Best Static Application Security Testing (SAST) Software

LW
Researched and written by Lauren Worth

Static application security testing (SAST) software inspects and analyzes an application’s code to discover security vulnerabilities without actually executing code. These tools are frequently used by companies with continuous delivery practices to identify flaws prior to deployment. SAST tools provide vulnerability information and remediation suggestions for development teams to resolve. There is relation and overlap between SAST tools and static code analysis software, but SAST products are more focused on security testing. Static code analysis products, on the other hand, combine a number of analytical practices, test management, and team collaboration features.

SAST vs DAST — Learn the difference

To qualify for inclusion in the Static Application Security Testing (SAST) category, a product must:

Test applications to identify vulnerabilities
Not execute code during testing, or have the ability to run static tests
Provide information on relative vulnerabilities and exploits

Best Static Application Security Testing (SAST) Software At A Glance

Leader:
Highest Performer:
Best Contender:
Most Niche:
Most Trending:
Show LessShow More
Best Contender:
Most Niche:
Most Trending:

G2 takes pride in showing unbiased reviews on user satisfaction in our ratings and reports. We do not allow paid placements in any of our ratings, rankings, or reports. Learn about our scoring methodologies.

1 filter applied
Clear All
100 Listings in Static Application Security Testing (SAST) Available
(2,199)4.7 out of 5
1st Easiest To Use in Static Application Security Testing (SAST) software
View top Consulting Services for GitHub
Save to My Lists
Entry Level Price:Free
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    GitHub is where the world builds software. Millions of individuals, organizations and businesses around the world use GitHub to discover, share, and contribute software. Developers at startups to Fort

    Users
    • Software Engineer
    • Senior Software Engineer
    Industries
    • Computer Software
    • Information Technology and Services
    Market Segment
    • 46% Small-Business
    • 31% Mid-Market
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • GitHub Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Features
    128
    Ease of Use
    113
    Collaboration
    105
    Team Collaboration
    103
    Version Control
    87
    Cons
    Learning Curve
    38
    Complexity
    33
    Learning Difficulty
    32
    Difficulty for Beginners
    29
    Limited Features
    27
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • GitHub features and usability ratings that predict user satisfaction
    8.2
    Test Automation
    Average: 8.5
    8.9
    Has the product been a good partner in doing business?
    Average: 9.1
    8.7
    Quality of Support
    Average: 9.2
    8.0
    Black-Box Scanning
    Average: 8.0
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Seller
    GitHub
    Year Founded
    2008
    HQ Location
    San Francisco, CA
    Twitter
    @github
    2,622,895 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    6,253 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

GitHub is where the world builds software. Millions of individuals, organizations and businesses around the world use GitHub to discover, share, and contribute software. Developers at startups to Fort

Users
  • Software Engineer
  • Senior Software Engineer
Industries
  • Computer Software
  • Information Technology and Services
Market Segment
  • 46% Small-Business
  • 31% Mid-Market
GitHub Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Features
128
Ease of Use
113
Collaboration
105
Team Collaboration
103
Version Control
87
Cons
Learning Curve
38
Complexity
33
Learning Difficulty
32
Difficulty for Beginners
29
Limited Features
27
GitHub features and usability ratings that predict user satisfaction
8.2
Test Automation
Average: 8.5
8.9
Has the product been a good partner in doing business?
Average: 9.1
8.7
Quality of Support
Average: 9.2
8.0
Black-Box Scanning
Average: 8.0
Seller Details
Seller
GitHub
Year Founded
2008
HQ Location
San Francisco, CA
Twitter
@github
2,622,895 Twitter followers
LinkedIn® Page
www.linkedin.com
6,253 employees on LinkedIn®
(76)4.1 out of 5
13th Easiest To Use in Static Application Security Testing (SAST) software
Save to My Lists
Entry Level Price:Free
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    HCL AppScan is a comprehensive suite of market-leading application security testing solutions (SAST, DAST, IAST, SCA, API), available on-premises and on-cloud. These powerful DevSecOps tools pinpoint

    Users
    No information available
    Industries
    • Information Technology and Services
    • Computer & Network Security
    Market Segment
    • 54% Enterprise
    • 28% Small-Business
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • HCL AppScan Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Ease of Use
    13
    Scanning Efficiency
    13
    Security
    12
    Vulnerability Detection
    11
    Accuracy of Results
    8
    Cons
    Expensive
    8
    Scanning Issues
    6
    Complexity
    5
    Slow Scanning
    4
    Difficult Setup
    3
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • HCL AppScan features and usability ratings that predict user satisfaction
    8.4
    Test Automation
    Average: 8.5
    8.8
    Has the product been a good partner in doing business?
    Average: 9.1
    8.5
    Quality of Support
    Average: 9.2
    8.3
    Black-Box Scanning
    Average: 8.0
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Year Founded
    1999
    HQ Location
    Noida, Uttar Pradesh
    Twitter
    @hcltech
    444,151 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    244,701 employees on LinkedIn®
    Ownership
    NSE - National Stock Exchange of India
Product Description
How are these determined?Information
This description is provided by the seller.

