github / codeql-go
The CodeQL extractor and libraries for Go.
☆463Updated 2 years ago
Alternatives and similar repositories for codeql-go:
Users that are interested in codeql-go are comparing it to the libraries listed below
- An extension for Visual Studio Code that adds rich language support for CodeQL☆453Updated last week
- Starter workspace to use with the CodeQL extension for Visual Studio Code.☆521Updated last week
- Binaries for the CodeQL CLI☆813Updated last week
- [mirror] The Go Vulnerability Database☆581Updated this week
- CLI to integrate continuous fuzzing with Fuzzit (no longer available)☆222Updated 4 years ago
- The licensecheck package classifies license files and heuristically determines how well they correspond to known open source licenses.☆463Updated last year
- [mirror] the database client and tools for the Go vulnerability database☆411Updated this week
- ☆196Updated 2 years ago
- Go rules for semgrep and go-ruleguard☆469Updated 5 months ago
- Dependency Parser for Multiple Programming Languages☆148Updated 11 months ago
- Go library for SARIF - Static Analysis Results Interchange Format☆76Updated 3 weeks ago
- Actions for running CodeQL analysis☆1,257Updated this week
- GitHub Satellite 2020 workshops on finding security vulnerabilities with CodeQL for Java/JavaScript.☆210Updated 7 months ago
- Resources related to GitHub Security Lab☆1,465Updated 4 months ago
- A License Classifier☆325Updated 2 months ago
- Sqreen's Application Security Management for the Go language☆208Updated last year
- Creates CycloneDX Software Bill of Materials (SBOM) from Go modules☆152Updated last week
- User-friendly documentation for the SARIF file format.☆299Updated last year
- 🚰 Static taint analysis for Go programs.☆63Updated 3 weeks ago
- Intentionally vulnerable Go web app.☆43Updated 3 months ago
- OASIS SARIF TC: Repository for development of the draft standard, where requests for modification should be made via Github Issues☆182Updated 3 weeks ago
- SARIF Microsoft Visual Studio Code extension☆114Updated 3 weeks ago
- ☆183Updated this week
- fzgo is a prototype of "make fuzzing a first class citizen" in the go command. Supports rich signatures & generating fuzz functions.☆113Updated 3 years ago
- Corpus for github.com/dvyukov/go-fuzz examples☆197Updated 4 years ago
- [mirror] Go module mechanics libraries☆201Updated 2 months ago
- A tool to check for vulnerabilities in your Golang dependencies, powered by Sonatype OSS Index☆578Updated last month
- Golang bindings for tree-sitter https://github.com/tree-sitter/tree-sitter☆480Updated 8 months ago
- ☆177Updated 2 months ago
- A static analysis tool for securing Go code☆2,179Updated last year