Ross ROSS = Recommend OSS · open-source software intelligence for agents

ZupIT/horusec

Horusec is an open source tool that improves identification of vulnerabilities in your project with just one command. observed · 2026-08-28

github.com/ZupIT/horusec · homepage · Go · Apache-2.0 (permissive) observed · 2026-08-28

Health v2 · maintenance only

67/100

  • Activity 99
  • Release rhythm 8
  • Longevity 100
How is this computed?

round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10) — computed 2026-09-03. Adoption (stars, forks) is never an input.

  • gap_med: n/a
  • age_days: 2185
  • days_rel: n/a
  • days_push: 8
  • n_releases_24m: 0

Full methodology

Adoption not part of the score

1333 stars · 218 forks observed · 2026-08-28

What it is AI-extracted, prompt v1, taxonomy v1, 2026-08-30, confidence not recorded

Horusec is an open-source SAST (static application security testing) CLI that scans a project for vulnerabilities across many languages with a single command. It aggregates multiple analysis engines and integrates with CI pipelines, Docker, and a VS Code extension.

Use cases

  • scan my repo for security vulnerabilities
  • run static analysis in CI pipeline
  • find security flaws in Go, Python, Java, or Kotlin code
  • detect vulnerabilities in Terraform files
  • add SAST scanning to pull request checks
  • scan codebase for leaks and insecure patterns

When to choose

  • you need multi-language SAST in one tool
  • you want a CLI that drops into CI/CD easily
  • you need vulnerability scanning for IaC like Terraform

When to avoid

  • you need dynamic (DAST) or runtime security testing
  • you need deep language-specific analysis beyond what its bundled engines provide
  • you require a GUI-only workflow

Facets

cli-tool · maturity active

security vulnerability-scanning linter cli ci-cd security developer-tools cli cross-platform go sast static-analysis vulnerability-scanner multi-language security-scanning devops docker

1 source

Member repositories

RepositoryRoleHealth v2
ZupIT/horusecmain67

For agents

markdown · JSON · MCP: product_card(name="ZupIT/horusec")

Data as of 2026-08-30T08:39:29.467469+00:00 · Report a problem