static-analysis
Roslynator
static-analysis | Roslynator | |
---|---|---|
15 | 17 | |
12,881 | 2,972 | |
1.2% | 0.8% | |
9.4 | 9.3 | |
5 days ago | 11 days ago | |
Rust | C# | |
MIT License | GNU General Public License v3.0 or later |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
static-analysis
-
Static Analysis Tools for C
Readers should also peruse the 'Multiple languages' section, many of the big names, Coverity, Klocwork et al. are listed there.
see https://github.com/analysis-tools-dev/static-analysis#multip...
- Static-analysis – A curated list of static analysis (SAST) tools and linters
- Are you in favor of small functions/clean code or opposed to it?
-
Looking for feedback on our new website for Code Analysis Tools
this is Matthias from https://analysis-tools.dev.
-
Beating a dead horse?
Not an area I've had to deal with much unfortunately. Here is also a curated list of SAST tools grouped by technology. It can take quite some time to properly vet tools like this, but you might find something valuable in there.
-
Checked C
https://github.com/analysis-tools-dev/static-analysis
-
From Novice to contributor to Linux Kernel and/or other Low-Level projects
You can for example rely on static analyzers and scan the repositories (just please take care of making sure that any fix you make actually makes sense, sometimes people will just make whatever causes the reports to go away without understanding them). This site lists a bunch of them for different languages -> https://analysis-tools.dev/
-
What's the best free security scan tool for C/C++ files?
There's a bunch on https://github.com/analysis-tools-dev/static-analysis
-
Does anyone know of any tool for calculating the cyclomatic complexity of pascal-based source code?
https://github.com/analysis-tools-dev/static-analysis - general list of SAST
Roslynator
-
Roslynator VS Metalama - a user suggested alternative
2 projects | 7 Dec 2023
-
does anyone have a working csharp-language-server setup they can share?
There's also this project https://github.com/JosefPihrt/Roslynator that can add even more analyzers.
-
What do you think about formatting contents in parenthesis like contents in braces?
It does. Nearly every style guide I've seen for any language that allows this prefers this style. I personally prefer it when such structures are needed, but would suggest following it just for consistency and the practical benefits.
-
top 5 things every c# developer should know
Roslynator.Analyzers
-
How to write clear and robust unit tests: the dos and don'ts
The reason I say 'similar' above is that though you may treat it as production code, there are some things in the nature of writing tests that may require different coding standard to be enforced. A good example of this is the RCS1046 analyzer, enforcing names of asynchronous methods to be suffixed with 'Async'; in this case it would be acceptable to override this rule (with an .editorconfig for example) so that you're method name continues to describe the behaviour of the application, and we don't have tests named like public async Task My_descriptive_method_name_async().
-
Linting async method declarations
You can write Roslyn analyzer but you can also simply use this set of analyzers: https://github.com/JosefPihrt/Roslynator. It has analyzers for both async method not ending with Async and non-async methods ending with Async.
-
Is my code hard to read?
My suggestion is to look into installing Roslynator or Sonarlint. Both are free and work with either Visual Studio or VS Code. With them you can right click on your solution and Run Analysis and it will give you a list of "code smells" and automatic fixes for many of them. They are great tools for any dev.
-
Visual Studio vs. Jetbrains Rider Performance
Roslynator while not exactly as good as full R# does a pretty good job for the analysis and refactoring hints imo. Paired with Intellicode + NCrunch (paid) so far has been a good enough experience for us.
-
Which code convention would you choose between these two as best practice?
I prefer the second and roslynator would give RCS1124: Inline local variable1 for the first one.
-
What NuGet packages do you automatically add
Roslynator.Analyzers
What are some alternatives?
solana - Web-Scale Blockchain for fast, secure, scalable, decentralized apps and marketplaces.
StyleCopAnalyzers - An implementation of StyleCop rules using the .NET Compiler Platform
awesome-rust - A curated list of Rust code and resources.
sonar-dotnet-vscode - Sonar Dotnet is an Visual Studio Code extensions to C#
find-sec-bugs - The SpotBugs plugin for security audits of Java web applications and Android applications. (Also work with Kotlin, Groovy and Scala projects)
omnisharp-roslyn - OmniSharp server (HTTP, STDIO) based on Roslyn workspaces
rust-blog - Educational blog posts for Rust beginners
Refactoring Essentials - Refactoring Essentials for Visual Studio
awesome-linters - A community-driven list of awesome linters.
AxoCover - Nice and free .Net code coverage support for Visual Studio with OpenCover.
dynamic-analysis - ⚙️ A curated list of dynamic analysis tools and linters for all programming languages, binaries, and more.
VsVIM - Vim Emulator Plugin for Visual Studio 2015+