semgrep / semgrep
Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.
See what the GitHub community is most excited about this month.
Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.
A static analyzer for Java, C, C++, and Objective-C
OCaml - Oxidized!
Terrateam is open-source GitOps infrastructure orchestration. It integrates with GitHub to automate Terraform, OpenTofu, CDKTF, Terragrunt, and Pulumi workflows through pull requests.
The core OCaml system: compilers, runtime system, base libraries
🔎 Static code analysis engine to find security issues in code.
The Rocq Prover is an interactive theorem prover, or proof assistant. It provides a formal language to write mathematical definitions, executable algorithms and theorems together with an environment for semi-interactive development of machine-checked proofs.
Unison file synchronizer