Best Software for 2025 is now live!
|| products.size

Best Static Application Security Testing (SAST) Software

Lauren Worth
LW
Researched and written by Lauren Worth

Static application security testing (SAST) software inspects and analyzes an application’s code to discover security vulnerabilities without actually executing code. These tools are frequently used by companies with continuous delivery practices to identify flaws prior to deployment. SAST tools provide vulnerability information and remediation suggestions for development teams to resolve. There is relation and overlap between SAST tools and static code analysis software, but SAST products are more focused on security testing. Static code analysis products, on the other hand, combine a number of analytical practices, test management, and team collaboration features.

SAST vs DAST — Learn the difference

To qualify for inclusion in the Static Application Security Testing (SAST) category, a product must:

Test applications to identify vulnerabilities
Not execute code during testing, or have the ability to run static tests
Provide information on relative vulnerabilities and exploits

Best Static Application Security Testing (SAST) Software At A Glance

Best for Small Businesses:
Best for Mid-Market:
Best for Enterprise:
Highest User Satisfaction:
Best Free Software:
Show LessShow More
Best for Enterprise:
Highest User Satisfaction:
Best Free Software:

G2 takes pride in showing unbiased reviews on user satisfaction in our ratings and reports. We do not allow paid placements in any of our ratings, rankings, or reports. Learn about our scoring methodologies.

No filters applied
98 Listings in Static Application Security Testing (SAST) Available
(2,194)4.7 out of 5
2nd Easiest To Use in Static Application Security Testing (SAST) software
View top Consulting Services for GitHub
Save to My Lists
Entry Level Price:Free
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    GitHub is where the world builds software. Millions of individuals, organizations and businesses around the world use GitHub to discover, share, and contribute software. Developers at startups to Fort

    Users
    • Software Engineer
    • Senior Software Engineer
    Industries
    • Computer Software
    • Information Technology and Services
    Market Segment
    • 46% Small-Business
    • 31% Mid-Market
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • GitHub Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Features
    135
    Ease of Use
    121
    Collaboration
    112
    Team Collaboration
    108
    Version Control
    96
    Cons
    Learning Curve
    43
    Learning Difficulty
    38
    Complexity
    36
    Difficulty for Beginners
    33
    Limited Features
    31
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • GitHub features and usability ratings that predict user satisfaction
    8.2
    Test Automation
    Average: 8.7
    8.9
    Has the product been a good partner in doing business?
    Average: 9.1
    8.7
    Quality of Support
    Average: 9.2
    8.0
    Black-Box Scanning
    Average: 8.2
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Seller
    GitHub
    Year Founded
    2008
    HQ Location
    San Francisco, CA
    Twitter
    @github
    2,612,256 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    6,253 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

GitHub is where the world builds software. Millions of individuals, organizations and businesses around the world use GitHub to discover, share, and contribute software. Developers at startups to Fort

Users
  • Software Engineer
  • Senior Software Engineer
Industries
  • Computer Software
  • Information Technology and Services
Market Segment
  • 46% Small-Business
  • 31% Mid-Market
GitHub Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Features
135
Ease of Use
121
Collaboration
112
Team Collaboration
108
Version Control
96
Cons
Learning Curve
43
Learning Difficulty
38
Complexity
36
Difficulty for Beginners
33
Limited Features
31
GitHub features and usability ratings that predict user satisfaction
8.2
Test Automation
Average: 8.7
8.9
Has the product been a good partner in doing business?
Average: 9.1
8.7
Quality of Support
Average: 9.2
8.0
Black-Box Scanning
Average: 8.2
Seller Details
Seller
GitHub
Year Founded
2008
HQ Location
San Francisco, CA
Twitter
@github
2,612,256 Twitter followers
LinkedIn® Page
www.linkedin.com
6,253 employees on LinkedIn®
(211)4.8 out of 5
1st Easiest To Use in Static Application Security Testing (SAST) software
Save to My Lists
Entry Level Price:Free
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    The new ways of building software create the necessity to support new vulnerabilities and new remediation workflows. These needs have emerged so abruptly that they have given rise to a young and highl

