{"repo":"microsoft/DevSkim","free":true,"listed":false,"github":"https://github.com/microsoft/DevSkim","clone":"git clone https://github.com/microsoft/DevSkim.git","description":"DevSkim is a set of IDE plugins, language analyzers, and rules that provide security \"linting\" capabilities.","language":"C#","stars":1003,"topics":["security","sdl","linter","visual-studio-code-extension","visual-studio-extension"],"license":"MIT","category":"security-tools","readme_excerpt":"DevSkim DevSkim is a framework of IDE extensions and language analyzers that provide inline security analysis in the dev environment as the developer writes code. It has a flexible rule model that supports multiple programming languages. The goal is to notify the developer as they are introducing a security vulnerability in order to fix the issue at the point of introduction, and to help build awareness for the developer. Features Built-in rules, and support for writing custom rules Cross-platform CLI built on .NET for file analysis IDE plugins for Visual Studio and Visual Studio Code built on Language Server Protocol IntelliSense error \"squiggly lines\" for identified security issues Information and guidance provided for identified security issues Optional suppression of unwanted findings Support for JSONPath, XPATH and YmlPath based rules Broad language support including: C, C++, C#, Cobol, Go, Java, Javascript/Typescript, Python, and more. Repository Structure This repository contains DevSkim and its official supported plugins. Issues and contributions are accepted here for: DevSkim Library Location: ./DevSkim-DotNet/ DevSkim CLI Location: ./DevSkim-DotNet/Microsoft.DevSkim.CLI/ DevSkim Visual Studio Extension Location: ./DevSkim-DotNet/Microsoft.DevSkim.VisualStudio/ DevSkim Visual Studio Code Plugin Location: ./DevSkim-VSCode-Plugin/ Default Rules and Guidance Location: ./rules/default/ Official Releases The C# library is available on NuGet as Microsoft.CST.DevSkim. The .","default_branch":null,"files":null,"tree":[],"storefront":"/r/microsoft","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/microsoft/DevSkim/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}