Puma Scan
Puma Scan is a software security Visual Studio extension that provides real time, continuous source code analysis as development teams write code. Vulnerabilities are immediately displayed in the development environment as spell check and compiler warnings, preventing security bugs from entering your applications.
Install / Use
npx skills add pumasecurity/puma-scanInstalls into whichever agent you are using.
README

Description
Puma Scan is a .NET software secure code analysis tool providing real time, continuous source code analysis as development teams write code. In Visual Studio, vulnerabilities are immediately displayed in the development environment as spell check and compiler warnings, preventing security bugs from entering your applications. Puma Scan also integrates into the build to provide security analysis at compile time.
Supported Environments
Puma Scan supports Visual Studio 2022 (17.8+) and Visual Studio 2026 via a single extension, and ships as a single NuGet package (Puma.Security.Rules.2022) for build-time analysis with the .NET SDK.
Documentation
The Puma Scan Community Edition install instructions and documentation can be found on the GitHub Wiki.
Building Your Own Rules
Interested in building your own rules and contributing back to the security community? Read our blog on Building Your Own Security Analyzer.
License Agreement
The Puma Scan Community Edition is licensed under the Mozilla Public License (MPL) version 2.0.
Contributing
Contributions are welcome. Fork and send us a pull request!
Contributors
- Eric Johnson - Principal Security Engineer, Puma Security
- Eric Mead - Principal Security Engineer, Puma Security
- Andrew Guggenberger - Senior Security Engineer
- Greg Pakes
Related Skills
node-connect
385.5kDiagnose OpenClaw Android, iOS, or macOS node pairing, QR/setup code, route, auth, and connection failures.
blender-python-addon
40.5kBlender Python add-on rules for operators, panels, properties, registration, testing, and API-safe scripting
flutter-development-guidelines-cursorrules-prompt-file
40.5kCursor rules for Flutter development with MVVM architecture, Riverpod state management, Material widgets, and Dart style guidelines.
commit-push-pr
140.6kCommit, push, and open a PR
