SonarSource / rspec
Rule Specification
☆44Updated this week
Alternatives and similar repositories for rspec:
Users that are interested in rspec are comparing it to the libraries listed below
- SARIF Microsoft Visual Studio Code extension☆114Updated this week
- Analyse package dependency networks at the call graph level☆93Updated last year
- Automatic repair system for static analysis warnings from SonarQube's SonarJava, TDSC 2022 http://arxiv.org/pdf/2103.12033☆93Updated this week
- Static analyzer for HTML used in Sonar ecosystem☆50Updated 3 weeks ago
- Test and monitor your projects for vulnerabilities with Maven. This plugin is officially maintained by Snyk.☆80Updated 2 weeks ago
- POJOs generated from the Static Analysis Results Interchange Format (SARIF) JSON schema.☆23Updated 3 years ago
- The SCANOSS SBOM Workbench graphical user interface to scan and audit your source code.☆50Updated this week
- SonarQube Sonargraph Integration Plugin☆17Updated last year
- A cli that can be used to query various online vulnerability sources such as the NVD or GHSA. The CLI and docker images can be used to mi…☆145Updated this week
- TESTAR, automated testing through the Graphical User Interface☆41Updated last week
- A React-based component for viewing SARIF files.☆94Updated 5 months ago
- A set of Python command line tools for working with SARIF files produced by code analysis tools☆107Updated 3 months ago
- The OpenSSF CVE Benchmark consists of code and metadata for over 200 real life CVEs, as well as tooling to analyze the vulnerable codebas…☆142Updated last year
- HUB REST API Python bindings☆93Updated 2 months ago
- creates CycloneDX Software-Bill-of-Materials (SBOM) from node-based projects☆127Updated 2 months ago
- CycloneDX SBOM Model and Utils for Creating and Validating BOMs☆93Updated this week
- ☆51Updated 4 months ago
- ☆38Updated this week
- Python classes for the SARIF object model☆43Updated last year
- A collection of test cases in the Java language. It contains examples for 112 different CWEs.☆54Updated 3 years ago
- ☆13Updated 10 months ago
- Semgrep extension for Visual Studio Code☆59Updated last month
- SpongeBugs: Automatically Generating Fix Suggestions for SonarQube / SpotBugs☆23Updated 3 years ago
- Create CycloneDX Software Bill of Materials (SBOM) from Node.js NPM projects.☆84Updated last week
- Main repository for the official Dependency-Track Jenkins plugin☆49Updated this week
- Generating tests from production workloads http://arxiv.org/pdf/2012.01198☆18Updated 5 months ago
- ☆22Updated 6 years ago
- Core library to run SonarLint analysis☆233Updated this week
- Botsing is a Java framework for crash reproduction. It depends on EvoSuite (http://www.evosuite.org) for code instrumentation.☆33Updated 2 years ago
- CodeQL Security Queries☆26Updated this week