
⚗️ Adds code analysis to Laravel improving developer productivity and code quality.
Stars: ✭ 3,554 (+89.65%)
Mutual labels:  static-analysis, code-analysis
localhost-sonarqube
Analysing source code locally with SonarQube in a Docker environment.
Stars: ✭ 17 (-99.09%)
Mutual labels:  static-analysis, code-review
inline-plz
Inline your lint messages
Stars: ✭ 32 (-98.29%)
Mutual labels:  static-analysis, code-review
secure-pipeline-advisor
Improve your code security by running different security checks/validation in a simple way.
Stars: ✭ 25 (-98.67%)
Mutual labels:  security-scanner, devsecops
lints
Lint all your JavaScript, CSS, HTML, Markdown and Dockerfiles with a single command
Stars: ✭ 14 (-99.25%)
Mutual labels:  lint, static-analysis
Krane
Kubernetes RBAC static Analysis & visualisation tool
Stars: ✭ 254 (-86.45%)
Wotan
Pluggable TypeScript and JavaScript linter
Stars: ✭ 271 (-85.54%)
Mutual labels:  static-analysis, code-analysis
Protoc Gen Lint
A plug-in for Google's Protocol Buffers (protobufs) compiler to lint .proto files for style violations.
Stars: ✭ 221 (-88.21%)
Mutual labels:  static-analysis, lint
D Scanner
Swiss-army knife for D source code
Stars: ✭ 221 (-88.21%)
Mutual labels:  static-analysis, lint
luli
A static analysis and linter tool for Lua
Stars: ✭ 45 (-97.6%)
Mutual labels:  lint, static-analysis
code-review
Automated static analysis & linting bot for Mozilla repositories
Stars: ✭ 51 (-97.28%)
Mutual labels:  static-analysis, code-review
Feram
Feram finds & fixes bugs in your commits
Stars: ✭ 122 (-93.49%)
Mutual labels:  code-review, code-analysis
shell-linter
A Github Action for ShellCheck
Stars: ✭ 58 (-96.91%)
Mutual labels:  lint, static-analysis
gha-setup-scancentral-client
GitHub Action to set up Fortify ScanCentral Client
Stars: ✭ 15 (-99.2%)
Mutual labels:  static-analysis, sast
Checkov
Prevent cloud misconfigurations during build-time for Terraform, Cloudformation, Kubernetes, Serverless framework and other infrastructure-as-code-languages with Checkov by Bridgecrew.
Stars: ✭ 3,572 (+90.61%)
Mutual labels:  static-analysis, devsecops
Exakat
The Exakat Engine : smart static analysis for PHP
Stars: ✭ 346 (-81.54%)
Mutual labels:  static-analysis, lint
Detekt
Static code analysis for Kotlin
Stars: ✭ 4,169 (+122.47%)
Mutual labels:  lint, static-analysis
Credo
A static code analysis tool for the Elixir language with a focus on code consistency and teaching.
Stars: ✭ 4,144 (+121.13%)
Mutual labels:  static-analysis, code-analysis
Kube Scan
kube-scan: Octarine k8s cluster risk assessment tool
Stars: ✭ 566 (-69.8%)
Mutual labels:  security-scanner, devsecops
Salus
Security scanner coordinator
Stars: ✭ 441 (-76.47%)
Rubocop Rspec
Code style checking for RSpec files
Stars: ✭ 603 (-67.82%)
Mutual labels:  static-analysis, lint
Config Lint
Command line tool to validate configuration files
Stars: ✭ 118 (-93.7%)
Mutual labels:  static-analysis, lint
Tfsec
Security scanner for your Terraform code
Stars: ✭ 3,622 (+93.28%)
Mutual labels:  static-analysis, devsecops
Forbidden Apis
Policeman's Forbidden API Checker
Stars: ✭ 216 (-88.47%)
Mutual labels:  static-analysis, code-analysis
Insider
Static Application Security Testing (SAST) engine focused on covering the OWASP Top 10, to make source code analysis to find vulnerabilities right in the source code, focused on a agile and easy to implement software inside your DevOps pipeline. Support the following technologies: Java (Maven and Android), Kotlin (Android), Swift (iOS), .NET Full Framework, C#, and Javascript (Node.js).
Stars: ✭ 216 (-88.47%)
Vulny Code Static Analysis
Python script to detect vulnerabilities inside PHP source code using static analysis, based on regex
Stars: ✭ 207 (-88.95%)
lint-checks
A set of opinionated and useful lint checks
Stars: ✭ 61 (-96.74%)
Mutual labels:  lint, static-analysis
duplex
Duplicate code finder for Elixir
Stars: ✭ 20 (-98.93%)
Mutual labels:  lint, static-analysis
swap-detector
A library for detecting swapped arguments in function calls, and a Clang Static Analyzer plugin used to demonstrate the library.
Stars: ✭ 19 (-98.99%)
Mutual labels:  static-analysis, code-analysis
Spotbugs
SpotBugs is FindBugs' successor. A tool for static analysis to look for bugs in Java code.
