Ecosyste.ms: Awesome

An open API service indexing awesome lists of open source software.

Awesome Lists | Featured Topics | Projects

Static code analysis

Static program analysis (or static analysis) is the analysis of computer programs performed without executing them, in contrast with dynamic program analysis, which is performed on programs during their execution.

https://github.com/usagitoneko97/klara

Automatic test case generation for python and static analysis library

ast cfg python ssa static-analysis static-code-analysis

Last synced: 31 Oct 2024

https://github.com/webarx-security/wpbullet

A static code analysis for WordPress (and PHP)

cyber-security security static-code-analysis wordpress wordpress-development

Last synced: 23 Jan 2025

https://github.com/dmitrytsepelev/rubocop-graphql

Rubocop extension for enforcing graphql-ruby best practices

best-practices graphql linter rubocop rubocop-graphql ruby static-code-analysis

Last synced: 06 Feb 2025

https://github.com/DmitryTsepelev/rubocop-graphql

Rubocop extension for enforcing graphql-ruby best practices

best-practices graphql linter rubocop rubocop-graphql ruby static-code-analysis

Last synced: 24 Nov 2024

https://github.com/touk/sputnik

Static code review for your Gerrit patchsets. Runs Checkstyle, PMD, FindBugs, Scalastyle, CodeNarc, JSLint for you!

automated-tests codenarc findbugs gerrit java jslint pmd review sputnik static-code-analysis

Last synced: 03 Feb 2025

https://github.com/realvizu/NsDepCop

NsDepCop is a static code analysis tool that helps to enforce namespace dependency rules in C# projects. No more unplanned or unnoticed dependencies in your system.

csharp dependencies dependency-analysis dotnet msbuild namespace nuget static-code-analysis visual-studio-extension

Last synced: 26 Oct 2024

https://github.com/Perl-Critic/Perl-Critic

The leading static analyzer for Perl. Configurable, extensible, powerful.

perl perl-best-practices static-analysis static-code-analysis

Last synced: 10 Nov 2024

https://github.com/chebuya/sastsweep

Automatically detect potential vulnerabilities and analyze repository metrics to prioritize open source security research targets

cli owasp sast security-audit security-research security-scanner semgrep static-code-analysis vulnerability-research vulnerability-scanners

Last synced: 22 Nov 2024

https://github.com/mebigfatguy/fb-contrib

a FindBugs/SpotBugs plugin for doing static code analysis for java code bases

findbugs findbugs-plugin java static-code-analysis

Last synced: 02 Feb 2025

https://github.com/usyd-blockchain/vandal

Static program analysis framework for Ethereum smart contract bytecode.

blockchain decompiler ethereum ethereum-contracts evm smart-contracts static-code-analysis static-pro

Last synced: 06 Feb 2025

https://github.com/thesp0nge/owasp-orizon

Owasp Orizon is a source code static analyzer tool designed to spot security issues in Java applications.

code-review j2ee java owasp static-code-analysis vulnerability-scanners

Last synced: 29 Jan 2025

https://github.com/chrisallenlane/drek

A static-code-analysis tool for performing security-focused code reviews. It enables an auditor to swiftly map the attack-surface of a large application, with an emphasis on identifying development anti-patterns and footguns.

information-security security-audit static-code-analysis

Last synced: 24 Jan 2025

https://github.com/zaid-ajaj/npgsql.fsharp.analyzer

F# analyzer that provides embedded SQL syntax analysis, type-checking for parameters and result sets and nullable column detection when writing queries using Npgsql.FSharp.

analyzer fsharp ionide npgsql postgres static-code-analysis

Last synced: 27 Oct 2024

https://github.com/alexkohler/nakedret

nakedret is a Go static analysis tool to find naked returns in functions greater than a specified function length.

go golang static-analysis static-analyzer static-code-analysis

Last synced: 17 Nov 2024

https://github.com/foospidy/grepbugs

A regex based source code scanner.

cloc grep python regex scanner static-analyzer static-code-analysis

Last synced: 07 Nov 2024

https://github.com/pytorch-labs/torchfix

TorchFix - a linter for PyTorch-using code with autofix support

flake8 flake8-plugin hacktoberfest linter python pytorch static-analysis static-code-analysis

Last synced: 05 Feb 2025

https://github.com/feramhq/FastLint-Issues

FastLint automatically finds bugs in your code with cutting-edge AI-powered code analysis

ai chatgpt code-analysis code-review fastlint gpt-4 static-code-analysis

Last synced: 29 Nov 2024

https://github.com/jeromedalbert/rubocop-obsession

RuboCop extension focused on higher-level concepts, like checking that code reads from top to bottom

code-formatter linter rubocop ruby static-code-analysis

Last synced: 31 Jan 2025

https://github.com/wttech/aem-rules-for-sonarqube

SonarQube plugin with set of rules detecting possible bugs and bad smells specific for AEM development.

aem java quality slice sling sling-models sonar sonarqube static-code-analysis

Last synced: 04 Feb 2025

https://github.com/standard/eslint-config-standard-jsx

ESLint Shareable Config for JSX support in JavaScript Standard Style

development ecmascript es6 eslint javascript linter nodejs standard static-code-analysis style-guide

