Performant type-checking for python.
$ npx skills add facebook/pyre-checkAlternatives
Compare similar skills by workflow fit, trust score, quality, GitHub adoption, maintenance, and install readiness.
Current skill
Semgrep Community Edition rules, maintained by Semgrep and the community. Free to use under the Semgrep Rules License.
Performant type-checking for python.
$ npx skills add facebook/pyre-checkGo security checker
$ npx skills add securego/gosecA collection of my Semgrep rules to facilitate vulnerability research.
$ npx skills add 0xdea/semgrep-rulesStatic analysis for GitHub Actions
$ npx skills add zizmorcore/zizmorA static analysis security vulnerability scanner for Ruby on Rails applications
$ npx skills add presidentbeef/brakemanA source code analyzer built for surfacing features of interest and other characteristics to answer the question 'What's in the code?' quickly using static analysis with a json based rules engine. Ideal for scanning components before use or detecting feature level changes.
$ npx skills add microsoft/ApplicationInspectorThe SpotBugs plugin for security audits of Java web applications and Android applications. (Also work with Kotlin, Groovy and Scala projects)
$ npx skills add find-sec-bugs/find-sec-bugsStatic analyzer for C/C++ based on the theory of Abstract Interpretation.
$ npx skills add NASA-SW-VnV/ikosAn easy-to-learn/use static analysis framework for Java and Android
$ npx skills add pascal-lab/Tai-eProtect against malicious open source packages 🤖
$ npx skills add safedep/vetSecurity risk analysis for Kubernetes resources
$ npx skills add controlplaneio/kubesecOpenSCA is an open source software supply chain security solution that supports the detection of open source dependencies, vulnerabilities and license compliance with a widely noticed accuracy by the community.
$ npx skills add XmirrorSecurity/OpenSCA-cli🔍 A Hex Editor for Reverse Engineers, Programmers and people who value their retinas when working at 3 AM.
$ npx skills add WerWolv/ImHexA LLVM-based static analysis framework.
$ npx skills add secure-software-engineering/phasarAn extremely fast Python linter and code formatter, written in Rust.
$ npx skills add astral-sh/ruffShellCheck, a static analysis tool for shell scripts
$ npx skills add koalaman/shellcheckHow to choose
Use an alternative when it has a clearer install path, higher trust score, fresher maintenance, or better platform fit for your current agent stack. Keep Semgrep Rules if it already passes your workflow test and repository review.
Next step
Open the compare page, test the install commands in a sandbox, and check each repository before using a skill in production.