Skip to content
@RootCauseScan

RootCause

RootCause
#FindTheRoot

RootCause.sh Logo

Visit RootCause.sh


About

RootCause is a static application security testing (SAST) project built in Rust.
It helps developers detect vulnerabilities and misconfigurations in:

  • Source code
  • Configuration files
  • Infrastructure-as-Code

Our goal: make secure coding accessible with fast and extensible analysis.


Projects


Documentation

📚 docs.rootcause.sh – installation, rule creation, and plugin development.


License

Distributed under the GPL-3.0 license.

Pinned Loading

  1. Scanner Scanner Public

    Official RootCause Scanner

    Rust 3

  2. Rules Rules Public

    Official RootCause Ruleset

    Python

  3. Plugins Plugins Public

    Official RootCause Plugins

    Python

  4. Catalog Catalog Public

    Official catalog of sources, sinks, and sanitizers per language for RootCause. Parsers and database queries use these files (merged with built-in entries) to identify user/untrusted input and dange…

Repositories

Showing 8 of 8 repositories

Top languages

Loading…

Most used topics

Loading…