All Projects → sonarqube-action → Similar Projects or Alternatives

1112 Open source projects that are alternatives of or similar to sonarqube-action

qodana-action
⚙️ Scan your Java, Kotlin, PHP, Python, JavaScript, TypeScript projects at GitHub with Qodana
Stars: ✭ 112 (+24.44%)
localhost-sonarqube
Analysing source code locally with SonarQube in a Docker environment.
Stars: ✭ 17 (-81.11%)
sonar-gherkin-plugin
SonarQube Cucumber Gherkin Analyzer
Stars: ✭ 33 (-63.33%)
Reviewdog
🐶 Automated code review tool integrated with any code analysis tools regardless of programming language
Stars: ✭ 4,541 (+4945.56%)
Sonar Jproperties Plugin
SonarQube Java Properties Analyzer
Stars: ✭ 5 (-94.44%)
Sonarjs
SonarSource Static Analyzer for JavaScript and TypeScript
Stars: ✭ 696 (+673.33%)
Sonarqube
Continuous Inspection
Stars: ✭ 6,365 (+6972.22%)
Sonarts
Static code analyzer for TypeScript
Stars: ✭ 776 (+762.22%)
Sonar Php
🐘 SonarPHP: PHP static analyzer for SonarQube & SonarLint
Stars: ✭ 288 (+220%)
Sonar Dotnet
Code analyzer for C# and VB.NET projects https://redirect.sonarsource.com/plugins/vbnet.html
Stars: ✭ 466 (+417.78%)
Nodejsscan
nodejsscan is a static security code scanner for Node.js applications.
Stars: ✭ 1,874 (+1982.22%)
sonar-css-plugin
SonarQube CSS / SCSS / Less Analyzer
Stars: ✭ 46 (-48.89%)
inline-plz
Inline your lint messages
Stars: ✭ 32 (-64.44%)
codeclimate-phpcodesniffer
Code Climate Engine for PHP Code Sniffer
Stars: ✭ 27 (-70%)
Mutual labels:  static-analysis, code-quality
codeclimate-eslint
Code Climate Engine for ESLint
Stars: ✭ 86 (-4.44%)
Mutual labels:  static-analysis, code-quality
codacy-analysis-cli-action
GitHub Action for the codacy-analysis-cli
Stars: ✭ 42 (-53.33%)
Mutual labels:  static-analysis, github-actions
Detekt
Static code analysis for Kotlin
Stars: ✭ 4,169 (+4532.22%)
Mutual labels:  static-analysis, code-quality
sonar-esql-plugin
Sonar plugin to analyze ESQL-sourcecode of IBM Integration Bus projects
Stars: ✭ 26 (-71.11%)
Mutual labels:  sonarqube, code-quality
Swiftlint
Stars: ✭ 15,500 (+17122.22%)
Mutual labels:  static-analysis, code-quality
Wotan
Pluggable TypeScript and JavaScript linter
Stars: ✭ 271 (+201.11%)
Mutual labels:  static-analysis, code-quality
Pep8speaks
A GitHub app to automatically review Python code style over Pull Requests
Stars: ✭ 546 (+506.67%)
Mutual labels:  static-analysis, code-quality
Pylint
It's not just a linter that annoys you!
Stars: ✭ 3,733 (+4047.78%)
Mutual labels:  static-analysis, code-quality
Pyre Check
Performant type-checking for python.
Stars: ✭ 5,716 (+6251.11%)
Mutual labels:  static-analysis, code-quality
Sonar Java
☕️ SonarSource Static Analyzer for Java Code Quality and Security
Stars: ✭ 745 (+727.78%)
Mutual labels:  static-analysis, sonarqube
Phpqa
Docker image that provides static analysis tools for PHP
Stars: ✭ 853 (+847.78%)
Mutual labels:  static-analysis, code-quality
Checkstyle
Checkstyle is a development tool to help programmers write Java code that adheres to a coding standard. By default it supports the Google Java Style Guide and Sun Code Conventions, but is highly configurable. It can be invoked with an ANT task and a command line program.
Stars: ✭ 6,481 (+7101.11%)
Mutual labels:  static-analysis, code-quality
Sonarondocker
🐳 📡 Docker way of running SonarQube + any DB
Stars: ✭ 25 (-72.22%)
Mutual labels:  static-analysis, sonarqube
Static Analysis
⚙️ A curated list of static analysis (SAST) tools for all programming languages, config files, build tools, and more.
Stars: ✭ 9,310 (+10244.44%)
Mutual labels:  static-analysis, code-quality
Ansible Role Sonarqube
Ansible Role: SonarQube
Stars: ✭ 22 (-75.56%)
Mutual labels:  sonarqube, code-quality
static-code-analysis-plugin
A plugin to simplify Static Code Analysis on Gradle. Not restricted to, but specially useful, in Android projects, by making sure all analysis can access the SDK classes.
Stars: ✭ 36 (-60%)
Mutual labels:  static-analysis, code-quality
Sonar Kotlin
SonarQube plugin for Kotlin
Stars: ✭ 412 (+357.78%)
Mutual labels:  sonarqube, code-quality
codeclimate-duplication
Code Climate engine for code duplication analysis
Stars: ✭ 96 (+6.67%)
Mutual labels:  static-analysis, code-quality
bridgecrew-action
This Github Action runs Bridgecrew against an Infrastructure-as-Code repository. Bridgecrew performs static security analysis of Terraform & CloudFormation Infrastructure code.
Stars: ✭ 52 (-42.22%)
Mutual labels:  static-analysis, github-actions
Njsscan
njsscan is a semantic aware SAST tool that can find insecure code patterns in your Node.js applications.
