semgrep / semgrep
Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.
See what the GitHub community is most excited about this week.
Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.
🔎 Static code analysis engine to find security issues in code.
Unison file synchronizer
A static analyzer for Java, C, C++, and Objective-C
OCaml code generator and runtime library for handling typed tree-sitter CSTs
A verification toolchain for Rust programs
Test framework for OCaml
The core OCaml system: compilers, runtime system, base libraries
The Rocq Prover is an interactive theorem prover, or proof assistant. It provides a formal language to write mathematical definitions, executable algorithms and theorems together with an environment for semi-interactive development of machine-checked proofs.
A Rust verification tool
Adds static typing to JavaScript to improve developer productivity and code quality.