Last synced: 05 Feb 2025

https://github.com/phpstan/phpstan-nette

Nette Framework class reflection extension for PHPStan & framework-specific rules

nette-framework php php7 phpstan static-analysis static-analyzer static-code-analysis testing

Last synced: 07 Feb 2025

https://github.com/linthtml/linthtml

The html5 linter and validator.

cli hint html lint linter linting static-code-analysis

Last synced: 17 Nov 2024

https://github.com/KidkArolis/healthier

πŸ§˜β€β™€οΈ Healthier is an opinionated style agnostic code linter – a friendly companion to Prettier

development ecmascript eslint javascript linter nodejs prettier standard static-code-analysis

Last synced: 18 Nov 2024

https://github.com/kidkarolis/healthier

πŸ§˜β€β™€οΈ Healthier is an opinionated style agnostic code linter – a friendly companion to Prettier

development ecmascript eslint javascript linter nodejs prettier standard static-code-analysis

Last synced: 19 Dec 2024

https://github.com/konrad1977/loco

A linter for Swift Localizations

cli linter localization-management static-code-analysis swift xcode

Last synced: 29 Nov 2024

https://github.com/alexkohler/unimport

unimport is a Go static analysis tool to find unnecessary import aliases.

go golang static-analysis static-analyzer static-code-analysis

Last synced: 14 Nov 2024

https://github.com/microsoft/cmd-call-graph

A simple tool to generate a call graph for calls within Windows CMD (batch) files.

batch-file batch-script call-graph call-graph-analysis python static-code-analysis

Last synced: 20 Dec 2024

https://github.com/yamadashy/phpstan-friendly-formatter

🀝 A friendly error formatter extension for PHPStan that provides more readable and informative output, including code snippets and color highlighting.

code-quality developer-tools php php8 phpstan phpstan-extension static-analysis static-code-analysis testing

Last synced: 04 Feb 2025

https://github.com/rubocop/vscode-rubocop

The official VS Code extension for the RuboCop linter and code formatter.

code-formatter linter rubocop ruby static-code-analysis vscode-extension

Last synced: 06 Nov 2024

https://github.com/qasimwani/gct

Graphical Code Tracer (GCT): Visualize code at lightning speed

ast graphviz python static-code-analysis visualization

Last synced: 07 Nov 2024

https://github.com/rsoesemann/codeclimate-apexmetrics

ApexMetrics - Code Climate engine for Salesforce [DISCONTINUED use CC PMD instead)

apex clean-code codeclimate linter pmd salesforce static-code-analysis

Last synced: 28 Oct 2024

https://github.com/htrgouvea/zarn

A lightweight static security analysis tool for modern Perl Apps

sast security static-analysis static-code-analysis

Last synced: 14 Nov 2024

https://github.com/rsoesemann/unhappy-soup

Problematic Salesforce code to showcase how PMD can find it

apex continuous-integration pmd salesforce static-code-analysis

Last synced: 25 Jan 2025

https://github.com/utkarsh2102/rubocop-packaging

A RuboCop extension focused on enforcing upstream best practices and coding conventions.

code-formatter downstream linter packaging rubocop ruby static-code-analysis upstream

Last synced: 01 Feb 2025

https://github.com/skryukov/rubocop-gradual

Gradually improve your code with RuboCop

code-formatter hacktoberfest linter rubocop ruby static-code-analysis

Last synced: 21 Jan 2025

https://github.com/jayclassless/tidypy

A tool that executes a suite of static analysis tools upon a Python project.

code-quality development linter python static-analysis static-code-analysis tool

Last synced: 16 Jan 2025

https://github.com/Concurrency-Lab/ParallelHelper

Parallel Helper is a static code analyzer for C# projects that supports the development of parallel and asynchronous code. The analyzer is built with the help of the .NET Compiler Platform (Roslyn) and is available as a NuGet package as well as a Visual Studio extension.

analyzer async asynchronous await best-practices bugs code-quality concurrency csharp dotnet nuget parallel quality-control roslyn static-code-analysis visual-studio

Last synced: 06 Nov 2024

https://github.com/pwittchen/android-quality-starter

setup CheckStyle, FindBugs, PMD and Lint for your Android project easily

android checkstyle findbugs gradle lint pmd quality static-code-analysis

Last synced: 07 Nov 2024

https://github.com/vanhauser-thc/vulntest

Static code analysis test source code

sca static-code-analysis

Last synced: 28 Oct 2024

https://github.com/jaredsburrows/android-gradle-java-multi-module-template

Static analysis tools: PMD, Findbugs, Checkstyle, Lint and Jacoco on multi module build with an Android app module, Android library module and a Java module

android-java-multi android-library checkstyle coverage findbugs gradle instrumentation-tests jacoco java lint pmd static static-analysis static-code-analysis

Last synced: 11 Oct 2024

https://github.com/standard/standard-www

:point_up_2: Website for JavaScript Standard Style (@standard)

development ecmascript es6 eslint javascript linter nodejs standard static-code-analysis style style-guide

