A static analysis tool for infrastucture as code (Terraform).
PythonApache License 2.0active
6 projectsWeb › Development
A static analysis tool for infrastucture as code (Terraform).
PythonApache License 2.0active
Scan code for security risks and vulnerabilities leading to sensitive data exposures.
GoOtheractive
Scans IaC projects for security vulnerabilities, compliance issues, and infrastructure misconfiguration. Currently working with Terraform projects, Kubernetes manifests, Dockerfiles, AWS CloudFormation Templates, and Ansible playbooks.
Open Policy AgentApache License 2.0active
Node.js file-upload malware scanner with MIME sniffing, ZIP-bomb protection and optional YARA rules.
JavaScriptISC Licenseactive
A open source Static Application Security Testing tool (SAST) written in GoLang for Java (Maven and Android), Kotlin (Android), Swift (iOS), .NET Full Framework, C# and Javascript (Node.js).
GoMIT Licensedormant
Leverage the OWASP Zed Attack Proxy (ZAP) within your NodeJS applications with this official API.
JavaScriptApache License 2.0active