returntocorp / semgrep
Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.

See what the GitHub community is most excited about today.
Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.
Adds static typing to JavaScript to improve developer productivity and code quality.
Coq is a formal proof management system. It provides a formal language to write mathematical definitions, executable algorithms and theorems together with an environment for semi-interactive development of machine-checked proofs.
The core OCaml system: compilers, runtime system, base libraries
Mina is a new cryptocurrency with a constant size blockchain, improving scaling while maintaining decentralization and security.
Simple high-level language for writing Internet Computer canisters
pfff is mainly an OCaml API to write static analysis, dynamic analysis, code visualizations, code navigations, or style-preserving source-to-source transformations such as refactorings on source code.
A static analyzer for Java, C, C++, and Objective-C
opam is a source-based package manager. It supports multiple simultaneous compiler installations, flexible package constraints, and a Git-friendly development workflow.
Unison file synchronizer