    Users
    • Software Engineer
    Industries
    • Computer Software
    • Information Technology and Services
    Market Segment
    • 83% Small-Business
    • 12% Mid-Market
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • GitGuardian Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Security
    65
    Alert Notifications
    55
    Vulnerability Detection
    42
    Git Integration
    31
    Ease of Use
    29
    Cons
    False Positives
    18
    Inefficient Notifications
    10
    Poor Interface
    10
    Poor User Interface
    8
    Excessive Notifications
    7
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • GitGuardian features and usability ratings that predict user satisfaction
    8.3
    Test Automation
    Average: 8.7
    8.8
    Has the product been a good partner in doing business?
    Average: 9.1
    9.2
    Quality of Support
    Average: 9.2
    9.0
    Black-Box Scanning
    Average: 8.2
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Year Founded
    2017
    HQ Location
    Paris, Île-de-France
    Twitter
    @GitGuardian
    6,177 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    164 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

The new ways of building software create the necessity to support new vulnerabilities and new remediation workflows. These needs have emerged so abruptly that they have given rise to a young and highl

Users
  • Software Engineer
Industries
  • Computer Software
  • Information Technology and Services
Market Segment
  • 83% Small-Business
  • 12% Mid-Market
GitGuardian Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Security
65
Alert Notifications
55
Vulnerability Detection
42
Git Integration
31
Ease of Use
29
Cons
False Positives
18
Inefficient Notifications
10
Poor Interface
10
Poor User Interface
8
Excessive Notifications
7
GitGuardian features and usability ratings that predict user satisfaction
8.3
Test Automation
Average: 8.7
8.8
Has the product been a good partner in doing business?
Average: 9.1
9.2
Quality of Support
Average: 9.2
9.0
Black-Box Scanning
Average: 8.2
Seller Details
Year Founded
2017
HQ Location
Paris, Île-de-France
Twitter
@GitGuardian
6,177 Twitter followers
LinkedIn® Page
www.linkedin.com
164 employees on LinkedIn®

This is how G2 Deals can help you:

  • Easily shop for curated – and trusted – software
  • Own your own software buying journey
  • Discover exclusive deals on software
(76)4.1 out of 5
11th Easiest To Use in Static Application Security Testing (SAST) software
Save to My Lists
Entry Level Price:Free
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    HCL AppScan is a comprehensive suite of market-leading application security testing solutions (SAST, DAST, IAST, SCA, API), available on-premises and on-cloud. These powerful DevSecOps tools pinpoint

    Users
    No information available
    Industries
    • Information Technology and Services
    • Computer & Network Security
    Market Segment
    • 54% Enterprise
    • 28% Small-Business
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • HCL AppScan Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Ease of Use
    13
    Scanning Efficiency
    13
    Security
    12
    Vulnerability Detection
    11
    Accuracy of Findings
    8
    Cons
    Expensive
    8
    Scanning Issues
    6
    Complexity
    5
    Slow Scanning
    4
    Difficult Setup
    3
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • HCL AppScan features and usability ratings that predict user satisfaction
    8.4
    Test Automation
    Average: 8.7
    8.8
    Has the product been a good partner in doing business?
    Average: 9.1
    8.5
    Quality of Support
    Average: 9.2
    8.3
    Black-Box Scanning
    Average: 8.2
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Year Founded
    1999
    HQ Location
    Noida, Uttar Pradesh
    Twitter
    @hcltech
    445,038 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    244,701 employees on LinkedIn®
    Ownership
    NSE - National Stock Exchange of India
Product Description
How are these determined?Information
This description is provided by the seller.

HCL AppScan is a comprehensive suite of market-leading application security testing solutions (SAST, DAST, IAST, SCA, API), available on-premises and on-cloud. These powerful DevSecOps tools pinpoint

Users
No information available
Industries
  • Information Technology and Services
  • Computer & Network Security
Market Segment
  • 54% Enterprise
  • 28% Small-Business
HCL AppScan Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Ease of Use
13
Scanning Efficiency
13
Security
12
Vulnerability Detection
11
Accuracy of Findings
8
Cons
Expensive
8
Scanning Issues
6
Complexity
5
Slow Scanning
4
Difficult Setup
3
HCL AppScan features and usability ratings that predict user satisfaction
8.4
Test Automation
Average: 8.7
8.8
Has the product been a good partner in doing business?
Average: 9.1
8.5
Quality of Support
Average: 9.2
8.3
Black-Box Scanning
Average: 8.2
Seller Details
Year Founded
1999
HQ Location
Noida, Uttar Pradesh
Twitter
@hcltech
445,038 Twitter followers
LinkedIn® Page
www.linkedin.com
244,701 employees on LinkedIn®
Ownership
NSE - National Stock Exchange of India
(48)4.8 out of 5
3rd Easiest To Use in Static Application Security Testing (SAST) software
Save to My Lists
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    Security should be an integral part of the software development process, not an afterthought. Founded by Neatsun Ziv and Lion Arzi, two former Check Point executives, OX is the first and only Active A

