Repository navigation
code-security
- Website
- Wikipedia
A GitHub Security Lab initiative, providing an in-repo learning experience, where learners secure intentionally vulnerable code.
Static Value-Flow Analysis Framework for Source Code
🎯 Server Side Template Injection Payloads
Globstar is a fast, feature-rich, and open-source static analysis toolkit for writing and running code checkers. Based on tree-sitter.
Prevent merging of malicious code in pull requests
🎯 CSV Injection Payloads
Django application that performs SAST and Malware Analysis for Android APKs
Focused malicious code detection ruleset, with a high protection-to-noise ratio
The purpose of this document is to outline the security risks and vulnerabilities that may arise when implementing ChatGPT in web applications and to provide best practices for mitigating these risks.
AI code generation and improvement
Monitor your code for exposed API keys, tokens, credentials, and high-risk security IaC misconfigurations
Codeaudit - Modern Python source code analyzer based on distrust.
Official documentation for Gitsecure
Contexi let you interact with entire codebase or data with context using a local LLM on your system.
PyGitGuard is a Git security scanner designed to prevent accidental commits of sensitive data by scanning for:
Lightweight Rust CLI vulnerability scanner
AI-powered browser-based vulnerability scanner using UniXcoder embeddings and RAG with LLM to detect security flaws across 9 languages.
A fast and powerful CLI tool for finding secrets and other data in files, web pages, and other text sources. Supports multi-threading and advanced pattern matching.
ESLint backbone repository for workshop
The only tool your project needs to ensure security and quality. Open-source and free.