sonar-dotnet
security-code-scan
sonar-dotnet | security-code-scan | |
---|---|---|
2 | 2 | |
720 | 919 | |
1.5% | 1.4% | |
9.9 | 0.0 | |
4 days ago | 5 days ago | |
C# | C# | |
GNU Lesser General Public License v3.0 only | GNU Lesser General Public License v3.0 only |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
sonar-dotnet
-
Is breaking out from an infinite async iterator via cancellation considered a code smell?
👍 I've reported an issue here, let's see how it goes. I think it will probably be turned down 🙂
-
top 5 things every c# developer should know
SonarAnalyzer.CSharp
security-code-scan
-
Top 12 Cloud Security Tools for 2021
4. Security code scan
-
F# with C#
Ah. So we're reaching the limits of my knowledge here, but F# was bootstrapped (written in itself) in 2006, which predates Roslyn (C#'s bootstrapping) by about ~5 years. Bootstrapping makes building code analysis tools/APIs easier. Unfortunately the F# Compiler Service and Roslyn are incompatible, and tools built in Roslyn do not work for F#. (This isn't the first time C# has taken ideas from F# but broke compatibility... Task vs Async... but I digress.) These tools include things like Security Code Scan, which I had in mind when I wrote the OP. Typically when projects say "For C# and VB.NET" they're using Roslyn (which supports VB.NET). Otherwise if they supported C#, VB.NET, and F#... they'd just say they do all of dotnet - no need to specify 2/3 languages. Microsoft's own Edit and Continue documentation follows this trend of specifying C# and VB.NET, but excluding F#.
What are some alternatives?
sonar-php - :elephant: SonarPHP: PHP static analyzer for SonarQube & SonarLint
AlbionOnline-StatisticsAnalysis - A tool with many features for the game Albion Online
Roslynator - Roslynator is a set of code analysis tools for C#, powered by Roslyn.
Phishious - An open-source Secure Email Gateway (SEG) evaluation toolkit designed for red-teamers.
vblang - The home for design of the Visual Basic .NET programming language and runtime library.
Inventory_Kamera - Scans Genshin Impact characters, artifacts, and weapons from the game window into a JSON file.
SonarJS - SonarSource Static Analyzer for JavaScript and TypeScript
PeachPie - PeachPie - the PHP compiler and runtime for .NET and .NET Core
mongo-csharp-analyzer - The MongoDB Analyzer is a free tool that helps you understand how your code translates into the MongoDB Query API.
node-hp-scan-to - Allow to send scan from device to computer for some HP All-in-One Printers - Scan to computer
csharpier - CSharpier is an opinionated code formatter for c#.
cyclonedx-bom-repo-server - A BOM repository server for distributing CycloneDX BOMs