Open-source AI penetration testing tool to find and fix your app’s vulnerabilities.
-
Updated
Sep 1, 2026 - Python
Automate your code review with style, quality, security, and test‑coverage checks when you need them most. Code quality is intended to keep complexity down and runtime up.
Open-source AI penetration testing tool to find and fix your app’s vulnerabilities.
DeepAudit:人人拥有的 AI 黑客战队,让漏洞挖掘触手可及。国内首个开源的代码漏洞挖掘多智能体系统。小白一键部署运行,自主协作审计 + 自动化沙箱 PoC 验证。支持 Ollama 私有部署 ,一键生成报告。支持中转站。让安全不再昂贵,让审计不再复杂。
Codebase intelligence for AI and humans: code health scores, auto-generated docs, git analytics, dead code detection, and architectural decisions via MCP.
It's not just a linter that annoys you!
The strictest and most opinionated python linter ever!
Static Code Analysis - 静态代码分析
A plugin for Flake8 finding likely bugs and design problems in your program. Contains warnings that don't belong in pyflakes and pycodestyle.
An old coder's strategy for the agent era: don't read the code — make it run the gauntlet. Evidence-first development skill for coding agents, inspired by Uncle Bob.
Explain yourself! Interrogate a codebase for docstring coverage.
A GitHub
app to automatically review Python code style over Pull Requests
🚀 AI-powered code review tool for GitHub, GitLab, Bitbucket Cloud, Bitbucket Server, Azure DevOps and Gitea — built with LLMs like OpenAI, Claude, Gemini, Ollama, Bedrock, OpenRouter and Azure OpenAI
Open source local-first PR scanner that finds dead code, security bugs, secrets, quality regressions, and AI-code mistakes before merge. For first timers refer to https://duriantaco.github.io/skylos/repo-map/
Find issues worth your attention.
Local codebase intelligence CLI + MCP server for AI coding agents: SQLite code graph, 28 languages, 285 commands, 244 MCP tools, change-safety gates, audit evidence, zero API keys.
A collection of 265 rules across 26 categories that AI coding agents can use to write idiomatic, fast, and safe Rust.
An AI-powered GitHub code review tool that uses LLMs to detect high-confidence, high-impact issues—such as security vulnerabilities, bugs, and maintainability concerns.
Embedding-based code duplication detector
Flake8 plugin to find commented out or dead code
Agent Skill for code and test smell audits. Evidence-ranked findings from Refactoring, Clean Code, and the test-smell literature. Formerly pragmatic-code-review.
Automated code review for humans and AI
A GitHub app that optimizes your images
Advanced static analysis for automatically finding runtime errors in JavaScript, TypeScript, React, and Vue code
Engineering Insights. Analyze velocity and output. Measure AI impact
Detect flaky tests, quantify CI waste in dollars, and auto-fix with AI. For GitHub Actions teams
Automatic test report merging for all CI and languages into a single code coverage report directly into your pull request
CommitCheck ensures your commit messages are consistent and contain all required information
YAML configs and K8s manifests validation tool
Stop merging code you don't fully understand
Test Plan Driven QA Test Management for GitHub
a continuous integration service for the pre-commit framework
Stop visual regressions, not releases
an add-on to github actions which allows safely pushing changes back to pull requests
AI code reviews and security scanning
ABAP quality assurance and static analysis