A GitHub Security Lab initiative, providing an in-repo learning experience, where learners secure intentionally vulnerable code.
-
Updated
Feb 27, 2025 - Python
A GitHub Security Lab initiative, providing an in-repo learning experience, where learners secure intentionally vulnerable code.
Static Value-Flow Analysis Framework for Source Code
🎯 Server Side Template Injection Payloads
Globstar is a fast, feature-rich, and open-source static analysis toolkit for writing and running code checkers. Based on tree-sitter.
Django application that performs SAST and Malware Analysis for Android APKs
🎯 CSV Injection Payloads
Prevent merging of malicious code in pull requests
Focused malicious code detection optimizing the protection-to-noise ratio
The purpose of this document is to outline the security risks and vulnerabilities that may arise when implementing ChatGPT in web applications and to provide best practices for mitigating these risks.
Monitor your code for exposed API keys, tokens, credentials, and high-risk security IaC misconfigurations
AI code generation and improvement
Official documentation for Gitsecure
Contexi let you interact with entire codebase or data with context using a local LLM on your system.
SAST Scanner Modified - Fully open-source SAST scanner supporting a range of languages and frameworks. Integrates with major CI pipelines and IDE such as Azure DevOps, Google CloudBuild, VS Code and Visual Studio. No server required!
Github action to run PyCQA's bandit security linter.
ESLint backbone repository for workshop
Complete DevOps CI/CD project with Documented Walkthrough
Code security analyzer for Python, JavaScript, Java vulnerabilities.
The only tool your project needs to ensure security and quality. Open-source and free.
Sonarqube community with postgreSQL database on docker
Add a description, image, and links to the code-security topic page so that developers can more easily learn about it.
To associate your repository with the code-security topic, visit your repo's landing page and select "manage topics."