Checks
| Rule | Severity | Scans for |
|---|---|---|
go.shell-command | Critical | Shell invoked with a constructed command string |
go.tls-insecure | High | TLS certificate verification disabled |
go.world-writable | Medium | File or directory creation requests overly broad permissions |
Free catalog · v0.0.9
Go language pack — runs the full Go specialist suite (concurrency, security, http, modules, …) plus this package’s own TLS/shell/permissions checks.
Reviews TypeScript adversaries for SDK usage, rule design, finding quality, tests, packaging, and publish readiness.
ci/gitlab-ciReviews GitLab CI for privileged runners, secret leakage, mutable images, release safety, and unpinned includes.
container/docker-composeReviews Compose services for privilege, host access, and image reproducibility.