{"repo":"filipi86/drogonsec","free":true,"listed":false,"github":"https://github.com/filipi86/drogonsec","clone":"git clone https://github.com/filipi86/drogonsec.git","description":"High-performance open-source security scanner combining SAST, SCA, Secret Detection, and IaC analysis, built for developers and CI/CD pipelines, using AI for recommendation!","language":"Go","stars":173,"topics":["application-security","cicd-security","cloud-security","code-scanning","dependency-scanning","devsecops","iac-security","open-source-security","sast","sca"],"license":null,"category":"security-tools","readme_excerpt":"🛡️ Drogonsec Security Scanner An open-source, comprehensive security scanner combining SAST, SCA, and secret detection aligned with OWASP Top 10:2025 — created for intelligent remediation. --- Documentation 📖 Full Documentation: -- Drogonsec Doc --- Features Engine Description -------- ------------- SAST Static Application Security Testing for 20+ languages SCA Software Composition Analysis — the full transitive tree, not just what you declared Leaks Secret detection — 50+ patterns (AWS, GCP, GitHub, JWT, SSH keys...) IaC Infrastructure as Code misconfigurations (Terraform, Kubernetes) AI AI-powered remediation — Ollama (local/free) or cloud providers Security Frameworks - OWASP Top 10:2025 — All 10 categories covered (including 2 new: Supply Chain & Mishandling Exceptions) - CWE — Common Weakness Enumeration mapping - CVSS 3.1 — Severity scoring - SARIF 2.1 — GitHub/Azure DevOps integration Supported Languages Python Java JavaScript TypeScript Go Kotlin C# PHP Ruby Swift Dart Elixir Erlang Shell C/C++ HTML Terraform Kubernetes Nginx Dependency Coverage A manifest names a handful of packages, at version ranges . A lockfile names every package that will actually be installed, at the version it will be installed at — and that second group is nearly all the code you ship, and where nearly all the advisories are. So the column that matters is depth : Ecosystem Read from Depth --- --- --- Node.js package-lock.json , yarn.lock , node modules/ , package.json Full tree Python poetr","default_branch":null,"files":null,"tree":[],"storefront":"/r/filipi86","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/filipi86/drogonsec/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}