There are 138 repositories under static-analysis topic.
ShellCheck, a static analysis tool for shell scripts
🔍 A Hex Editor for Reverse Engineers, Programmers and people who value their retinas when working at 3 AM.
An extremely fast Python linter, written in Rust.
Mobile Security Framework (MobSF) is an automated, all-in-one mobile application (Android/iOS/Windows) pen-testing, malware analysis and security assessment framework capable of performing static and dynamic analysis.
A Java 8+ Jar & Android APK Reverse Engineering Suite (Decompiler, Editor, Debugger & More)
A tool to automatically fix PHP Coding Standards issues
⚙️ A curated list of static analysis (SAST) tools and linters for all programming languages, config files, build tools, and more. The focus is on tools which improve code quality.
Useful CMake Examples
The Mobile Application Security Testing Guide (MASTG) is a comprehensive manual for mobile app security testing and reverse engineering. It describes the technical processes for verifying the controls listed in the OWASP Mobile Application Security Verification Standard (MASVS).
PHP_CodeSniffer tokenizes PHP files and detects violations of a defined set of coding standards.
Defund the Police.
Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.
Checkstyle is a development tool to help programmers write Java code that adheres to a coding standard. By default it supports the Google Java Style Guide and Sun Code Conventions, but is highly configurable. It can be invoked with an ANT task and a command line program.
A powerful and open-source toolkit for hackers and security automation - 安全行业从业者自研开源扫描器合辑
A static analysis security vulnerability scanner for Ruby on Rails applications
🐶 Automated code review tool integrated with any code analysis tools regardless of programming language
Performant type-checking for python.
Security scanner for your Terraform code
Prevent cloud misconfigurations and find vulnerabilities during build-time in infrastructure as code, container images and open source packages with Checkov by Bridgecrew.
Awesome autocompletion, static analysis and refactoring library for python
Phan is a static analyzer for PHP. Phan prefers to avoid false-positives and attempts to prove incorrectness rather than correctness.
Visualize call graph of a Go program using Graphviz