* [Semgrep v1.180.0](https://github.com/semgrep/semgrep) – Fast static analysis tool that searches code for bugs and enforces coding standards. * [revive v1.17.1](https://github.com/revive-lint/revive) – Fast, strict, configurable, extensible, flexible, and beautiful linter for Go with customizable rules, formatters, and optional type checking. * [Syft v1.54.1](https://github.com/anchore/syft) – CLI tool and library for generating Software Bill of Materials from container images and filesystems. * [Claircore v1.6.1](https://github.com/quay/claircore) – Go modules for scanning container layers for installed packages and reporting discovered vulnerabilities. * [SonarJS 14.1.0.46226](https://github.com/SonarSource/SonarJS) – Static code analyzer for JavaScript, TypeScript, and CSS providing code quality, security rules, and metrics.