{"repo":"Bearer/bearer","free":true,"listed":false,"github":"https://github.com/Bearer/bearer","clone":"git clone https://github.com/Bearer/bearer.git","description":"Code security scanning tool (SAST) to discover, filter and prioritize security and privacy risks.","language":"Go","stars":2726,"topics":["appsec","compliance","devsecops","devsecops-tools","security","security-tools","dataflow","gdpr","privacy","sast"],"license":null,"category":"security-tools","readme_excerpt":"Scan your source code against top security and privacy risks. Bearer is a static application security testing (SAST) tool designed to scan your source code and analyze data flows to identify, filter, and prioritize security and privacy risks. Bearer offers a free, open solution, Bearer CLI, and a commercial solution, Bearer Pro, available through Cycode . Getting Started - FAQ - Documentation - Report a Bug [![GitHub Release][release-img]][release] [![Test][test-img]][test] Language Support Bearer CLI (Open Source) : Go • Java • JavaScript • TypeScript • PHP • Python • Ruby Bearer Pro by Cycode : All Bearer CLI languages plus: - Advanced Cross-file Analysis : Java • Python • C# • Go - Additional Languages : C# • Kotlin • Elixir • VB.Net • Rust • Swift Learn more about language support Developer friendly static code analysis for security and privacy Bearer CLI scans your source code for: - Security risks and vulnerabilities using built-in rules covering the OWASP Top 10 and CWE Top 25, such as: - A01: Access control (e.g. Path Traversal, Open Redirect, Exposure of Sensitive Information). - A02: Cryptographic Failures (e.g. Weak Algorithm, Insecure Communication). - A03: Injection (e.g. SQL Injection, Input Validation, XSS, XPath). - A04: Design (e.g. Missing Encryption of Sensitive Data, Persistent Cookies Containing Sensitive Information). - A05: Security Misconfiguration (e.g. Cleartext Storage of Sensitive Information in a Cookie or JWT). - A07: Identification and Authentic","default_branch":null,"files":null,"tree":[],"storefront":"/r/Bearer","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/Bearer/bearer/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}