SpotBugs is FindBugs' successor. A tool for static analysis to look for bugs in Java code.
$ npx skills add spotbugs/spotbugsAlternatives
Compare similar skills by workflow fit, trust score, quality, GitHub adoption, maintenance, and install readiness.
Current skill
Spoon is a metaprogramming library to analyze and transform Java source code. :spoon: is made with :heart:, :beers: and :sparkles:. It parses source files to build a well-designed AST with powerful analysis and transformation API.
SpotBugs is FindBugs' successor. A tool for static analysis to look for bugs in Java code.
$ npx skills add spotbugs/spotbugsAn extensible multilanguage static code analyzer.
$ npx skills add pmd/pmdThe SpotBugs plugin for security audits of Java web applications and Android applications. (Also work with Kotlin, Groovy and Scala projects)
$ npx skills add find-sec-bugs/find-sec-bugsTypeScript Compiler API wrapper for static analysis and programmatic code changes.
$ npx skills add dsherret/ts-morphCheckstyle is a development tool to help programmers write Java code that adheres to a coding standard. By default it supports the Google Java Style Guide and Sun Code Conventions, but is highly configurable. It can be invoked with an ANT task and a command line program.
$ npx skills add checkstyle/checkstyleA tool to enforce Swift style and conventions.
$ npx skills add realm/SwiftLint⚡A CLI tool for code structural search, lint and rewriting. Written in Rust
$ npx skills add ast-grep/ast-grepA PHP parser written in PHP
$ npx skills add nikic/PHP-ParserPySonar2: a semantic indexer for Python with interprocedual type inference
$ npx skills add yinwang0/pysonar2A vulnerability scanner for container images and filesystems
$ npx skills add anchore/grypeProgram for determining types of files for Windows, Linux and MacOS.
$ npx skills add horsicq/Detect-It-EasyPrevent cloud misconfigurations and find vulnerabilities during build-time in infrastructure as code, container images and open source packages with Checkov by Bridgecrew.
$ npx skills add bridgecrewio/checkovCLI tool and library for generating a Software Bill of Materials from container images and filesystems
$ npx skills add anchore/syftA PHP static analysis tool for finding errors and security vulnerabilities in PHP applications
$ npx skills add vimeo/psalm🔥 ~6x faster, stricter, configurable, extensible, and beautiful drop-in replacement for golint
$ npx skills add mgechev/reviveStatic code analysis for Kotlin
$ npx skills add detekt/detektHow to choose
Use an alternative when it has a clearer install path, higher trust score, fresher maintenance, or better platform fit for your current agent stack. Keep Spoon if it already passes your workflow test and repository review.
Next step
Open the compare page, test the install commands in a sandbox, and check each repository before using a skill in production.