Bearer
Vulnerability ScanningA static application security testing (SAST) tool that scans source code for security and privacy risks across multiple languages.
Features
- Detects OWASP Top 10 and CWE‑Top 25 vulnerabilities via built‑in rules
- Identifies sensitive data flows and PII/PHI usage for privacy compliance
- Supports a wide range of languages (Go, Java, JavaScript, TypeScript, PHP, Python, Ruby, C#, Kotlin, Elixir, VB.Net)
- Provides both an open‑source CLI and a commercial Pro offering
Recent releases
View all 3 releases →
v2.0.0
New feature
Notable features
- Reduced false positives
- Improved grammar support
- Support for new file types
Weekly OSS security release digest.
The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.
No spam, unsubscribe anytime.
About
Stars
2,673
Forks
142
Languages
Go
HTML
C
Downloads/week
454
↓35%
NPM Maintainers
4
Contributors
17
Install & Platforms
Install via
shell-script
brew
apt
docker