r2c
Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.
This package is parked by the Semgrep team. See https://github.com/returntocorp/semgrep for more information.