Detects fail-open insecure defaults (hardcoded secrets, weak auth, permissive security) that allow apps to run insecure…
Detects fail-open insecure defaults (hardcoded secrets, weak auth, permissive security) that allow apps to run insecurely in production. Use when auditing security, reviewing config management, or analyzing environment variable handling.
trailofbits
cli
free
Others in the same category, ranked by how often they are opened.