{"adoption": {"forks": 62, "observed_at": "2026-08-28T04:04:15.314538+00:00", "stars": 1289}, "canonical_url": "https://ross.abutalabs.com/products/sast-skills", "card": {"archived": false, "artifact_type": "framework", "description": "Collection of agent skills to find vulnerabilities inside your web/mobile apps.", "domain": ["security", "developer-tools", "artificial-intelligence", "web-development", "mobile-development"], "enriched": true, "function": ["security", "vulnerability-scanning", "agent-framework", "llm-inference", "developer-tools"], "health_score": 66, "homepage": null, "language": null, "license": "MIT", "license_family": "permissive", "maturity": "active", "member_repos": ["utkusen/sast-skills"], "name": "utkusen/sast-skills", "platform": ["cli", "cross-platform", "python", "go", "rust", "jvm", "php", "ruby"], "pushed_at": "2026-04-08T14:45:56+00:00", "repo": "utkusen/sast-skills", "stars": 1289, "tags": ["sast", "static-analysis", "claude-code", "agent-skills", "vulnerability-detection", "appsec", "code-scanning", "llm-security", "nodejs"], "topics": ["ai-security", "claude", "claude-code", "sast"], "urls": [], "use_cases": ["find vulnerabilities in my codebase with an LLM", "run a SAST scan using Claude Code", "detect SQL injection and XSS in my web app", "audit my mobile app for security flaws", "generate a security report with remediation guidance", "check for IDOR and SSRF in my API", "static security analysis without installing scanners"], "what_it_is": "A collection of LLM agent skills that turn coding assistants like Claude Code, Codex, Opencode, and Cursor into a SAST (static application security testing) scanner. It orchestrates codebase analysis, 13 parallel vulnerability detection skills, and consolidated severity-ranked reporting without third-party tools.", "when_to_avoid": ["you need deterministic, CI-enforced scanning with stable rule IDs and low false-positive guarantees", "you cannot send proprietary source code to an LLM provider", "you need compliance-certified SAST tooling", "you want fast scans on very large codebases with minimal token cost"], "when_to_choose": ["you already use an agent-skills-capable assistant like Claude Code or Cursor", "you want broad vulnerability coverage (SQLi, XSS, RCE, SSRF, JWT, business logic) in one workflow", "you prefer LLM-driven analysis with exploitability verification over regex-based scanners", "you need a consolidated severity-ranked report with remediation guidance"]}, "data_as_of": "2026-08-30T08:39:29.467469+00:00", "members": [{"path": "/products/sast-skills", "repo": "utkusen/sast-skills", "role": "main", "score": 49}], "provenance": {"archived": {"kind": "observed", "observed_at": "2026-08-28T04:04:15.314538+00:00", "source": "github"}, "artifact_type": {"confidence": null, "enriched_at": "2026-08-30T04:55:46.772363+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "44a878da29c7be54fd3e7af9dc112a6170f5012c072a7d52a64965c6058b7851", "fetched_at": "2026-08-28T04:04:15.314538+00:00", "kind": "readme", "missing": false, "url": "https://github.com/utkusen/sast-skills"}], "taxonomy_version": 1}, "description": {"kind": "observed", "observed_at": "2026-08-28T04:04:15.314538+00:00", "source": "github"}, "domain": {"confidence": null, "enriched_at": "2026-08-30T04:55:46.772363+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "44a878da29c7be54fd3e7af9dc112a6170f5012c072a7d52a64965c6058b7851", "fetched_at": "2026-08-28T04:04:15.314538+00:00", "kind": "readme", "missing": false, "url": "https://github.com/utkusen/sast-skills"}], "taxonomy_version": 1}, "enriched": {"inputs": [], "kind": "computed", "method": "enrichment_status"}, "function": {"confidence": null, "enriched_at": "2026-08-30T04:55:46.772363+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "44a878da29c7be54fd3e7af9dc112a6170f5012c072a7d52a64965c6058b7851", "fetched_at": "2026-08-28T04:04:15.314538+00:00", "kind": "readme", "missing": false, "url": "https://github.com/utkusen/sast-skills"}], "taxonomy_version": 