shellharden
static-analysis
Our great sponsors
shellharden | static-analysis | |
---|---|---|
16 | 15 | |
4,543 | 12,858 | |
- | 1.8% | |
5.0 | 9.4 | |
about 1 month ago | 12 days ago | |
Rust | Rust | |
Mozilla Public License 2.0 | MIT License |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
shellharden
-
Shellcheck finds bugs in your shell scripts
Everytime I see Shellcheck coming up, I have to mention shellharden[0] written by a colleague of mine. It is basically shellcheck but it applies the suggested changes automatically.
0: https://github.com/anordal/shellharden
-
similar to shellcheck?
Also worth mentioning shellharden
-
Bash Pitfalls
See also:
* https://www.shellcheck.net/ — linting tool to avoid common mistakes and improve your script
* Bash Practices: https://mywiki.wooledge.org/BashGuide/Practices
* Bash Pitfalls: https://mywiki.wooledge.org/BashPitfalls
* safe ways to do things in bash: https://github.com/anordal/shellharden/blob/master/how_to_do...
* better scripting: https://robertmuth.blogspot.in/2012/08/better-bash-scripting...
* robust scripting: https://www.davidpashley.com/articles/writing-robust-shell-s...
-
Code formatter, linters, etc. Recommendations?
There is shellcheck, and shellharden which is a strict version of it. There are similar stuff here, some that also help with your editor. You can also use a docker version of shfmt. See here for a quick tutorial on shfmt.
-
What is best Method of Submitting Bash Script, short Python ignorance confession (lament.)
Regarding linters, there are several of them in most languages.For bash, there is Shellcheck or a more strict (and sometimes confusing) Shellharden to do exactly what you want.
-
Awesome Rewrite It In Rust - A curated list of replacements for existing software written in Rust
For example, shellharden looks awesome.
- anordal/shellharden Safe ways to do things in bash
- How to do things safely in Bash
- How to do things safely in Bash (2018)
static-analysis
-
Static Analysis Tools for C
Readers should also peruse the 'Multiple languages' section, many of the big names, Coverity, Klocwork et al. are listed there.
see https://github.com/analysis-tools-dev/static-analysis#multip...
- Static-analysis – A curated list of static analysis (SAST) tools and linters
- Are you in favor of small functions/clean code or opposed to it?
-
Looking for feedback on our new website for Code Analysis Tools
this is Matthias from https://analysis-tools.dev.
-
Beating a dead horse?
Not an area I've had to deal with much unfortunately. Here is also a curated list of SAST tools grouped by technology. It can take quite some time to properly vet tools like this, but you might find something valuable in there.
-
Checked C
https://github.com/analysis-tools-dev/static-analysis
-
From Novice to contributor to Linux Kernel and/or other Low-Level projects
You can for example rely on static analyzers and scan the repositories (just please take care of making sure that any fix you make actually makes sense, sometimes people will just make whatever causes the reports to go away without understanding them). This site lists a bunch of them for different languages -> https://analysis-tools.dev/
-
What's the best free security scan tool for C/C++ files?
There's a bunch on https://github.com/analysis-tools-dev/static-analysis
-
Does anyone know of any tool for calculating the cyclomatic complexity of pascal-based source code?
https://github.com/analysis-tools-dev/static-analysis - general list of SAST
What are some alternatives?
ShellCheck - ShellCheck, a static analysis tool for shell scripts
solana - Web-Scale Blockchain for fast, secure, scalable, decentralized apps and marketplaces.
shfmt - Dockernized shfmt. This formats shell script.
awesome-rust - A curated list of Rust code and resources.
shfmt - A shell formatter (sh/bash/mksh)
find-sec-bugs - The SpotBugs plugin for security audits of Java web applications and Android applications. (Also work with Kotlin, Groovy and Scala projects)
azure-policy - Repository for Azure Resource Policy built-in definitions and samples
rust-blog - Educational blog posts for Rust beginners
sh - A shell parser, formatter, and interpreter with bash support; includes shfmt
awesome-linters - A community-driven list of awesome linters.
rust_cmd_lib - Common rust command-line macros and utilities, to write shell-script like tasks in a clean, natural and rusty way
dynamic-analysis - ⚙️ A curated list of dynamic analysis tools and linters for all programming languages, binaries, and more.