* [fallow v3.33.0](https://github.com/fallow-rs/fallow) – Codebase analyzer for TypeScript and JavaScript that detects unused code, duplication, circular dependencies, and complexity hotspots. * [Skylos v4.47.0](https://github.com/duriantaco/skylos) – Privacy-first hybrid static-analysis tool for Python, TypeScript, and Go that detects dead code, secrets, and security vulnerabilities. * [Zanadir 0.5.0](https://github.com/MustacheCase/zanadir) – A GitHub repository CI/CD analyzer that scans for security and best-practice gaps and suggests relevant tools across multiple CI providers and output formats. * [jscpd v5.4.1](https://github.com/kucherenko/jscpd) – Copy/paste detector for programming source code supporting 223 formats with AI-ready reporting and server integrations. * [puppet-ghostbuster v2.2.0](https://github.com/voxpupuli/puppet-ghostbuster) – Detects unused Puppet classes, defined types, templates, files, functions, and facts via PuppetDB. * [aislop v0.18.0](https://github.com/scanaislop/aislop) – Detects AI-originated coding slop: narrative comments, swallowed exceptions, unsafe casts, dead code across seven languages with deterministic, sub-second analysis. * [perch v0.4.2](https://github.com/lakeday-org/perch) – CLI tool for semantic code linting that detects potential issues using rule-based analysis powered by Jev.