    Users
    • Security Engineer
    Industries
    • Financial Services
    • Information Technology and Services
    Market Segment
    • 63% Mid-Market
    • 27% Enterprise
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • OX Security Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Features
    26
    Ease of Use
    23
    Customer Support
    21
    Integration Support
    21
    Security
    21
    Cons
    Missing Features
    10
    Limited Features
    7
    Integration Issues
    6
    Complexity
    5
    Inadequate Reporting
    5
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • OX Security features and usability ratings that predict user satisfaction
    7.3
    Test Automation
    Average: 8.7
    9.7
    Has the product been a good partner in doing business?
    Average: 9.1
    9.6
    Quality of Support
    Average: 9.2
    7.9
    Black-Box Scanning
    Average: 8.2
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Year Founded
    2021
    HQ Location
    New York, USA
    LinkedIn® Page
    www.linkedin.com
    136 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

Security should be an integral part of the software development process, not an afterthought. Founded by Neatsun Ziv and Lion Arzi, two former Check Point executives, OX is the first and only Active A

Users
  • Security Engineer
Industries
  • Financial Services
  • Information Technology and Services
Market Segment
  • 63% Mid-Market
  • 27% Enterprise
OX Security Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Features
26
Ease of Use
23
Customer Support
21
Integration Support
21
Security
21
Cons
Missing Features
10
Limited Features
7
Integration Issues
6
Complexity
5
Inadequate Reporting
5
OX Security features and usability ratings that predict user satisfaction
7.3
Test Automation
Average: 8.7
9.7
Has the product been a good partner in doing business?
Average: 9.1
9.6
Quality of Support
Average: 9.2
7.9
Black-Box Scanning
Average: 8.2
Seller Details
Year Founded
2021
HQ Location
New York, USA
LinkedIn® Page
www.linkedin.com
136 employees on LinkedIn®
(41)4.7 out of 5
Optimized for quick response
5th Easiest To Use in Static Application Security Testing (SAST) software
Save to My Lists
Entry Level Price:Free
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    Aikido is an application security (AppSec) platform specifically designed for developers who prioritize their coding tasks over managing security alerts. Our innovative solution consolidates nine esse

    Users
    No information available
    Industries
    • Computer Software
    • Information Technology and Services
    Market Segment
    • 76% Small-Business
    • 24% Mid-Market
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • Aikido Security Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Ease of Use
    28
    Security
    25
    Easy Integrations
    19
    Easy Setup
    17
    Customer Support
    15
    Cons
    Missing Features
    8
    Improvement Needed
    6
    Lacking Features
    6
    Lack of Information
    6
    Limited Features
    6
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • Aikido Security features and usability ratings that predict user satisfaction
    8.3
    Test Automation
    Average: 8.7
    9.6
    Has the product been a good partner in doing business?
    Average: 9.1
    9.6
    Quality of Support
    Average: 9.2
    9.6
    Black-Box Scanning
    Average: 8.2
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Company Website
    Year Founded
    2022
    HQ Location
    Ghent, Belgium
    Twitter
    @AikidoSecurity
    1,087 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    50 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

Aikido is an application security (AppSec) platform specifically designed for developers who prioritize their coding tasks over managing security alerts. Our innovative solution consolidates nine esse

Users
No information available
Industries
  • Computer Software
  • Information Technology and Services
Market Segment
  • 76% Small-Business
  • 24% Mid-Market
Aikido Security Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Ease of Use
28
Security
25
Easy Integrations
19
Easy Setup
17
Customer Support
15
Cons
Missing Features
8
Improvement Needed
6
Lacking Features
6
Lack of Information
6
Limited Features
6
Aikido Security features and usability ratings that predict user satisfaction
8.3
Test Automation
Average: 8.7
9.6
Has the product been a good partner in doing business?
Average: 9.1
9.6
Quality of Support
Average: 9.2
9.6
Black-Box Scanning
Average: 8.2
Seller Details
Company Website
Year Founded
2022
HQ Location
Ghent, Belgium
Twitter
@AikidoSecurity
1,087 Twitter followers
LinkedIn® Page
www.linkedin.com
50 employees on LinkedIn®
By jit
(29)4.6 out of 5
Optimized for quick response
6th Easiest To Use in Static Application Security Testing (SAST) software
Save to My Lists
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    Jit's Open ASPM Platform is the easiest way to secure your code and cloud, providing full application and cloud security coverage in minutes. Tailor a developer security toolchain to your use case and

