Skip to main content

Tools used for development

Recommended tools to use during development

NameDescriptionCategory
snyk open sourceSnyk open source is a tool used to scan dependencies in a projectDependencies
pip-auditScanner for vulnerable dependencies in Python-prosjects. Also supports automatic patching.Dependencies,Python
npm auditScanner for vulnerable dependencies in Node-prosjects. Also supports automatic patching.Dependencies,Node
DependabotMonitors dependencies for vulnerabilities. Also supports automatic patching.Dependencies,GitHub
snyk codeSnyk code is a SAST (Static Application Testing) tool for source code.Source Code
CodeQLIdentifies vulnerabilities and errors in source codeSource Code,GitHub
Secret scanningScans for passwords, keys and other secrets to avoid exposing them in repositories. Source Code,GitHub
banditDetect common security issues in PythonSource Code,Python
semgrepSAST-tool with a custom rule set based on YAMLSource Code
burpA platform containing multiple tools for dynamic web application security testing.Application
ZAPA platform containing multiple tools for dynamic web application security testing.Application
nucleiA tool used for dynamic application security testing (DAST).Application
XSStrikeScanner for XSS (Cross-site scripting) vulnerabilities in web applicationsApplication