LLM <-- MCP --> CodeQL( AST | CFG | CLI | LSP )
-
Updated
Jul 30, 2026 - TypeScript
LLM <-- MCP --> CodeQL( AST | CFG | CLI | LSP )
Dismiss GitHub Code Scanning alerts from SARIF suppression data
Monitor your code for exposed API keys, tokens, credentials, and high-risk security IaC misconfigurations
OpenVScan is a web-based vulnerability scanner that integrates open-source tools with AI to deliver smarter, faster and more reliable pre-production security testing.
All AIs are sycophants.
🛡️ AI code security & PR risk analysis — auto-reviews PRs, detects vulnerabilities, opens fix PRs automatically. GPT-4o + GitHub Webhooks.
AI-powered browser-based vulnerability scanner using UniXcoder embeddings and RAG with LLM to detect security flaws across 9 languages.
MCP server wrapping Joern for AI-driven code security analysis
Securing your Code with GitHub workshop
Static security scanner for 14 languages — OWASP Top 10, 43+ vuln types, zero config. CLI + API + VS Code.
AI-powered security vulnerability scanner that runs locally via npm with zero infrastructure. 131+ OWASP rules, 15 languages, free AI analysis, MCP server for coding agents.
Offline, zero-dependency static capability analyzer for JavaScript — see what a script can do (network, filesystem, exec, secrets) before you run it. CLI + CI exit codes.
Free, no-login security scanner for any public GitHub repo. Check for leaked secrets, malware, malicious packages, typosquats, vulnerable dependencies (OSV) and bad binaries (VirusTotal) before you clone. Swap github.com to friskit.dev.
It is an AI-powered security analysis tool that scans code, logs, and text inputs to detect exposed API keys, tokens, and sensitive credentials, helping developers prevent secret leaks, enhance secure coding practices, and strengthen overall application security.
Automated security vulnerability detection and fix PR generation for GitHub repositories
Type‑safe, stable, scalable.
Guard AI agent dependency installations with intelligent security checks
GitHub Action for VulnHunter security scanning. SARIF output, PR annotations, CI/CD gating.
Un filtro de seguridad para código generado por IA. Verifica dependencias alucinadas contra npm/PyPI, compila, y valida que el resultado realmente renderice.
Add a description, image, and links to the code-security topic page so that developers can more easily learn about it.
To associate your repository with the code-security topic, visit your repo's landing page and select "manage topics."