Todas las etiquetas
Etiqueta del catálogo

#static-analysis

Todos los repositorios del registro público que llevan esta etiqueta, procedente de sus topics de GitHub o de las palabras clave que publican sus registros de paquetes. La salud se mide con la misma metodología versionada que el resto del registro.

360 registros
Con la etiqueta «static-analysis»Ordenado por índice de salud
PyPI · Go · Maven +1
51Moderadoíndice de salud
nikitatsym/tackbox
Error-handling lint for Go, Python, Java, JS/TS, Svelte: every failure must report, propagate, or explain itself. Agent hook + pre-commit + CI.
Python · Go · Java★ 0↓ 1088/mes15 jul 2026
MIT15 jul 2026 · métricas 2.10.0
PyPI
51Moderadoíndice de salud
vishnu-77/secchecker
El repositorio no publica descripción.
Python★ 122 jul 2026
MIT22 jul 2026 · métricas 2.10.0
Packagist
50Moderadoíndice de salud
AxeWP/WPGraphQL-Coding-Standards
PHP_Codesniffer ruleset (sniffs) for the WPGraphQL plugin ecosystem
Mixto★ 11↓ 4087/mes21 jul 2026
GPL-3.021 jul 2026 · métricas 2.10.0
Packagist
50Moderadoíndice de salud
Moxio/php-codesniffer-sniffs
Custom sniffs for PHP_CodeSniffer
PHP★ 17↓ 3358/mes12 ago 2026
MIT12 ago 2026 · métricas 2.10.0
npm
50Moderadoíndice de salud
mleoca/ucn
Universal Code Navigator
JavaScript★ 1↓ 2153/mes16 jul 2026
MIT16 jul 2026 · métricas 2.10.0
Packagist
50Moderadoíndice de salud
phpcpd-next/phpcpd
phpcpd-next is a token-based copy/paste (clone) detector for PHP 8.5+, a modernized, openly-licensed successor to Sebastian Bergmann's phpcpd
PHP★ 34↓ 2961/mes18 ago 2026
BSD-3-Clause18 ago 2026 · métricas 2.10.0
npm
48Débilíndice de salud
BenAHammond/code-auditor-mcp
Architectural invariants and code quality analysis, enforced inside your AI agent's edit loop. MCP server + CLI + Claude Code plugin. TypeScript, JavaScript, Go.
TypeScript★ 7↓ 5432/mes26 jul 2026
MIT26 jul 2026 · métricas 2.10.0
Go · PyPI
48Débilíndice de salud
Zayan-Mohamed/secscan
SecScan is a fast, configurable secret scanning tool written in Go that detects API keys, tokens, credentials, and high-entropy secrets across source code and full Git history. Built for developers and CI pipelines, with strong defaults and low false positives.
Go · Shell · PowerShell★ 420 jul 2026
MIT20 jul 2026 · métricas 2.10.0
Go
48Débilíndice de salud
alexkohler/nakedret
nakedret is a Go static analysis tool to find naked returns in functions greater than a specified function length.
Go★ 1324 ago 2026
MIT4 ago 2026 · métricas 2.10.0
Go
48Débilíndice de salud
chalvinwz/tertib
AI-powered code convention checker for CI. Enforce your team's conventions from a plain-language YAML file — vendor-neutral, language-agnostic Go CLI.
Go★ 02 ago 2026
MIT2 ago 2026 · métricas 2.10.0
Go
48Débilíndice de salud
cloverrose/rpcguard
rpcguard checks if connect-RPC endpoint method is implemented properly
Go★ 021 jul 2026
Sin licencia21 jul 2026 · métricas 2.10.0
npm
48Débilíndice de salud
criticaldeveloper/critical-gate
El repositorio no publica descripción.
TypeScript★ 1↓ 3922/mes16 jul 2026
MIT16 jul 2026 · métricas 2.10.0
crates.io
48Débilíndice de salud
eezz4/zzop
Deterministic cross-repo contract analysis you can gate CI on — joins frontend calls to backend routes across repo boundaries and flags drift (typo'd path, version skew, dead endpoint). Also a multi-language SAST/architecture engine (TS/JS, Prisma, Java), extensible via adapters. Rust core, npm CLI/SDK.
Rust★ 123 jul 2026
MIT23 jul 2026 · métricas 2.10.0
npm
48Débilíndice de salud
gerlanss/Sema
Local-first semantic governance for AI agents: contracts, impact, drift, evidence, and verified execution. Codex is the first native integration.