    Users
    No information available
    Industries
    • Computer Software
    Market Segment
    • 59% Mid-Market
    • 41% Small-Business
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • Jit Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Ease of Use
    19
    Security
    14
    Integration Support
    13
    Customer Support
    12
    Easy Integrations
    10
    Cons
    Poor User Interface
    5
    Integration Issues
    4
    Limited Cloud Integration
    4
    False Positives
    3
    Lacking Features
    3
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • Jit features and usability ratings that predict user satisfaction
    9.1
    Test Automation
    Average: 8.7
    9.8
    Has the product been a good partner in doing business?
    Average: 9.1
    9.6
    Quality of Support
    Average: 9.2
    8.5
    Black-Box Scanning
    Average: 8.2
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Seller
    jit
    Company Website
    Year Founded
    2021
    HQ Location
    Boston, MA
    Twitter
    @jit_io
    503 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    97 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

Jit's Open ASPM Platform is the easiest way to secure your code and cloud, providing full application and cloud security coverage in minutes. Tailor a developer security toolchain to your use case and

Users
No information available
Industries
  • Computer Software
Market Segment
  • 59% Mid-Market
  • 41% Small-Business
Jit Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Ease of Use
19
Security
14
Integration Support
13
Customer Support
12
Easy Integrations
10
Cons
Poor User Interface
5
Integration Issues
4
Limited Cloud Integration
4
False Positives
3
Lacking Features
3
Jit features and usability ratings that predict user satisfaction
9.1
Test Automation
Average: 8.7
9.8
Has the product been a good partner in doing business?
Average: 9.1
9.6
Quality of Support
Average: 9.2
8.5
Black-Box Scanning
Average: 8.2
Seller Details
Seller
jit
Company Website
Year Founded
2021
HQ Location
Boston, MA
Twitter
@jit_io
503 Twitter followers
LinkedIn® Page
www.linkedin.com
97 employees on LinkedIn®
By Snyk
(122)4.5 out of 5
7th Easiest To Use in Static Application Security Testing (SAST) software
Save to My Lists
Entry Level Price:Free
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    Snyk (pronounced sneak) is a developer security platform for securing custom code, open source dependencies, containers, and cloud infrastructure all from a single platform. Snyk’s developer securit

    Users
    • Software Engineer
    Industries
    • Computer Software
    • Information Technology and Services
    Market Segment
    • 42% Mid-Market
    • 38% Small-Business
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • Snyk Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Easy Integrations
    6
    Integration Support
    4
    Ease of Use
    3
    Git Integration
    3
    Integrations
    3
    Cons
    False Positives
    3
    Pricing Issues
    3
    Complex Configuration
    2
    Dashboard Issues
    2
    Expensive
    2
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • Snyk features and usability ratings that predict user satisfaction
    7.9
    Test Automation
    Average: 8.7
    8.8
    Has the product been a good partner in doing business?
    Average: 9.1
    8.6
    Quality of Support
    Average: 9.2
    6.4
    Black-Box Scanning
    Average: 8.2
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Seller
    Snyk
    HQ Location
    Boston, Massachusetts
    Twitter
    @snyksec
    19,654 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    1,284 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

Snyk (pronounced sneak) is a developer security platform for securing custom code, open source dependencies, containers, and cloud infrastructure all from a single platform. Snyk’s developer securit

Users
  • Software Engineer
Industries
  • Computer Software
  • Information Technology and Services
Market Segment
  • 42% Mid-Market
  • 38% Small-Business
Snyk Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Easy Integrations
6
Integration Support
4
Ease of Use
3
Git Integration
3
Integrations
3
Cons
False Positives
3
Pricing Issues
3
Complex Configuration
2
Dashboard Issues
2
Expensive
2
Snyk features and usability ratings that predict user satisfaction
7.9
Test Automation
Average: 8.7
8.8
Has the product been a good partner in doing business?
Average: 9.1
8.6
Quality of Support
Average: 9.2
6.4
Black-Box Scanning
Average: 8.2
Seller Details
Seller
Snyk
HQ Location
Boston, Massachusetts
Twitter
@snyksec
19,654 Twitter followers
LinkedIn® Page
www.linkedin.com
1,284 employees on LinkedIn®
(59)4.6 out of 5
Optimized for quick response
4th Easiest To Use in Static Application Security Testing (SAST) software
View top Consulting Services for Invicti (formerly Netsparker)
Save to My Lists
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    Invicti is an automated application and API security testing solution that allows enterprise organizations to secure thousands of websites, web apps, and APIs and dramatically reduce the risk of attac