Last synced: 10 Nov 2024

https://github.com/metadrop/drupal-boilerplate

Drupal projects up and running with Docker and many other tools in minutes

backstopjs behat boilerplate docker drupal drush starter-kit static-code-analysis template

Last synced: 03 Feb 2025

https://github.com/scheb/tombstone-analyzer

[READ ONLY] Report generation for Tombstones created with the scheb/tombstone-logger library

dead-code-removal dynamic-code-analysis static-code-analysis tombstones

Last synced: 04 Feb 2025

https://github.com/riron/effects-mapper

πŸ“‘ Effects mapper for @ngrx/effects

angular mapper ngrx reactive rxjs static-code-analysis typescript visualizer

Last synced: 16 Oct 2024

https://github.com/glayzzle/php-reflection

:mag_right: Nodejs Reflection API for PHP files based on the php-parser

php reflection static-code-analysis tooling

Last synced: 13 Nov 2024

https://github.com/mysticatea/eslint-plugin

ESLint configurations and additional rules for me

ecmascript eslint eslint-plugin javascript static-code-analysis

Last synced: 10 Nov 2024

https://github.com/alisqi/twigqi

TwigQI: Static code analysis for Twig templates

code-quality static-code-analysis twig twig-extension

Last synced: 01 Feb 2025

https://github.com/karlosagudo/fixtro

A QA static analysis code, with a different approach

php php7 qatools static-analysis static-code-analysis

Last synced: 10 Nov 2024

https://github.com/securesauce/precli

Precaution CLI - command line static application security testing tool

command-line go java python sast security security-tools static-analysis static-code-analysis

Last synced: 14 Dec 2024

https://github.com/koic/rubocop-faker

A RuboCop extension for Faker.

converter faker linter rubocop ruby static-code-analysis

Last synced: 02 Feb 2025

https://github.com/jenkinsci/violation-comments-to-gitlab-plugin

Comments GitLab merge requests with static code analyzer findings.

gitlab-plugin jenkins-plugin pipeline static-code-analysis violation-comments

Last synced: 03 Dec 2024

https://github.com/IQTLabs/AuraBorealisApp

Do You Know What's In Your Python Packages? A Tool for Visualizing Python Package Registry Security Audit Data

flask malware pypi registry security security-audit security-tools static-analysis static-code-analysis

Last synced: 21 Nov 2024

https://github.com/florentpoujol/php8-type-system

A comprehensive guide of everything related to PHP8.1+ type system and the tools used for static analysis

php static-analysis static-code-analysis

Last synced: 25 Dec 2024

https://github.com/paulveillard/cybersecurity-sast

An ongoing & curated collection of awesome software best practices and techniques, libraries and frameworks, E-books and videos, websites, blog posts, links to github Repositories, technical guidelines and important resources about Static Application Security Testing (SAST) Tools.

static-analyzers static-api-generator static-app static-application-security-testing static-binary static-blocks static-build static-code static-code-analysis static-code-analyzer

Last synced: 02 Feb 2025

https://github.com/phpstan/phpstan-dibi

Dibi class reflection extension for PHPStan

dibi php php7 phpstan static-analysis static-analyzer static-code-analysis testing

Last synced: 01 Nov 2024

https://github.com/tomasbjerre/violations-command-line

Command line tool that will find report files from static code analysis, present and optionally fail the command.

lint static-code-analysis

Last synced: 15 Nov 2024

https://github.com/ckaznocha/intrange

intrange is a program for checking for loops that could use the Go 1.22 integer range feature.

go golang lint linter linting static-analysis static-code-analysis style-lint style-linter

Last synced: 15 Dec 2024

https://github.com/v-thakkar/talks

This repository contains the slides of my talks.

coccinelle ebpf embedded-linux kernel linux security static-code-analysis virtualization xen

Last synced: 27 Oct 2024

https://github.com/iagoabal/eba

EBA is a static bug finder for C.

c static-analysis static-analyzer static-code-analysis

Last synced: 06 Nov 2024

https://github.com/tomasbjerre/violation-comments-lib

Library for commenting things with violations from static code analysis.

static-code-analysis

Last synced: 15 Nov 2024

https://github.com/dgkf/scriptgloss

dynamically reconstruct static code for shiny outputs

r reproducibility shiny static-code-analysis

Last synced: 10 Dec 2024

https://github.com/mrseanryan/tslint-folders

:file_folder: Use tslint to check for invalid imports between packages and folders in your TypeScript project. Automatic validation and documentation of package architecture.

analysis architecture checker code-analysis dependencies diagram disabled-tests folders linter linting static-analysis static-code-analysis structure tslint

Last synced: 07 Nov 2024

https://github.com/cmu-sei/scaife-api

Source Code Analysis Integrated Framework Environment (SCAIFE) API: YAML specification

alerts api api-documentation architecture classification restful-api servers static-analysis static-code-analysis yaml

Last synced: 08 Nov 2024

https://github.com/piraces/kube-score-ga

Github action to execute kube-score with selected manifests (YAML, Helm or Kustomize)

analysis automation charts ci github-actions helm kube-score kubernetes linter security static-code-analysis

Last synced: 08 Jan 2025