TypeScript★ 0↓ 2217/mes1 ago 2026
Licencia propia1 ago 2026 · métricas 2.10.0
PyPI · crates.io · npm
48Débilíndice de salud
kent-tokyo/elixcee
Run, test, and diagnose Excel VBA macros without Microsoft Excel. elixcee is a Rust-powered headless VBA runtime for Linux, macOS, and Windows, with static analysis, property-based workbook testing, and root-cause diagnostics for common Excel operation failures.
JavaScript · Rust★ 1↓ 3021/mes19 ago 2026
Sin licencia19 ago 2026 · métricas 2.10.0
Packagist
48Débilíndice de salud
staabm/side-effects-detector
Analyzes php-code for side-effects.
PHP★ 165↓ 11.4M/mes27 ago 2026
MIT27 ago 2026 · métricas 2.10.0
Hex
47Débilíndice de salud
artur-sulej/excellent_migrations
An Elixir tool for checking safety of database migrations.
Elixir★ 295↓ 108.9K/mes17 jul 2026
MIT17 jul 2026 · métricas 2.10.0
Go
47Débilíndice de salud
jbakchr/hewd
hewd is a lightweight Go‑based command‑line tool for initializing, scanning, and diagnosing documentation assets in codebases. It helps developers automatically detect project structure, validate documentation, and output insights in human‑ or machine‑readable formats.
Go★ 031 jul 2026
Licencia propia31 jul 2026 · métricas 2.10.0
npm
47Débilíndice de salud
maclevison/cliquet
The quality ratchet for TS/JS: 9 zero-config gates against a versioned baseline — quality can only improve, never regress.
TypeScript★ 1↓ 2177/mes18 jul 2026
MIT18 jul 2026 · métricas 2.10.0
PyPI
45Débilíndice de salud
iamjpsonkar/JaySoft-AI_Tools
Codebase intelligence shell and SDK — pip install jsat
Python★ 1↓ 4759/mes19 ago 2026
Sin licencia19 ago 2026 · métricas 2.10.0
45Débilíndice de salud
policeman-tools/forbidden-apis
Policeman's Forbidden API Checker
Java★ 37221 ago 2026
Apache-2.021 ago 2026 · métricas 2.10.0
Packagist
44Débilíndice de salud
spaze/phpcs-phar
PHP_CodeSniffer phar releases, automated and always up-to-date
PHP★ 1↓ 2501/mes6 ago 2026
Licencia propia6 ago 2026 · métricas 2.10.0
Go
44Débilíndice de salud
yasomaru/lintel
Architecture lint for any language — one arch.yaml for layers, dependency rules, and AI-era guardrails
Go★ 025 jul 2026
MIT25 jul 2026 · métricas 2.10.0
Go
42Débilíndice de salud
timakin/bodyclose
Analyzer: checks whether HTTP response body is closed and a re-use of TCP connection is not blocked.
Go★ 32329 ago 2026
MIT29 ago 2026 · métricas 2.10.0
Go
42Débilíndice de salud
zuhayrb/dexpose
Pure-Go CLI that scans APK files for leaked secrets. Zero dependencies, gitleaks-compatible rules, CI-friendly exit codes.
Go★ 85 sept 2026
MIT5 sept 2026 · métricas 2.10.0
Go
39Débilíndice de salud
taq25/templ-lint
Security linter for a-h/templ: detects XSS-prone htmx / Alpine.js usage by parsing .templ files directly with parser/v2
Go★ 017 jul 2026
MIT17 jul 2026 · métricas 2.10.0
Go
38Débilíndice de salud
StyraOSS/roast
Roast is an optimized JSON format for Rego ASTs, as well as some common utilities for working with it.
Go★ 522 jul 2026
Apache-2.022 jul 2026 · métricas 2.10.0
Go
38Débilíndice de salud
nakabonne/nestif
Detect deeply nested if statements in Go source code
Go★ 444 ago 2026
BSD-2-Clause4 ago 2026 · métricas 2.10.0
Go · crates.io · npm
38Débilíndice de salud
tejaswini4119/phishvault
A Collabarative Project of developing and deploying a secure and intelligent platform designed to help users investigate, manage, and analyze potentially malicious URLs.
Go · TypeScript · Rust★ 217 jul 2026
BSD-3-Clause17 jul 2026 · métricas 2.10.0
Go
37Débilíndice de salud
sivchari/containedctx
containedctx is a linter that detects struct contained context.Context field
Go★ 254 ago 2026
MIT4 ago 2026 · métricas 2.10.0