Brakeman
Static analysis security vulnerability scanner for Ruby on Rails applications.
Why consider Brakeman?
Brakeman is an open-source static analysis vulnerability scanner designed specifically for Ruby on Rails applications written in Ruby by Justin Collins. Brakeman parses Rails code paths to detect SQL injections, remote code execution (RCE), CSRF flaws, and mass assignment exploits.
Learn Brakeman by building
Practical setup notes, real use cases, and copy-ready examples in one focused guide.
In this guide2 sections
Overview of Brakeman
Brakeman scans Ruby on Rails applications for security vulnerabilities without requiring app runtime.
Quickstart
gem install brakemanbrakeman -q -w2Brakeman is licensed under the permissive MIT License.
Related tools
More options with a similar category or technology profile.
diskus
Minimal, fast alternative to du -sh written in Rust using multi-threaded directory traversal.
peco
Simplistic interactive filtering tool for Unix pipelines, process lists, and file trees.
Dapr CLI
Command-line tool for managing Dapr distributed application runtime environments and sidecars.
Freeze
Generate beautiful image screenshots and SVGs of code snippets and terminal outputs.