semgrep / semgrep
Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.
See what the GitHub community is most excited about this week.
Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.
Test framework for OCaml
The core OCaml system: compilers, runtime system, base libraries
OCaml code generator and runtime library for handling typed tree-sitter CSTs
🔎 Static code analysis engine to find security issues in code.
Terrateam is an open-source GitOps CI/CD platform for automating infrastructure workflows. It integrates with GitHub to orchestrate Terraform, OpenTofu, CDKTF, Terragrunt, and Pulumi operations via pull requests.
Performant type-checking for python.
Mina is a cryptocurrency protocol with a constant size blockchain, improving scaling while maintaining decentralization and security.
A static analyzer for Java, C, C++, and Objective-C
Adds static typing to JavaScript to improve developer productivity and code quality.
The Flambda backend project for OCaml
The Rocq Prover is an interactive theorem prover, or proof assistant. It provides a formal language to write mathematical definitions, executable algorithms and theorems together with an environment for semi-interactive development of machine-checked proofs.
magic-trace collects and displays high-resolution traces of what a process is doing
Unison file synchronizer