Horusec is an open source framework that enhances the identification
of vulnerabilities in your project with just one command.
Horusec is an open source tool that performs static code analysis to identify security flaws during the development process. Currently, the languages for analysis are: C#, Java, Kotlin, Python, Ruby, Golang, Terraform, Javascript, Typescript, Kubernetes, PHP, C, HTML, JSON, Dart, Elixir, Shell, Nginx, Swift. The tool has options to search for key leaks and security flaws in all files of your project, as well as in Git history. Horusec can be used by the developer through the CLI and by the DevSecOps team on CI /CD mats.
In addition to identifying and centralizing information, Horusec provides a tool for managing access and viewing vulnerabilities.
Another goal is to ensure that your project's new functionality is safe.
For this we add a new step.
Stimulate the culture of safe development by applying the logic of security by
design, and ensure the safety of projects in the CI and CD process.
Have a secure development method
in your project, ensuring that
possible unknown vulnerabilities
will be found by Horusec's analysis.