Stars: ✭ 2,569 (+37.09%)
Mutual labels:  static-analysis, code-analysis
PhpCodeAnalyzer
PhpCodeAnalyzer scans codebase and analyzes which non-built-in php extensions used
Stars: ✭ 91 (-95.14%)
Mutual labels:  static-analysis, code-analysis
mllint
`mllint` is a command-line utility to evaluate the technical quality of Python Machine Learning (ML) projects by means of static analysis of the project's repository.
Stars: ✭ 67 (-96.42%)
Mutual labels:  lint, static-analysis
FastLint-Issues
FastLint finds & fixes bugs in your commits
Stars: ✭ 123 (-93.44%)
Mutual labels:  code-analysis, code-review
pahout
A pair programming partner for writing better PHP. Pahout means PHP mahout 🐘
Stars: ✭ 43 (-97.71%)
Mutual labels:  lint, static-analysis
static-code-analysis-plugin
A plugin to simplify Static Code Analysis on Gradle. Not restricted to, but specially useful, in Android projects, by making sure all analysis can access the SDK classes.
Stars: ✭ 36 (-98.08%)
Mutual labels:  static-analysis, code-analysis
Static Analysis
⚙️ A curated list of static analysis (SAST) tools for all programming languages, config files, build tools, and more.
Stars: ✭ 9,310 (+396.8%)
Mutual labels:  static-analysis, sast
Radon
Various code metrics for Python code
Stars: ✭ 1,193 (-36.34%)
Mutual labels:  static-analysis, code-analysis
Find Sec Bugs
The SpotBugs plugin for security audits of Java web applications and Android applications. (Also work with Kotlin, Groovy and Scala projects)
Stars: ✭ 1,748 (-6.72%)
Mutual labels:  static-analysis, code-analysis
Semgrep
Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.
Stars: ✭ 5,668 (+202.45%)
Mutual labels:  static-analysis, sast
Pmd
An extensible multilanguage static code analyzer.
Stars: ✭ 3,667 (+95.68%)
Mutual labels:  static-analysis, code-analysis
Applicationinspector
A source code analyzer built for surfacing features of interest and other characteristics to answer the question 'What's in the code?' quickly using static analysis with a json based rules engine. Ideal for scanning components before use or detecting feature level changes.
Stars: ✭ 3,873 (+106.67%)
Coala
coala provides a unified command-line interface for linting and fixing all your code, regardless of the programming languages you use.
Stars: ✭ 3,280 (+75.03%)
Mutual labels:  lint, code-analysis
Jsprime
a javascript static security analysis tool
Stars: ✭ 556 (-70.33%)
Eslint Plugin Sonarjs
SonarJS rules for ESLint
Stars: ✭ 458 (-75.56%)
Mutual labels:  static-analysis, code-analysis
Ruby Saddler
Stars: ✭ 93 (-95.04%)
Mutual labels:  lint, code-review
Spoon
Spoon is a metaprogramming library to analyze and transform Java source code (up to Java 15). 🥄 is made with ❤️, 🍻 and ✨. It parses source files to build a well-designed AST with powerful analysis and transformation API.
Stars: ✭ 1,078 (-42.48%)
Mutual labels:  static-analysis, code-analysis
Pysonar2
PySonar2: an advanced semantic indexer for Python
Stars: ✭ 1,074 (-42.69%)
Mutual labels:  static-analysis, code-analysis
Mobile Security Framework Mobsf
Mobile Security Framework (MobSF) is an automated, all-in-one mobile application (Android/iOS/Windows) pen-testing, malware analysis and security assessment framework capable of performing static and dynamic analysis.
Stars: ✭ 10,212 (+444.93%)
Mutual labels:  static-analysis, devsecops
Php Language Server
PHP Implementation of the VS Code Language Server Protocol 🆚↔🖥
Stars: ✭ 1,019 (-45.62%)
Mutual labels:  static-analysis, code-analysis
Sbt Dependency Check
SBT Plugin for OWASP DependencyCheck. Monitor your dependencies and report if there are any publicly known vulnerabilities (e.g. CVEs). 🌈
Stars: ✭ 187 (-90.02%)
Mutual labels:  static-analysis, devsecops
Woke
✊ Detect non-inclusive language in your source code.
Stars: ✭ 190 (-89.86%)
Mutual labels:  static-analysis, lint
Hint
💡 A hinting engine for the web
Stars: ✭ 3,280 (+75.03%)
Mutual labels:  lint, security-scanner
Cfn nag
Linting tool for CloudFormation templates
Stars: ✭ 808 (-56.88%)
Mutual labels:  static-analysis, lint
Pest
🐞 Primitive Erlang Security Tool
Stars: ✭ 79 (-95.78%)
Terrascan
Detect compliance and security violations across Infrastructure as Code to mitigate risk before provisioning cloud native infrastructure.
Stars: ✭ 2,687 (+43.38%)
Mutual labels:  devsecops, sast
1-60 of 866 similar projects