ShellCheck, a static analysis tool for shell scripts
$ npx skills add koalaman/shellcheckAlternatives
Compare similar skills by workflow fit, trust score, quality, GitHub adoption, maintenance, and install readiness.
Current skill
Codebase intelligence for TypeScript and JavaScript. Free static layer: unused code, duplication, circular deps, complexity hotspots, architecture boundaries. Optional paid runtime layer: hot-path review and cold-path deletion evidence from real production traffic. Rust-native, sub-second, zero-config framework support.
ShellCheck, a static analysis tool for shell scripts
$ npx skills add koalaman/shellcheckLightweight static analysis for many languages. Find bug variants with patterns that look like source code.
$ npx skills add semgrep/semgrepAn extremely fast Python linter and code formatter, written in Rust.
$ npx skills add astral-sh/ruffโกA CLI tool for code structural search, lint and rewriting. Written in Rust
$ npx skills add ast-grep/ast-grepA Claude Code plugin that shows what's happening - context usage, active tools, running agents, and todo progress
$ npx skills add jarrodwatts/claude-hud๐ A Hex Editor for Reverse Engineers, Programmers and people who value their retinas when working at 3 AM.
$ npx skills add WerWolv/ImHex๐ถ Automated code review tool integrated with any code analysis tools regardless of programming language
$ npx skills add reviewdog/reviewdogMobile Security Framework (MobSF) is an automated, all-in-one mobile application (Android/iOS/Windows) pen-testing, malware analysis and security assessment framework capable of performing static and dynamic analysis.
$ npx skills add MobSF/Mobile-Security-Framework-MobSFA tool to enforce Swift style and conventions.
$ npx skills add realm/SwiftLintA Java 8+ Jar & Android APK Reverse Engineering Suite (Decompiler, Editor, Debugger & More)
$ npx skills add Konloch/bytecode-viewerThe OWASP Mobile Application Security Testing Guide (MASTG) is a comprehensive manual for mobile app security testing and reverse engineering. It describes technical processes for verifying the OWASP Mobile Security Weakness Enumeration (MASWE) weaknesses, which are in alignment with the OWASP MASVS.
$ npx skills add OWASP/mastgA static analyzer for Java, C, C++, and Objective-C
$ npx skills add facebook/inferPHP Static Analysis Tool - discover bugs in your code without running it!
$ npx skills add phpstan/phpstanA tool to automatically fix PHP Coding Standards issues
$ npx skills add PHP-CS-Fixer/PHP-CS-FixerContinuous Inspection
$ npx skills add SonarSource/sonarqubeA vulnerability scanner for container images and filesystems
$ npx skills add anchore/grypeHow to choose
Use an alternative when it has a clearer install path, higher trust score, fresher maintenance, or better platform fit for your current agent stack. Keep Fallow if it already passes your workflow test and repository review.
Next step
Open the compare page, test the install commands in a sandbox, and check each repository before using a skill in production.
Alternatives
Compare similar skills by workflow fit, trust score, quality, GitHub adoption, maintenance, and install readiness.
Current skill
Codebase intelligence for TypeScript and JavaScript. Free static layer: unused code, duplication, circular deps, complexity hotspots, architecture boundaries. Optional paid runtime layer: hot-path review and cold-path deletion evidence from real production traffic. Rust-native, sub-second, zero-config framework support.
ShellCheck, a static analysis tool for shell scripts
$ npx skills add koalaman/shellcheckLightweight static analysis for many languages. Find bug variants with patterns that look like source code.
$ npx skills add semgrep/semgrepAn extremely fast Python linter and code formatter, written in Rust.
$ npx skills add astral-sh/ruffโกA CLI tool for code structural search, lint and rewriting. Written in Rust
$ npx skills add ast-grep/ast-grepA Claude Code plugin that shows what's happening - context usage, active tools, running agents, and todo progress
$ npx skills add jarrodwatts/claude-hud๐ A Hex Editor for Reverse Engineers, Programmers and people who value their retinas when working at 3 AM.
$ npx skills add WerWolv/ImHex๐ถ Automated code review tool integrated with any code analysis tools regardless of programming language
$ npx skills add reviewdog/reviewdogMobile Security Framework (MobSF) is an automated, all-in-one mobile application (Android/iOS/Windows) pen-testing, malware analysis and security assessment framework capable of performing static and dynamic analysis.
$ npx skills add MobSF/Mobile-Security-Framework-MobSFA tool to enforce Swift style and conventions.
$ npx skills add realm/SwiftLintA Java 8+ Jar & Android APK Reverse Engineering Suite (Decompiler, Editor, Debugger & More)
$ npx skills add Konloch/bytecode-viewerThe OWASP Mobile Application Security Testing Guide (MASTG) is a comprehensive manual for mobile app security testing and reverse engineering. It describes technical processes for verifying the OWASP Mobile Security Weakness Enumeration (MASWE) weaknesses, which are in alignment with the OWASP MASVS.
$ npx skills add OWASP/mastgA static analyzer for Java, C, C++, and Objective-C
$ npx skills add facebook/inferPHP Static Analysis Tool - discover bugs in your code without running it!
$ npx skills add phpstan/phpstanA tool to automatically fix PHP Coding Standards issues
$ npx skills add PHP-CS-Fixer/PHP-CS-FixerContinuous Inspection
$ npx skills add SonarSource/sonarqubeA vulnerability scanner for container images and filesystems
$ npx skills add anchore/grypeHow to choose
Use an alternative when it has a clearer install path, higher trust score, fresher maintenance, or better platform fit for your current agent stack. Keep Fallow if it already passes your workflow test and repository review.
Next step
Open the compare page, test the install commands in a sandbox, and check each repository before using a skill in production.