    Users
    No information available
    Industries
    • Financial Services
    • Information Technology and Services
    Market Segment
    • 49% Enterprise
    • 25% Small-Business
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • Invicti (formerly Netsparker) Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Customer Support
    4
    Ease of Use
    4
    Vulnerability Detection
    4
    Vulnerability Identification
    4
    Accuracy of Results
    3
    Cons
    API Issues
    1
    Inadequate Testing
    1
    Limited Testing Capabilities
    1
    Scanning Issues
    1
    Slow Performance
    1
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • Invicti (formerly Netsparker) features and usability ratings that predict user satisfaction
    0.0
    No information available
    9.7
    Has the product been a good partner in doing business?
    Average: 9.1
    9.2
    Quality of Support
    Average: 9.2
    0.0
    No information available
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Company Website
    Year Founded
    2018
    HQ Location
    Austin, Texas
    Twitter
    @InvictiSecurity
    2,568 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    312 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

Invicti is an automated application and API security testing solution that allows enterprise organizations to secure thousands of websites, web apps, and APIs and dramatically reduce the risk of attac

Users
No information available
Industries
  • Financial Services
  • Information Technology and Services
Market Segment
  • 49% Enterprise
  • 25% Small-Business
Invicti (formerly Netsparker) Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Customer Support
4
Ease of Use
4
Vulnerability Detection
4
Vulnerability Identification
4
Accuracy of Results
3
Cons
API Issues
1
Inadequate Testing
1
Limited Testing Capabilities
1
Scanning Issues
1
Slow Performance
1
Invicti (formerly Netsparker) features and usability ratings that predict user satisfaction
0.0
No information available
9.7
Has the product been a good partner in doing business?
Average: 9.1
9.2
Quality of Support
Average: 9.2
0.0
No information available
Seller Details
Company Website
Year Founded
2018
HQ Location
Austin, Texas
Twitter
@InvictiSecurity
2,568 Twitter followers
LinkedIn® Page
www.linkedin.com
312 employees on LinkedIn®
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    Checkmarx is constantly pushing the boundaries of Application Security (AppSec) Testing to make security seamless and simple for the world’s developers while giving CISOs the confidence and control th

    Users
    No information available
    Industries
    • Information Technology and Services
    • Computer Software
    Market Segment
    • 57% Enterprise
    • 26% Mid-Market
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • Checkmarx Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Features
    3
    CD Integration
    2
    CI
    2
    Ease of Use
    2
    User Interface
    2
    Cons
    Difficult Customization
    1
    Expensive
    1
    False Positives
    1
    Poor Customer Support
    1
    Poor Navigation
    1
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • Checkmarx features and usability ratings that predict user satisfaction
    8.3
    Test Automation
    Average: 8.7
    8.3
    Has the product been a good partner in doing business?
    Average: 9.1
    8.3
    Quality of Support
    Average: 9.2
    5.6
    Black-Box Scanning
    Average: 8.2
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Year Founded
    2006
    HQ Location
    Paramus, NJ
    Twitter
    @Checkmarx
    7,213 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    902 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

Checkmarx is constantly pushing the boundaries of Application Security (AppSec) Testing to make security seamless and simple for the world’s developers while giving CISOs the confidence and control th

Users
No information available
Industries
  • Information Technology and Services
  • Computer Software
Market Segment
  • 57% Enterprise
  • 26% Mid-Market
Checkmarx Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Features
3
CD Integration
2
CI
2
Ease of Use
2
User Interface
2
Cons
Difficult Customization
1
Expensive
1
False Positives
1
Poor Customer Support
1
Poor Navigation
1
Checkmarx features and usability ratings that predict user satisfaction
8.3
Test Automation
Average: 8.7
8.3
Has the product been a good partner in doing business?
Average: 9.1
8.3
Quality of Support
Average: 9.2
5.6
Black-Box Scanning
Average: 8.2
Seller Details
Year Founded
2006
HQ Location
Paramus, NJ
Twitter
@Checkmarx
7,213 Twitter followers
LinkedIn® Page
www.linkedin.com
902 employees on LinkedIn®
(823)4.5 out of 5
Optimized for quick response
10th Easiest To Use in Static Application Security Testing (SAST) software
View top Consulting Services for GitLab
Save to My Lists
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    GitLab is the most comprehensive AI-Powered DevSecOps platform that enables software innovation by empowering development, security, and operations teams to build better software, faster. With GitLab

