
| URLs | |
| CERT Coding Standards | https://www.securecoding.cert.org | 
| OWASP Code Review Guide | https://www.owasp.org/index.php/Category:OWASP_Code_Review_Project | 
| Agnitio | http://sourceforge.net/projects/agnitiotool/ | 
| CERT Rosecheckers | http://sourceforge.net/projects/rosecheckers/ | 
| Yasca | http://scovetta.github.io/yasca/ | 
| VCG | http://sourceforge.net/projects/visualcodegrepp/ | 
| phpcs-security-audit | https://github.com/FloeDesignTechnologies/phpcs-security-audit | 
| RIPS | http://sourceforge.net/projects/rips-scanner/ | 
| Flawfinder | http://www.dwheeler.com/flawfinder/ | 
| Dawn | https://github.com/thesp0nge/dawnscanner | 
| Brakeman | http://brakemanscanner.org/ |