{"data":{"slug":"kereva-dev-kereva-scanner","name":"kereva-scanner","tagline":"Code scanner to check for issues in prompts and LLM calls","github_url":"https://github.com/kereva-dev/kereva-scanner","owner":"kereva-dev","repo":"kereva-scanner","owner_avatar_url":"https://avatars.githubusercontent.com/u/203541051?v=4","primary_language":"Python","stars":78,"forks":8,"topics":["ai","ai-code-review","ai-evaluation","ai-performance","ai-red-teaming","ai-security","cli","code-scanning","evaluation","hallucination","linter","llm","llm-evaluation","llm-performance","llm-security","owasp-llm-top-10","prompt-injection","red-teaming","security"],"archived":false,"github_pushed_at":"2025-04-06T16:07:51+00:00","maintenance_label":"Dormant","stars_delta_30d":0,"url":"https://www.graphcanon.com/tools/kereva-dev-kereva-scanner","markdown_url":"https://www.graphcanon.com/tools/kereva-dev-kereva-scanner.md","api_url":"https://www.graphcanon.com/api/graphcanon/tools/kereva-dev-kereva-scanner","graph_url":"https://www.graphcanon.com/api/graphcanon/graph?tool=kereva-dev-kereva-scanner","description":"Code scanner to check for issues in prompts and LLM calls","homepage_url":"https://kereva.io","license":"Apache-2.0","open_issues":3,"watchers":2,"ai_summary":"A code-scanning tool that evaluates AI prompts and LLM interactions for security and performance issues.","readme_excerpt":"# Install dependencies\npip install -r requirements.txt\n```\n\n---\n\n## 📄 License\n\nThis project is licensed under the Apache License 2.0 - see the LICENSE file for details.","github_created_at":"2025-03-14T19:19:14+00:00","created_at":"2026-07-15T10:39:47.262365+00:00","updated_at":"2026-09-20T04:24:59.286229+00:00","categories":[{"slug":"developer-tools","name":"Developer Tools","url":"https://www.graphcanon.com/categories/developer-tools","markdown_url":"https://www.graphcanon.com/categories/developer-tools.md","api_url":"https://www.graphcanon.com/api/graphcanon/categories/developer-tools"},{"slug":"evaluation-observability","name":"Evaluation & Observability","url":"https://www.graphcanon.com/categories/evaluation-observability","markdown_url":"https://www.graphcanon.com/categories/evaluation-observability.md","api_url":"https://www.graphcanon.com/api/graphcanon/categories/evaluation-observability"}],"tags":[{"slug":"ai-code-review","name":"ai-code-review"},{"slug":"hallucination","name":"hallucination"},{"slug":"llm-evaluation","name":"llm-evaluation"},{"slug":"llm-security","name":"llm-security"},{"slug":"owasp-llm-top-10","name":"owasp-llm-top-10"},{"slug":"prompt-injection","name":"prompt-injection"}],"trust":{"provenance":{"is_fork":false,"github_id":948686788,"owner_type":"Organization","methodology":"github_public_v1","parent_repo":null,"near_duplicate_slugs":[]},"computed_at":"2026-09-09T06:00:31.805Z","maintenance":{"label":"Dormant","score":18,"methodology":"github_public_v1","releases_90d":0,"days_since_push":520,"last_release_at":"2025-03-14T19:26:27Z","stars_delta_30d":0,"open_issues_delta_30d":0},"security_summary":{"status":"findings","scanner":"osv@v1","low_count":2,"high_count":0,"last_scan_at":"2026-07-15T10:39:48.634Z","medium_count":0,"scan_profile":"deps","critical_count":0}},"capability_facts":{"scan":{"source":"repo_scan","observed_at":"2026-09-09T06:00:32.415Z"},"languages":{"value":["python"],"source":"github.language","observed_at":"2026-09-09T06:00:32.415Z"},"license_spdx":{"value":"Apache-2.0","source":"github.license","observed_at":"2026-09-09T06:00:32.415Z"}},"decision_facts":{"hosting":null,"pricing":{"model":"freemium","summary":"The tool is free under the Apache-2.0 license but may have features in a paid version not detailed in the repository."},"requirements":{"notes":[""],"min_ram_gb":null,"requires_docker":false},"constraints":{"min_ram_gb":null,"pricing_model":"freemium","requires_docker":false},"when_to_use":["When you are developing applications involving AI-generated content or integrations with large language models, to ensure your prompts are secure against attacks such as prompt injection.","If you need to comply with OWASP LLM Top 10 guidelines, because kereva-scanner specifically addresses these security standards for AI code."],"when_not_to_use":["When your project does not involve interactions with language models or AI-generated content, since the scanner's utility is primarily in evaluating AI-related issues.","If you are looking for a comprehensive general code linter that checks for coding standard violations or general best practices unrelated to security and performance of LLMs."],"source":"enrich:decision_facts","observed_at":"2026-07-16T19:17:50.657Z"},"constraint_facets":{"min_ram_gb":null,"pricing_model":"freemium","requires_docker":false},"decision_summary":[{"label":"Pricing","value":"freemium - The tool is free under the Apache-2.0 license but may have features in a paid version not detailed in the repository."},{"label":"Requirements","value":""},{"label":"Adopt for","value":"kereva-scanner is a specialized code scanner that assesses AI prompts and interactions with language models for potential security vulnerabilities and performance inefficiencies."}]}}