HomeBlogConfigsNotesGitHub

The notes of Justin Abrahms

Recently updated

  • Team Topologies

    Mar 07, 2026

  • Story points

    Mar 07, 2026

Home

❯

security

❯

SAST tooling

SAST tooling

Jan 31, 20261 min read

SAST tooling does static analysis to find security issues. Things like scanning for secret keys, sql injection attacks, etc. Part of shift left on security strategy and Supply Chain Security practices.

Vendors/Solutions:

  • https://semgrep.dev/
  • https://checkmarx.com/cxsast-source-code-scanning/
  • https://www.jit.io/
  • https://snyk.io/product/snyk-code/
  • https://www.mend.io/

Related:

  • https://corgea.com/ - AI code submission to fix findings

See also: SemGrep for reachability analysis.


Graph View

Backlinks

  • SemGrep

Created with Quartz v4.5.2 © 2026

  • GitHub
  • Email
  • bsky