>> OPEN TOOL

    Semantic code analysis engine by GitHub that finds vulnerabilities using database-like queries over code.

    Category

    Security

    Subcategory

    Vulnerability Scanning

    Free Tier

    Free for open source

    Paid Plans

    Included in GitHub Advanced Security

    API Cost

    Not available yet

    Web AppAPIVS Code ExtensionCLI

    SOC2ISO27001GDPRHIPAA

    ● certified · ○ not verified

    Compliance data is community-sourced and may be incomplete or out of date. Always verify certifications directly with the vendor's official trust or security page before relying on them.

    Self-hostable

    Yes

    Some data-handling details aren't verified yet. Help verify this data ↗

    Code vulnerability scanningSecurity analysisOpen source securityCI/CD security

    // MORE IN VULNERABILITY SCANNING

    GitGuardian logoGitGuardian
    Freemium
    SecurityVulnerability Scanning
    #secrets detection#credential scanning
    Semgrep logoSemgrep
    Freemium
    SecurityVulnerability Scanning
    #static analysis#sast
    Veracode logoVeracode
    Paid
    SecurityVulnerability Scanning
    #application security#sast