    Users
    • Software Engineer
    • Senior Software Engineer
    Industries
    • Computer Software
    • Information Technology and Services
    Market Segment
    • 37% Small-Business
    • 37% Mid-Market
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • GitLab Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Ease of Use
    70
    Features
    64
    Deployment
    45
    Version Control
    45
    Repository Management
    44
    Cons
    Complexity
    25
    Confusing Interface
    20
    Learning Curve
    20
    Missing Features
    20
    Limited Features
    19
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • GitLab features and usability ratings that predict user satisfaction
    8.9
    Test Automation
    Average: 8.7
    8.8
    Has the product been a good partner in doing business?
    Average: 9.1
    8.5
    Quality of Support
    Average: 9.2
    8.6
    Black-Box Scanning
    Average: 8.2
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Company Website
    Year Founded
    2014
    HQ Location
    San Francisco, California
    Twitter
    @gitlab
    167,723 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    2,843 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

GitLab is the most comprehensive AI-Powered DevSecOps platform that enables software innovation by empowering development, security, and operations teams to build better software, faster. With GitLab

Users
  • Software Engineer
  • Senior Software Engineer
Industries
  • Computer Software
  • Information Technology and Services
Market Segment
  • 37% Small-Business
  • 37% Mid-Market
GitLab Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Ease of Use
70
Features
64
Deployment
45
Version Control
45
Repository Management
44
Cons
Complexity
25
Confusing Interface
20
Learning Curve
20
Missing Features
20
Limited Features
19
GitLab features and usability ratings that predict user satisfaction
8.9
Test Automation
Average: 8.7
8.8
Has the product been a good partner in doing business?
Average: 9.1
8.5
Quality of Support
Average: 9.2
8.6
Black-Box Scanning
Average: 8.2
Seller Details
Company Website
Year Founded
2014
HQ Location
San Francisco, California
Twitter
@gitlab
167,723 Twitter followers
LinkedIn® Page
www.linkedin.com
2,843 employees on LinkedIn®
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    SonarQube Server (formerly SonarQube) is a self-managed open-source platform that helps developers create code devoid of quality and vulnerability issues. By integrating seamlessly with the top DevOps

    Users
    • Software Engineer
    Industries
    • Computer Software
    • Information Technology and Services
    Market Segment
    • 44% Enterprise
    • 36% Mid-Market
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • SonarQube Server (formerly SonarQube) Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Code Quality
    19
    Features
    17
    Ease of Use
    12
    Issue Identification
    12
    Integrations
    10
    Cons
    Limited Features
    10
    Complex Configuration
    7
    Complex Setup
    7
    Expensive
    7
    Integration Issues
    6
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • SonarQube Server (formerly SonarQube) features and usability ratings that predict user satisfaction
    6.3
    Test Automation
    Average: 8.7
    8.3
    Has the product been a good partner in doing business?
    Average: 9.1
    8.0
    Quality of Support
    Average: 9.2
    7.6
    Black-Box Scanning
    Average: 8.2
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Company Website
    Year Founded
    2008
    HQ Location
    Geneva, Switzerland
    Twitter
    @SonarSource
    10,279 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    653 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

SonarQube Server (formerly SonarQube) is a self-managed open-source platform that helps developers create code devoid of quality and vulnerability issues. By integrating seamlessly with the top DevOps

Users
  • Software Engineer
Industries
  • Computer Software
  • Information Technology and Services
Market Segment
  • 44% Enterprise
  • 36% Mid-Market
SonarQube Server (formerly SonarQube) Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Code Quality
19
Features
17
Ease of Use
12
Issue Identification
12
Integrations
10
Cons
Limited Features
10
Complex Configuration
7
Complex Setup
7
Expensive
7
Integration Issues
6
SonarQube Server (formerly SonarQube) features and usability ratings that predict user satisfaction
6.3
Test Automation
Average: 8.7
8.3
Has the product been a good partner in doing business?
Average: 9.1
8.0
Quality of Support
Average: 9.2
7.6
Black-Box Scanning
Average: 8.2
Seller Details
Company Website
Year Founded
2008
HQ Location
Geneva, Switzerland
Twitter
@SonarSource
10,279 Twitter followers
LinkedIn® Page
www.linkedin.com
653 employees on LinkedIn®
(56)4.2 out of 5
15th Easiest To Use in Static Application Security Testing (SAST) software
Save to My Lists
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    Coverity® is a fast, accurate, and highly scalable static analysis (SAST) solution that helps development and security teams address security and quality defects early in the software development life

