⚙️ A curated list of static analysis (SAST) tools and linters for all programming languages, config files, build tools, and more. The focus is on tools which improve code quality.
☆14,573May 18, 2026Updated last week
Alternatives and similar repositories for static-analysis
Users that are interested in static-analysis are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- ⚙️ A curated list of dynamic analysis tools and linters for all programming languages, binaries, and more.☆1,090May 22, 2026Updated last week
- Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.☆15,324Updated this week
- A curated list of fuzzing resources ( Books, courses - free and paid, videos, tools, tutorials and vulnerable applications to practice on…☆5,827Apr 3, 2024Updated 2 years ago
- A static analyzer for Java, C, C++, and Objective-C☆15,626Updated this week
- OSS-Fuzz - continuous fuzzing for open source software.☆12,280May 23, 2026Updated last week
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- ShellCheck, a static analysis tool for shell scripts☆39,500May 16, 2026Updated 2 weeks ago
- A collection of awesome software, libraries, documents, books, resources and cools stuffs about security.☆14,361Jan 11, 2026Updated 4 months ago
- Go security checker☆8,842Updated this week
- Vulnerability Static Analysis for Containers☆10,987Updated this week
- An incremental parsing system for programming tools☆25,611Updated this week
- CodeQL: the libraries and queries that power security researchers around the world, as well as code scanning in GitHub Advanced Security☆9,635Updated this week
- A curated list of resources for learning about application security☆6,935Feb 22, 2025Updated last year
- Open-source code analysis platform for C/C++/Java/Binary/Javascript/Python/Kotlin based on code property graphs. Discord https://discord.…☆3,212Updated this week
- Find secrets with Gitleaks 🔑☆27,294May 21, 2026Updated last week
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- UNIX-like reverse engineering framework and command-line toolset☆23,972Updated this week
- Defund the Police.☆13,790Jun 7, 2024Updated last year
- Curated list of awesome resources on Compilers, Interpreters and Runtimes☆9,793May 26, 2024Updated 2 years ago
- A collection of awesome penetration testing resources, tools and other shiny things☆26,216Jan 25, 2026Updated 4 months ago
- syzkaller is an unsupervised coverage-guided kernel fuzzer☆6,210Updated this week
- Checklist of the most important security countermeasures when designing, testing, and releasing your API☆23,234Feb 10, 2026Updated 3 months ago
- A Static Analysis Tool for Detecting Security Vulnerabilities in Python Web Applications☆2,203Dec 25, 2020Updated 5 years ago
- Bandit is a tool designed to find common security issues in Python code.☆8,051May 18, 2026Updated last week
- A command-line benchmarking tool☆28,169Apr 30, 2026Updated last month
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- ripgrep recursively searches directories for a regex pattern while respecting your gitignore☆64,075Feb 27, 2026Updated 3 months ago
- Secure and fast microVMs for serverless computing.☆34,608Updated this week
- Find, verify, and analyze leaked credentials☆26,578Updated this week
- A tool for exploring each layer in a docker image☆53,975Dec 15, 2025Updated 5 months ago
- A curated list of awesome command-line frameworks, toolkits, guides and gizmos. Inspired by awesome-php.☆36,990Aug 28, 2025Updated 9 months ago
- Performant type-checking for python.☆7,163Updated this week
- Parsing, analyzing, and comparing source code across many languages☆9,051Apr 1, 2025Updated last year
- A simple, fast and user-friendly alternative to 'find'☆43,119May 20, 2026Updated last week
- A collection of links related to Linux kernel security and exploitation☆6,472Updated this week
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- A powerful and user-friendly binary analysis platform!☆8,858Updated this week
- Scalable fuzzing infrastructure.☆5,568Updated this week
- A LLVM-based static analysis framework.☆1,042May 21, 2026Updated last week
- Agent-less vulnerability scanner for Linux, FreeBSD, Container, WordPress, Programming language libraries, Network devices☆12,162Updated this week
- A syntax-highlighting pager for git, diff, grep, rg --json, and blame output☆30,984Mar 28, 2026Updated 2 months ago
- SQL powered operating system instrumentation, monitoring, and analytics.☆23,266May 12, 2026Updated 2 weeks ago
- The SpotBugs plugin for security audits of Java web applications and Android applications. (Also work with Kotlin, Groovy and Scala proje…☆2,424Mar 26, 2026Updated 2 months ago