Skip to main content

Introduction

Static application security testing (SAST) is a security testing technique for identifying security vulnerabilities in an application's source code. We aim to provide a clear overview of the currently supported languages.

LanguagesVersions supportedFrameworks supportedFile extensions
Android10 to 14N/A.apk
Bash4.0 to 5.2N/A.sh
C#C#6.0 to C#11.NET.cs
CloudformationJuly 2022N/A.yaml, .yml, .json
Configuration filesN/AN/A.json
Dart2.0 to 3.2Flutter.dart
Docker>20N/ADockerfile
DockerComposeN/AN/A.yaml
Go1.0 to 1.21N/A.go
HTML5N/A.html
Java8, 11, 17 and 21JDK.java
JavascriptES-5 and ES-6 (2015 to 2020)React, Angular, Vue.js, .jsx
Kotlin1.3 to 1.9N/A.kt
KubernetesN/AN/A.yaml, .yml
Python3.0 to 3.12Django, Flask, FastAPI.py
PHP7.0.0 to 8.3.6N/A.php
Swift3.0 to 5.9N/A.swift
Typescript1.0 to 5.3Same as JS.ts, .tsx
Terraform1.0 to 1.7N/A.tf