Welcome to the Bearer documentation. Bearer is a static application security testing (SAST) tool that scans your source code and analyzes your data flows to discover, filter and prioritize security risks and vulnerabilities leading to sensitive data exposures (PII, PHI, PD). We provides built-in rules against a common set of security risks and vulnerabilities, known as OWASP Top 10. Leakage of sensitive data through cookies, internal loggers, third-party logging services, and into analytics environments. Usage of weak encryption libraries or misusage of encryption algorithms. Unencrypted incoming and outgoing communication (HTTP, FTP, SMTP) of sensitive information. Non-filtered user input. Hard-coded secrets and tokens. Bearer currently supports JavaScript and Ruby stacks, more will follow. Bearer's scanners and reports are your path to analyzing security risks and vulnerabilities in your application.

Features

  • Non-filtered user input
  • Hard-coded secrets and tokens
  • Unencrypted incoming and outgoing communication (HTTP, FTP, SMTP) of sensitive information
  • Usage of weak encryption libraries or misusage of encryption algorithms
  • Leakage of sensitive data through cookies, internal loggers, third-party logging services, and into analytics environments
  • Bearer currently supports JavaScript and Ruby stacks

Project Samples

Project Activity

See All Activity >

License

MIT License

Follow bearer

bearer Web Site

Other Useful Business Software
Our Free Plans just got better! | Auth0 Icon
Our Free Plans just got better! | Auth0

With up to 25k MAUs and unlimited Okta connections, our Free Plan lets you focus on what you do best—building great apps.

You asked, we delivered! Auth0 is excited to expand our Free and Paid plans to include more options so you can focus on building, deploying, and scaling applications without having to worry about your security. Auth0 now, thank yourself later.
Try free now
Rate This Project
Login To Rate This Project

User Reviews

Be the first to post a review of bearer!

Additional Project Details

Programming Language

C

Related Categories

C Static Code Analysis Tool

Registered

2023-03-31