Yasca is an open source program which looks for security vulnerabilities, code-quality, performance, and conformance to best practices in program source code, integrating with other open-source tools as needed.
Yasca has been migrated to Github, and is available at http://scovetta.github.com/yasca and http://github.com/scovetta/yasca.
Features
- Scans program source code for vulnerabilities
- Integrates with FindBugs, PMD, JLint, and other scanners
- Works on Windows and Linux


