sast commands

26 tagged sast, measured the same way as everything else here.

Browse within: appsec 23semgrep 16threat-modeling 15mobile-security 6owasp 6security-tools 6

scan

01

allsmog/vuln-scout

Command

Run automated static analysis and write the results to .claude/findings.json.

24 2mo ago A 20 tokens original MIT

scope

02

allsmog/vuln-scout

Command

Prepare a focused analysis scope for large codebases or monorepos using repomix. Creates a digestible snapshot of the target code for subsequent security analysis.

24 2mo ago A 21 tokens original MIT

threats

03

allsmog/vuln-scout

Command

Combines application understanding with systematic threat identification. First understands the application, then identifies what could go wrong.

24 2mo ago A 25 tokens original MIT

ch0ks/hackarandas-claude-toolbelt

Command

Check if Semgrep is installed and working. If not, install it using the best available method. Then log in to Semgrep Pro, enable the Pro engine, and run a local Pro scan in the current directory.

5 4mo ago A 0 tokens original MIT

sessions

05

ch0ks/hackarandas-claude-toolbelt

Command

List all Claude Code sessions across all projects, sorted by most recent. Show project context, date, and the exact resume command for each session.

5 4mo ago A 0 tokens original MIT

security-sast

06

zsutxz/ClaudeLearning

Command Claude Code

Static Application Security Testing (SAST) for code vulnerability analysis across multiple languages and frameworks.

5 1mo ago A 17 tokens original MIT

fix-diff

07

tinoimammp/vantage-security-agent

Command

Apply a code-level fix for a finding from /vantage:scan-diff's commit/PR/MR scan — modifies the target repository's source code.

4 1mo ago A 31 tokens original MIT

scan-diff

08

tinoimammp/vantage-security-agent

Command

Scan only the changed files in a single commit or PR/MR for newly introduced vulnerabilities (fast incremental check, not a full pipeline run).

4 1mo ago A 28 tokens original MIT

scan-mobile

09

tinoimammp/vantage-security-agent

Command

Run the full mobile SAST pipeline (phases 01-06) against this repository — Android, iOS, React Native, or Flutter.

4 1mo ago A 29 tokens original MIT

update

10

eezz4/zzop

Command Claude Code

Report whether a newer zzop-mcp release exists, and how to take it. Never installs anything.

2 16d ago A 21 tokens original MIT