Top AI Repos — open-source AI, indexed and scored
Top AI Repos tracks AI repositories on GitHub and answers two different questions about each one: is it moving right now, and would you bet a product on it.
Top AI Repos tracks AI repositories on GitHub and answers two different questions about each one: is it moving right now, and would you bet a product on it.
Code security scanning tool (SAST) to discover, filter and prioritize security and privacy risks.
| Date | Stars |
|---|---|
| 2026-07-24 | 2707 |
| 2026-07-25 | 2707 |
| 2026-07-28 | 2707 |
| 2026-07-30 | 2707 |
| 2026-08-06 | 2707 |
Today
— stars today
This week
— stars this week
This month
— stars this month
Momentum
15.0
growth rate 0.00%/day
<div align="center">
<a href="https://cycode.com/cygives/" alt="Bearer is part of Cygives, the community hub for free & open developer security tools."/>
<picture>
<source media="(prefers-color-scheme: dark)" srcset="./docs/assets/img/Cygives-darkmode.svg">
<img alt="Cygives Banner" src="./docs/assets/img/Cygives-lightmode.svg">
</picture>
</a>
<br/>
<br/>
<picture>
<source media="(prefers-color-scheme: dark)" srcset="./docs/assets/img/bearer-logo-dark.svg">
<img alt="Bearer" src="./docs/assets/img/bearer-logo-light.svg">
</picture>
<br />
<hr/>
Scan your source code against top <strong>security</strong> and <strong>privacy</strong> risks.
<br /><br />
Bearer is a static application security testing (SAST) tool designed to scan your source code and analyze data flows to identify, filter, and prioritize security and privacy risks.
<br/><br/>
Bearer offers a free, open solution, Bearer CLI, and a commercial solution, Bearer Pro, available through <a href="https://cycode.com/">Cycode</a>.
<br /><br />
[Getting Started](#rocket-getting-started) - [FAQ](#question-faqs) - [Documentation](https://docs.bearer.com) - [Report a Bug](https://github.com/Bearer/bearer/issues/new/choose)
[![GitHub Release][release-img]][release]
[![Test][test-img]][test]
[](CODE_OF_CONDUCT.md)
</div>
## Language Support
**Bearer CLI (Open Source)**: Go • Java • JavaScript • TypeScript • PHP • Python • Ruby
**Bearer Pro by Cycode**: _All Bearer CLI languages plus:_
- **Advanced Cross-file Analysis**: Java • Python • C# _(alpha)_
- **Additional Languages**: C# • Kotlin • Elixir • VB.Net
<a href="https://docs.bearer.com/reference/supported-languages/">Learn more about language support</a>
## Developer friendly static code analysis for security and privacy
<https://user-images.githubusercontent.com/1649672/230438696-9bb0fd35-2aa9-4273-9970-733189d01ff1.mp4>
Bearer CLI scans your source code for:
- **Security risks and vulnerabilities** using [built-in rules](https://docs.bearer.com/reference/rules/) covering the [OWASP Top 10](https://owasp.org/www-project-top-ten/) and [CWE Top 25](https://cwe.mitre.org/top25/archive/2023/2023_top25_list.html), such as:
- A01: Access control (e.g. Path Traversal, Open Redirect, Exposure of Sensitive Information).
- A02: Cryptographic Failures (e.g. Weak Algorithm, Insecure Communication).
- A03: Injection (e.g. SQL Injection, Input Validation, XSS, XPath).
- A04: Design (e.g. Missing Encryption of Sensitive Data, Persistent Cookies Containing Sensitive Information).
- A05: Security Misconfiguration (e.g. Cleartext Storage of Sensitive Information in a Cookie or JWT).
- A07: Identification and Authentication Failures (e.g. Use of Hard-coded Password, Improper Certificate Validation).
- A08: Data Integrity Failures (e.g. Deserialization of Untrusted Data).
- A09: Security Logging and Monitoring Failures (e.g. Insertion of Sensitive Information into Log File).
- A10: Server-Side Request Forgery (SSRF).
_Note: all the rules and their code patterns are accessible through the [documentation](https://docs.bearer.com/reference/rules/)._
- **Privacy risks** with the ability to detect [sensitive data flow](https://docs.bearer.com/explanations/discovery-and-classification/) such as the use of PII, PHI in your app, and [components](https://docs.bearer.com/reference/recipes/) processing sensitive data (e.g. databases like pgSQL, third-party APIs such as OpenAI, Sentry, etc.). This helps generate a [privacy report](https://docs.bearer.com/guides/privacy/) relevant for:
- Privacy Impact Assessment (PIA).
- Data Protection Impact Assessment (DPIA).
- Records of Processing Activities (RoPA) input for GDPR compliance reporting.
## :rocket: Getting started
Discover your most critical security risks and vulnerabilities in only a few minutes. In this guide, Excerpt of 15,937 characters
Read on GitHubWould you bet a product on this? Bounded 0–100 and slow moving.
matched fp:533a1362c9bc99a5, topic:privacy