Matchboxmatchbox
← Back to match

Hexora

Static analysis tool that detects malicious and harmful patterns in Python code.

Desktopfreeglobal

A desktop static analysis tool that combines rule-based checks with a machine-learned model to classify Python source files as malicious or benign and provide a confidence score. It helps uncover hidden malicious code in dependencies, repository scripts, and package uploads, aimed at security researchers, package registry maintainers, and developers auditing dependencies. Runs locally on Python 3.9+ (or via uv), requires no account and is MIT licensed.

Categories
static analysissupply chain securitymalware detection

Full match profile

Behind the summary, Matchbox keeps a richer profile of Hexora - the signals our matcher actually reads to decide when to surface it. It stays private; claim the listing to see and control it.

  • Problem & pain-point mapping
  • Who we surface it to (audience fit)
  • What it's a strong alternative to
  • Trust & credibility signals

Try Matchbox with your own problem

Describe what is not working - we’ll show you whether Hexora (or something else) actually fits.