Open Source Code Analysis Tools
Discover 27 open source Code Analysis repositories from GitHub, each with an analysis of what it does, key features, use cases and alternatives. Code Analysis projects here are most often combined with Developer Tools, CLI and Python. Last updated October 4, 2026.
27 repositories · updated October 4, 2026

opengrep: Find Security Issues with Static Code Analysis
Opengrep is an OCaml static analysis engine that searches code for patterns and security issues using customizable rules. It suits developers and security teams who want Semgrep-compatible scanning, taint analysis, and JSON or SARIF output under an LGPL-2.1 license.

hexora: Scan Python Code for Malicious Patterns
Hexora analyzes Python source for suspicious behavior using static rules and a machine-learned file score. It is intended for security teams and developers reviewing packages, dependencies, and scripts for potential threats.

repomix: Pack Codebases for AI Analysis
Repomix combines repository files into a structured, AI-friendly output for code review, exploration, and other LLM workflows. Use it from the CLI, website, or as an MCP server, with controls for file selection and token usage.