- Tier 1: Offline
- Tier 1+: LLM
- Tier 2: Deep
- Tier 2+: Deep + LLM
- Tier 3: Cloud
- Tier 3+: Full
| Coverage | 60–70% |
| Time | 2–5 seconds |
| Dependencies | None (zero install) |
| What runs | L1–L4 checks + Rust-native secret detection (37 patterns) |
Deep scan tools
Tools auto-downloaded on first--deep run:
| Tool | License | What it does |
|---|---|---|
| Semgrep | LGPL-2.1 | Multi-language AST rules (20–30 YAML rules) |
| Bandit | Apache 2.0 | Python security analysis (pickle, eval, exec) |
| ModelScan | Apache 2.0 | Model file backdoor detection (.pt/.pkl/.safetensors) |
~/.complior/tools/. No manual setup needed.