DevSkim is a set of IDE plugins, language analyzers, and rules that provide security "linting" capabilities.
☆988May 15, 2026Updated last week
Alternatives and similar repositories for DevSkim
Users that are interested in DevSkim are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- A binary static analysis tool that provides security and correctness results for Windows Portable Executable and *nix ELF binary formats☆852Updated this week
- DevSkim plugin for Visual Studio.☆56Apr 16, 2020Updated 6 years ago
- The GitHub Action for DevSkim☆41May 21, 2025Updated last year
- Vulnerability Patterns Detector for C# and VB.NET☆974Jul 8, 2024Updated last year
- DevSkim plugin for VS Code.☆39Apr 16, 2020Updated 6 years ago
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- A source code analyzer built for surfacing features of interest and other characteristics to answer the question 'What's in the code?' qu…☆4,391Feb 17, 2026Updated 3 months ago
- Yet Another Source Code Analyzer☆184Jan 27, 2022Updated 4 years ago
- Collection of tools for analyzing open source packages.☆361May 1, 2026Updated 3 weeks ago
- Attack Surface Analyzer can help you analyze your operating system's security configuration for changes during software installation.☆2,935Feb 26, 2026Updated 2 months ago
- DEPRECATED -- DevSkim plugin for Sublime Text 3.☆19Apr 20, 2020Updated 6 years ago
- Scan is a free & Open Source DevSecOps tool for performing static analysis based security testing of your applications and its dependenci…☆874Sep 1, 2023Updated 2 years ago
- ☆1,671Updated this week
- threatspec - continuous threat modeling, through code☆384Dec 30, 2020Updated 5 years ago
- The SBOM tool is a highly scalable and enterprise ready tool to create SPDX 2.2 compatible SBOMs for any variety of artifacts.☆2,027May 15, 2026Updated last week
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- A unified DevSecOps Framework that allows you to go from iterative, collaborative Threat Modeling to Application Security Test Orchestrat…☆281Feb 17, 2026Updated 3 months ago
- Infer# is an interprocedural and scalable static code analyzer for C#. Via the capabilities of Facebook's Infer, this tool detects null d…☆747Jan 16, 2024Updated 2 years ago
- Object Analysis Toolkit is a C# library for analyzing objects using Rules.☆99Apr 22, 2026Updated last month
- OpenSSF Scorecard - Security health metrics for Open Source☆5,455Updated this week
- A logger for MSBuild that records a structured representation of executed targets, tasks, property and item values.☆1,627May 16, 2026Updated last week
- .NET code and supporting files for working with the 'Static Analysis Results Interchange Format' (SARIF, see https://github.com/oasis-tcs…☆220Updated this week
- Source Link enables a great source debugging experience for your users, by adding source control metadata to your built assets☆1,341Updated this week
- An open source, online threat modelling tool from OWASP☆484Jul 18, 2025Updated 10 months ago
- Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.☆15,221Updated this week
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- A .NET library for retrieving countries, states, and cities.☆13Feb 7, 2026Updated 3 months ago
- A Pythonic framework for threat modeling☆1,125May 2, 2026Updated 3 weeks ago
- A .NET Standard 2.1+ Library to perform string parsing operations on Streams and StreamReaders. Includes Extensions for Regex.☆20Apr 27, 2026Updated 3 weeks ago
- VisualCodeGrepper - Code security scanning tool.☆548Jul 6, 2023Updated 2 years ago
- Scans your project to determine what components you use☆541Updated this week
- Home for the dotnet-format command☆1,945Updated this week
- ⚙️ A curated list of static analysis (SAST) tools and linters for all programming languages, config files, build tools, and more. The foc…☆14,552Updated this week
- Application Security Automation☆526Sep 5, 2023Updated 2 years ago
- A library to predict inputs and outputs of MSBuild projects☆41Apr 29, 2026Updated 3 weeks ago
- Open source password manager - Proton Pass • AdSecurely store, share, and autofill your credentials with Proton Pass, the end-to-end encrypted password manager trusted by millions.
- Cross platform code coverage for .NET☆3,151Updated this week
- Code analyzer for C# and VB.NET projects☆905May 16, 2026Updated last week
- Tye is a tool that makes developing, testing, and deploying microservices and distributed applications easier. Project Tye includes a loc…☆5,218Nov 20, 2023Updated 2 years ago
- Detect compliance and security violations across Infrastructure as Code to mitigate risk before provisioning cloud native infrastructure.☆5,211Nov 20, 2025Updated 6 months ago
- goSDL☆521Nov 3, 2025Updated 6 months ago
- A self-hosted Fuzzing-As-A-Service platform☆2,826Nov 1, 2023Updated 2 years ago
- An ultra-lightweight Rx source-only nuget to avoid depending on the full System.Reactive for IObservable<T> producers☆32May 13, 2026Updated last week