Stars: ✭ 128 (+42.22%)
Mutual labels:  static-analysis, devsecops
Mutant
Automated code reviews via mutation testing - semantic code coverage.
Stars: ✭ 1,794 (+1893.33%)
Mutual labels:  static-analysis, code-review
Cflint
Static code analysis for CFML (a linter)
Stars: ✭ 156 (+73.33%)
Mutual labels:  static-analysis, code-quality
Pmd
An extensible multilanguage static code analyzer.
Stars: ✭ 3,667 (+3974.44%)
Mutual labels:  static-analysis, code-quality
Checkov
Prevent cloud misconfigurations during build-time for Terraform, Cloudformation, Kubernetes, Serverless framework and other infrastructure-as-code-languages with Checkov by Bridgecrew.
Stars: ✭ 3,572 (+3868.89%)
Mutual labels:  static-analysis, devsecops
Infer
A static analyzer for Java, C, C++, and Objective-C
Stars: ✭ 12,823 (+14147.78%)
Mutual labels:  static-analysis, code-quality
Tfsec
Security scanner for your Terraform code
Stars: ✭ 3,622 (+3924.44%)
Mutual labels:  static-analysis, devsecops
effective-code-review
Presentation about my process for making code reviews as effective as possible
Stars: ✭ 63 (-30%)
Mutual labels:  code-review, code-quality
docker-dotnet-sonarscanner
🐳 Sonar Scanner MsBuild Dockerfile for dotNet Projects
Stars: ✭ 21 (-76.67%)
Mutual labels:  sonarqube, sonar-scanner
Zpa
A parser and source code analyzer for PL/SQL and Oracle SQL.
Stars: ✭ 124 (+37.78%)
Mutual labels:  static-analysis, sonarqube
workshop-devsecops
La intención de la workshop es mostrar y orientar a los equipos de desarrollo, seguridad y devops (entre otros) que quieran comenzar en DevSecOps, a segurar sus aplicaciones o bien a conocer un poco más acerca del desarrollo seguro, para esto, estaremos otorgando algunos tips e información que fuimos aprendiendo para armar un Pipeline DevSecOps …
Stars: ✭ 14 (-84.44%)
Mutual labels:  sonarqube, devsecops
Gradle Pitest Plugin
Gradle plugin for PIT Mutation Testing
Stars: ✭ 144 (+60%)
Mutual labels:  static-analysis, code-quality
Setup Php
GitHub action to set up PHP with extensions, php.ini configuration, coverage drivers, and various tools.
Stars: ✭ 1,945 (+2061.11%)
Mutual labels:  static-analysis, github-actions
Codeclimate
Code Climate CLI
Stars: ✭ 2,273 (+2425.56%)
Mutual labels:  static-analysis, code-quality
Sbt Dependency Check
SBT Plugin for OWASP DependencyCheck. Monitor your dependencies and report if there are any publicly known vulnerabilities (e.g. CVEs). 🌈
Stars: ✭ 187 (+107.78%)
Mutual labels:  static-analysis, devsecops
setup-sonar-scanner
Github Action which downloads and runs sonar-scanner cli with custom parameters to start Sonarqube scan.
Stars: ✭ 31 (-65.56%)
Mutual labels:  sonarqube, sonar-scanner
Mobile Security Framework Mobsf
Mobile Security Framework (MobSF) is an automated, all-in-one mobile application (Android/iOS/Windows) pen-testing, malware analysis and security assessment framework capable of performing static and dynamic analysis.
Stars: ✭ 10,212 (+11246.67%)
Mutual labels:  static-analysis, devsecops
sonar-scala
A free and open-source SonarQube plugin for static code analysis of Scala projects.
Stars: ✭ 113 (+25.56%)
Mutual labels:  static-analysis, sonarqube
intercept
INTERCEPT / Policy as Code Static Analysis Auditing / SAST
Stars: ✭ 54 (-40%)
Mutual labels:  static-analysis, devsecops
sonarlint4netbeans
SonarLint integration for Apache Netbeans
Stars: ✭ 23 (-74.44%)
Mutual labels:  static-analysis, sonarqube
mylib
Шаблон кросплатформенного CMake-проекта для языка C++ 🇬🇧 Modern CMake crossplatform project template for C++
Stars: ✭ 49 (-45.56%)
Mutual labels:  static-analysis, github-actions
Code Review Checklist
This code review checklist helps you be a more effective and efficient code reviewer.
Stars: ✭ 214 (+137.78%)
Mutual labels:  code-review, code-quality
Android-CICD
This repo demonstrates how to work on CI/CD for Mobile Apps 📱 using Github Actions 💊 + Firebase Distribution 🎉
Stars: ✭ 37 (-58.89%)
Mutual labels:  sonarqube, github-actions
Sonar Swift
sonar-swift.SonarQube iOS Plugin, Support Objective-C And Swift, Support Infer (SonarQube iOS 代码扫描插件,支持 Objective-C 和 Swift ,支持 Infer 结果导入 ) base on https://github.com/Idean/sonar-swift
Stars: ✭ 70 (-22.22%)
Mutual labels:  static-analysis, sonarqube
code-review
Automated static analysis & linting bot for Mozilla repositories
Stars: ✭ 51 (-43.33%)
Mutual labels:  static-analysis, code-review
shell-linter
A Github Action for ShellCheck
Stars: ✭ 58 (-35.56%)
Mutual labels:  static-analysis, github-actions
noise-php
A starter-kit for your PHP project.
Stars: ✭ 52 (-42.22%)
Mutual labels:  sonarqube, github-actions
1-60 of 1112 similar projects