qlscan
A zero-setup CodeQL pre-commit scanner for JavaScript/TypeScript.
npm-api-analyzer
CLI tool to analyze npm packages for network API usage, prototype pollution, and security vulnerabilities
ghas-fixer
GitHub Advanced Security autofix CLI tool for code scanning alerts