    Users
    • Software Engineer
    Industries
    • Computer Software
    • Information Technology and Services
    Market Segment
    • 64% Enterprise
    • 27% Mid-Market
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • Coverity Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Accuracy
    1
    Vulnerability Detection
    1
    Cons
    Limited Features
    1
    Missing Features
    1
    Poor Customer Support
    1
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • Coverity features and usability ratings that predict user satisfaction
    8.5
    Test Automation
    Average: 8.7
    8.1
    Has the product been a good partner in doing business?
    Average: 9.1
    8.6
    Quality of Support
    Average: 9.2
    8.8
    Black-Box Scanning
    Average: 8.2
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Seller
    Synopsys
    Year Founded
    1986
    HQ Location
    Mountain View, CA
    Twitter
    @synopsys
    22,849 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    19,499 employees on LinkedIn®
    Ownership
    NASDAQ:SNPS
Product Description
How are these determined?Information
This description is provided by the seller.

Coverity® is a fast, accurate, and highly scalable static analysis (SAST) solution that helps development and security teams address security and quality defects early in the software development life

Users
  • Software Engineer
Industries
  • Computer Software
  • Information Technology and Services
Market Segment
  • 64% Enterprise
  • 27% Mid-Market
Coverity Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Accuracy
1
Vulnerability Detection
1
Cons
Limited Features
1
Missing Features
1
Poor Customer Support
1
Coverity features and usability ratings that predict user satisfaction
8.5
Test Automation
Average: 8.7
8.1
Has the product been a good partner in doing business?
Average: 9.1
8.6
Quality of Support
Average: 9.2
8.8
Black-Box Scanning
Average: 8.2
Seller Details
Seller
Synopsys
Year Founded
1986
HQ Location
Mountain View, CA
Twitter
@synopsys
22,849 Twitter followers
LinkedIn® Page
www.linkedin.com
19,499 employees on LinkedIn®
Ownership
NASDAQ:SNPS
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    Veracode helps companies that innovate through software deliver secure code on time. Unlike on-premise solutions that are hard to scale and focused on finding rather than fixing, Veracode comprises a

    Users
    No information available
    Industries
    • Information Technology and Services
    Market Segment
    • 75% Enterprise
    • 29% Mid-Market
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • Veracode Application Security Platform Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Security
    3
    Vulnerability Detection
    3
    Accuracy of Findings
    2
    Detailed Information
    2
    Accuracy
    1
    Cons
    Expensive
    2
    Lack of Information
    2
    Licensing Issues
    2
    Pricing Issues
    2
    Complexity
    1
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • Veracode Application Security Platform features and usability ratings that predict user satisfaction
    9.2
    Test Automation
    Average: 8.7
    7.9
    Has the product been a good partner in doing business?
    Average: 9.1
    8.0
    Quality of Support
    Average: 9.2
    8.3
    Black-Box Scanning
    Average: 8.2
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Seller
    VERACODE
    Year Founded
    2006
    HQ Location
    Burlington, MA
    Twitter
    @Veracode
    22,567 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    638 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

Veracode helps companies that innovate through software deliver secure code on time. Unlike on-premise solutions that are hard to scale and focused on finding rather than fixing, Veracode comprises a

Users
No information available
Industries
  • Information Technology and Services
Market Segment
  • 75% Enterprise
  • 29% Mid-Market
Veracode Application Security Platform Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Security
3
Vulnerability Detection
3
Accuracy of Findings
2
Detailed Information
2
Accuracy
1
Cons
Expensive
2
Lack of Information
2
Licensing Issues
2
Pricing Issues
2
Complexity
1
Veracode Application Security Platform features and usability ratings that predict user satisfaction
9.2
Test Automation
Average: 8.7
7.9
Has the product been a good partner in doing business?
Average: 9.1
8.0
Quality of Support
Average: 9.2
8.3
Black-Box Scanning
Average: 8.2
Seller Details
Seller
VERACODE
Year Founded
2006
HQ Location
Burlington, MA
Twitter
@Veracode
22,567 Twitter followers
LinkedIn® Page
www.linkedin.com
638 employees on LinkedIn®
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    DerScanner is a complete application security testing solution to eliminate known and unknown code threats across Software Development Lifecycle. DerScanner static code analysis offers developers the

