cobrad

Code Security Scan System


Keywords
static, code, scan, security, analyse, cobra, code-audit, security-audit, security-scanner, security-tools, sourcecode-analysis
License
MIT
Install
pip install cobrad==1.3.1

Documentation

Cobra

Cobra Release license Cobra Open Issue Cobra Close Issue GitHub stars GitHub followers


English | 简体中文


Introduction

Cobra is a static code analysis system that automates the detecting vulnerabilities and security issue.

Features

  • Multi-language support
  • Multiple code support
  • Compatibility
  • API
  • Automation

Target Audience

1. IT/Network Company

Internet companies can deploy Cobra within the enterprise for developers to use to scan for project risks. It can also be integrated into an internal code distribution system that allows Cobra to become a part of the distribution system by scanning developers for security of code submitted to the line, thereby limiting unsafe code to go online and reducing online risk.

2. Security Company

Security companies for Internet companies for security testing, you can Cobra's global project scanning capabilities of all items of Party A automatic code security audit.

3. White Hat

White Hat can be customized private Cobra scanning rules, open source project code audit, found the vulnerability.

Screenshot

Cobra Manual Scan

Cobra Manual Scan

Cobra Report

Cobra Report

Cobra Manage

Cobra Manage

Beta version

Cobra is currently a beta version, there are some imperfections and bugs, so we need your contribution, whether it is testing, development, vulnerability scanning rules or advice.

References