Open-source AI penetration testing tool to find and fix your app’s vulnerabilities.
-
Updated
Oct 4, 2026 - Python
Automate your code review with style, quality, security, and test‑coverage checks when you need them most. Code quality is intended to keep complexity down and runtime up.
Open-source AI penetration testing tool to find and fix your app’s vulnerabilities.
Codebase intelligence for AI and humans: code health scores, auto-generated docs, git analytics, dead code detection, and architectural decisions via MCP.
DeepAudit:人人拥有的 AI 黑客战队,让漏洞挖掘触手可及。国内首个开源的代码漏洞挖掘多智能体系统。小白一键部署运行,自主协作审计 + 自动化沙箱 PoC 验证。支持 Ollama 私有部署 ,一键生成报告。支持中转站。让安全不再昂贵,让审计不再复杂。
It's not just a linter that annoys you!
The strictest and most opinionated python linter ever!
Static Code Analysis - 静态代码分析
A plugin for Flake8 finding likely bugs and design problems in your program. Contains warnings that don't belong in pyflakes and pycodestyle.
Open source local-first PR scanner that finds dead code, security bugs, secrets, quality regressions, and AI-code mistakes before merge. For first timers refer to https://duriantaco.github.io/skylos/repo-map/
Embedding-based discovery of duplicated logic for projects too large or messy to maintain reliably
An old coder's strategy for the agent era: don't read the code — make it run the gauntlet. Evidence-first development skill for coding agents, inspired by Uncle Bob.
Explain yourself! Interrogate a codebase for docstring coverage.
A GitHub
app to automatically review Python code style over Pull Requests
🚀 AI-powered code review tool for GitHub, GitLab, Bitbucket Cloud, Bitbucket Server, Azure DevOps and Gitea — built with LLMs like OpenAI, Claude, Gemini, Ollama, Bedrock, OpenRouter and Azure OpenAI
A collection of 265 rules across 26 categories that AI coding agents can use to write idiomatic, fast, and safe Rust.
Find issues worth your attention.
Local codebase intelligence CLI + MCP server for AI coding agents: SQLite code graph, 28 languages, 287 commands, 246 MCP tools, change-safety gates, audit evidence, zero API keys.
An AI-powered GitHub code review tool that uses LLMs to detect high-confidence, high-impact issues—such as security vulnerabilities, bugs, and maintainability concerns.
Flake8 plugin to find commented out or dead code
Static analysis tool that catches 1000+ bug patterns across all popular programming languages, with auto-wiring into AI coding agent quality guardrails
Detect flaky tests, quantify CI waste in dollars, and auto-fix with AI. For GitHub Actions teams
Advanced static analysis for automatically finding runtime errors in JavaScript, TypeScript, React, and Vue code
Codacy helps to build effortless code quality and security for developers
A software engineering intelligence tool tool to identify and prioritize technical debt and evaluate your efficiency
Engineering Insights. Analyze velocity and output. Measure AI impact
ABAP quality assurance and static analysis
Automated code review for humans and AI
Ensure that new code is fully covered, and see coverage trends emerge. Works with any CI service
Code scanning at ludicrous speed. Find bugs and reachable dependency vulnerabilities. Enforce standards on every commit
an add-on to github actions which allows safely pushing changes back to pull requests
Stop merging code you don't fully understand
Team Stats, Pull Request notifications and focused reminders for Slack
AI code reviews and security scanning
a continuous integration service for the pre-commit framework
Apply size labels to Pull Requests based on the total lines of code changed