Sonarqube: An on-premise analysis tool designed to detect coding issues ๐ (Recommended)
Sonar Rule: The collections of rule integrate into Sonarqube Server
trivy: Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more ๐ (Recommended)
GitGuardian ggshield: a CLI application that runs in your local environment or in a CI environment to help you detect more than 500+ types of secrets. ๐ (Recommended)