    Users
    No information available
    Industries
    • Information Technology and Services
    Market Segment
    • 58% Small-Business
    • 42% Mid-Market
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • DerScanner Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Vulnerability Detection
    8
    Security
    7
    Accuracy of Results
    5
    Ease of Use
    5
    Detection Efficiency
    4
    Cons
    Difficult Setup
    2
    Learning Difficulty
    2
    Overwhelming Interface
    2
    Complex Configuration
    1
    Complexity
    1
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • DerScanner features and usability ratings that predict user satisfaction
    9.4
    Test Automation
    Average: 8.7
    0.0
    No information available
    10.0
    Quality of Support
    Average: 9.2
    10.0
    Black-Box Scanning
    Average: 8.2
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Seller
    DerSecur
    Year Founded
    2019
    HQ Location
    Dubai, United Arab Emirates
    LinkedIn® Page
    www.linkedin.com
    1 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

DerScanner is a complete application security testing solution to eliminate known and unknown code threats across Software Development Lifecycle. DerScanner static code analysis offers developers the

Users
No information available
Industries
  • Information Technology and Services
Market Segment
  • 58% Small-Business
  • 42% Mid-Market
DerScanner Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Vulnerability Detection
8
Security
7
Accuracy of Results
5
Ease of Use
5
Detection Efficiency
4
Cons
Difficult Setup
2
Learning Difficulty
2
Overwhelming Interface
2
Complex Configuration
1
Complexity
1
DerScanner features and usability ratings that predict user satisfaction
9.4
Test Automation
Average: 8.7
0.0
No information available
10.0
Quality of Support
Average: 9.2
10.0
Black-Box Scanning
Average: 8.2
Seller Details
Seller
DerSecur
Year Founded
2019
HQ Location
Dubai, United Arab Emirates
LinkedIn® Page
www.linkedin.com
1 employees on LinkedIn®
(31)4.6 out of 5
View top Consulting Services for Semgrep
Save to My Lists
Entry Level Price:$40.00
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    Semgrep is a highly customizable application security platform built for security engineers and developers. Semgrep scans first and third-party code to find security issues unique to an organization,

    Users
    No information available
    Industries
    • Computer Software
    • Information Technology and Services
    Market Segment
    • 58% Mid-Market
    • 29% Enterprise
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • Semgrep Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Custom Rules
    4
    Features
    4
    Automated Scanning
    3
    Ease of Use
    3
    Easy Integrations
    3
    Cons
    Scanning Issues
    3
    False Positives
    2
    Inaccuracy
    2
    Bug Issues
    1
    Dependency Issues
    1
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • Semgrep features and usability ratings that predict user satisfaction
    9.2
    Test Automation
    Average: 8.7
    9.5
    Has the product been a good partner in doing business?
    Average: 9.1
    9.2
    Quality of Support
    Average: 9.2
    7.0
    Black-Box Scanning
    Average: 8.2
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Seller
    Semgrep
    Year Founded
    2017
    HQ Location
    San Francisco, US
    Twitter
    @semgrep
    3,487 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    170 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

Semgrep is a highly customizable application security platform built for security engineers and developers. Semgrep scans first and third-party code to find security issues unique to an organization,

Users
No information available
Industries
  • Computer Software
  • Information Technology and Services
Market Segment
  • 58% Mid-Market
  • 29% Enterprise
Semgrep Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Custom Rules
4
Features
4
Automated Scanning
3
Ease of Use
3
Easy Integrations
3
Cons
Scanning Issues
3
False Positives
2
Inaccuracy
2
Bug Issues
1
Dependency Issues
1
Semgrep features and usability ratings that predict user satisfaction
9.2
Test Automation
Average: 8.7
9.5
Has the product been a good partner in doing business?
Average: 9.1
9.2
Quality of Support
Average: 9.2
7.0
Black-Box Scanning
Average: 8.2
Seller Details
Seller
Semgrep
Year Founded
2017
HQ Location
San Francisco, US
Twitter
@semgrep
3,487 Twitter followers
LinkedIn® Page
www.linkedin.com
170 employees on LinkedIn®