1}, "health_score": {"inputs": ["days_since_push", "days_since_release", "archived"], "kind": "computed", "method": "health_v1"}, "homepage": {"kind": "observed", "observed_at": "2026-08-28T04:04:15.314538+00:00", "source": "github"}, "language": {"kind": "observed", "observed_at": "2026-08-28T04:04:15.314538+00:00", "source": "github"}, "license": {"kind": "observed", "observed_at": "2026-08-28T04:04:15.314538+00:00", "source": "github"}, "license_family": {"inputs": ["license"], "kind": "computed", "method": "license_family"}, "maturity": {"confidence": null, "enriched_at": "2026-08-30T04:55:46.772363+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "44a878da29c7be54fd3e7af9dc112a6170f5012c072a7d52a64965c6058b7851", "fetched_at": "2026-08-28T04:04:15.314538+00:00", "kind": "readme", "missing": false, "url": "https://github.com/utkusen/sast-skills"}], "taxonomy_version": 1}, "member_repos": {"kind": "observed", "observed_at": "2026-08-28T04:04:15.314538+00:00", "source": "github"}, "name": {"kind": "observed", "observed_at": "2026-08-28T04:04:15.314538+00:00", "source": "github"}, "platform": {"confidence": null, "enriched_at": "2026-08-30T04:55:46.772363+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "44a878da29c7be54fd3e7af9dc112a6170f5012c072a7d52a64965c6058b7851", "fetched_at": "2026-08-28T04:04:15.314538+00:00", "kind": "readme", "missing": false, "url": "https://github.com/utkusen/sast-skills"}], "taxonomy_version": 1}, "pushed_at": {"kind": "observed", "observed_at": "2026-08-28T04:04:15.314538+00:00", "source": "github"}, "repo": {"kind": "observed", "observed_at": "2026-08-28T04:04:15.314538+00:00", "source": "github"}, "stars": {"kind": "observed", "observed_at": "2026-08-28T04:04:15.314538+00:00", "source": "github"}, "tags": {"confidence": null, "enriched_at": "2026-08-30T04:55:46.772363+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "44a878da29c7be54fd3e7af9dc112a6170f5012c072a7d52a64965c6058b7851", "fetched_at": "2026-08-28T04:04:15.314538+00:00", "kind": "readme", "missing": false, "url": "https://github.com/utkusen/sast-skills"}], "taxonomy_version": 1}, "topics": {"kind": "observed", "observed_at": "2026-08-28T04:04:15.314538+00:00", "source": "github"}, "urls": {"kind": "observed", "observed_at": "2026-08-28T04:04:15.314538+00:00", "source": "github"}, "use_cases": {"confidence": null, "enriched_at": "2026-08-30T04:55:46.772363+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "44a878da29c7be54fd3e7af9dc112a6170f5012c072a7d52a64965c6058b7851", "fetched_at": "2026-08-28T04:04:15.314538+00:00", "kind": "readme", "missing": false, "url": "https://github.com/utkusen/sast-skills"}], "taxonomy_version": 1}, "what_it_is": {"confidence": null, "enriched_at": "2026-08-30T04:55:46.772363+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "44a878da29c7be54fd3e7af9dc112a6170f5012c072a7d52a64965c6058b7851", "fetched_at": "2026-08-28T04:04:15.314538+00:00", "kind": "readme", "missing": false, "url": "https://github.com/utkusen/sast-skills"}], "taxonomy_version": 1}, "when_to_avoid": {"confidence": null, "enriched_at": "2026-08-30T04:55:46.772363+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "44a878da29c7be54fd3e7af9dc112a6170f5012c072a7d52a64965c6058b7851", "fetched_at": "2026-08-28T04:04:15.314538+00:00", "kind": "readme", "missing": false, "url": "https://github.com/utkusen/sast-skills"}], "taxonomy_version": 1}, "when_to_choose": {"confidence": null, "enriched_at": "2026-08-30T04:55:46.772363+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "44a878da29c7be54fd3e7af9dc112a6170f5012c072a7d52a64965c6058b7851", "fetched_at": "2026-08-28T04:04:15.314538+00:00", "kind": "readme", "missing": false, "url": "https://github.com/utkusen/sast-skills"}], "taxonomy_version": 1}}, "score": {"components": {"activity": 76, "longevity": 11, "rhythm": 35}, "computed_at": "2026-09-02T17:46:02.011165+00:00", "flags": ["no_releases", "young"], "formula": "round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10)", "inputs": {"age_days": 156, "days_push": 147, "days_rel": null, "gap_med": null, "n_releases_24m": 0}, "score": 49, "version": 2}, "staleness": {"enrichment_outdated": false, "low_confidence": false, "scrape_days": 9, "stale_scrape": false}}