HCL AppScan is a comprehensive suite of market-leading application security testing solutions (SAST, DAST, IAST, SCA, API), available on-premises and on-cloud. These powerful DevSecOps tools pinpoint

Users
No information available
Industries
  • Information Technology and Services
  • Computer & Network Security
Market Segment
  • 54% Enterprise
  • 28% Small-Business
HCL AppScan Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Ease of Use
13
Scanning Efficiency
13
Security
12
Vulnerability Detection
11
Accuracy of Results
8
Cons
Expensive
8
Scanning Issues
6
Complexity
5
Slow Scanning
4
Difficult Setup
3
HCL AppScan features and usability ratings that predict user satisfaction
8.4
Test Automation
Average: 8.5
8.8
Has the product been a good partner in doing business?
Average: 9.1
8.5
Quality of Support
Average: 9.2
8.3
Black-Box Scanning
Average: 8.0
Seller Details
Year Founded
1999
HQ Location
Noida, Uttar Pradesh
Twitter
@hcltech
444,151 Twitter followers
LinkedIn® Page
www.linkedin.com
244,701 employees on LinkedIn®
Ownership
NSE - National Stock Exchange of India

This is how G2 Deals can help you:

  • Easily shop for curated – and trusted – software
  • Own your own software buying journey
  • Discover exclusive deals on software
(214)4.8 out of 5
2nd Easiest To Use in Static Application Security Testing (SAST) software
Save to My Lists
Entry Level Price:Free
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    The new ways of building software create the necessity to support new vulnerabilities and new remediation workflows. These needs have emerged so abruptly that they have given rise to a young and highl

    Users
    • Software Engineer
    Industries
    • Computer Software
    • Information Technology and Services
    Market Segment
    • 83% Small-Business
    • 12% Mid-Market
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • GitGuardian Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Security
    54
    Alert Notifications
    48
    Vulnerability Detection
    39
    Ease of Use
    30
    Git Integration
    28
    Cons
    False Positives
    17
    Poor Interface
    9
    Inefficient Notifications
    8
    Poor User Interface
    8
    Excessive Notifications
    5
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • GitGuardian features and usability ratings that predict user satisfaction
    8.3
    Test Automation
    Average: 8.5
    8.9
    Has the product been a good partner in doing business?
    Average: 9.1
    9.3
    Quality of Support
    Average: 9.2
    9.0
    Black-Box Scanning
    Average: 8.0
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Year Founded
    2017
    HQ Location
    Paris, Île-de-France
    Twitter
    @GitGuardian
    6,128 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    164 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

The new ways of building software create the necessity to support new vulnerabilities and new remediation workflows. These needs have emerged so abruptly that they have given rise to a young and highl

Users
  • Software Engineer
Industries
  • Computer Software
  • Information Technology and Services
Market Segment
  • 83% Small-Business
  • 12% Mid-Market
GitGuardian Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Security
54
Alert Notifications
48
Vulnerability Detection
39
Ease of Use
30
Git Integration
28
Cons
False Positives
17
Poor Interface
9
Inefficient Notifications
8
Poor User Interface
8
Excessive Notifications
5
GitGuardian features and usability ratings that predict user satisfaction
8.3
Test Automation
Average: 8.5
8.9
Has the product been a good partner in doing business?
Average: 9.1
9.3
Quality of Support
Average: 9.2
9.0
Black-Box Scanning
Average: 8.0
Seller Details
Year Founded
2017
HQ Location
Paris, Île-de-France
Twitter
@GitGuardian
6,128 Twitter followers
LinkedIn® Page
www.linkedin.com
164 employees on LinkedIn®
(50)4.8 out of 5
5th Easiest To Use in Static Application Security Testing (SAST) software
Save to My Lists
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    Security should be an integral part of the software development process, not an afterthought. Founded by Neatsun Ziv and Lion Arzi, two former Check Point executives, OX is the first and only Active A

    Users
    • Security Engineer
    Industries
    • Financial Services
    • Information Technology and Services
    Market Segment
    • 64% Mid-Market
    • 26% Enterprise
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • OX Security Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Features
    28
    Ease of Use
    25
    Customer Support
    23
    Integration Support
    22
    Security
    22
    Cons
    Missing Features
    10
    Integration Issues
    7
    Limited Features
    7
    Complexity
    5
    Inadequate Reporting
    5
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • OX Security features and usability ratings that predict user satisfaction
    7.4
    Test Automation
    Average: 8.5
    9.7
    Has the product been a good partner in doing business?
    Average: 9.1
    9.6
    Quality of Support
    Average: 9.2
    7.8
    Black-Box Scanning
    Average: 8.0
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Year Founded
    2021
    HQ Location
    New York, USA
    LinkedIn® Page
    www.linkedin.com
    136 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

Security should be an integral part of the software development process, not an afterthought. Founded by Neatsun Ziv and Lion Arzi, two former Check Point executives, OX is the first and only Active A

Users
  • Security Engineer
Industries
  • Financial Services
  • Information Technology and Services
Market Segment
  • 64% Mid-Market
  • 26% Enterprise
OX Security Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Features
28
Ease of Use
25
Customer Support
23
Integration Support
22
Security
22
Cons
Missing Features
10
Integration Issues
7
Limited Features
7
Complexity
5
Inadequate Reporting
5
OX Security features and usability ratings that predict user satisfaction
7.4
Test Automation
Average: 8.5
9.7
Has the product been a good partner in doing business?
Average: 9.1
9.6
Quality of Support
Average: 9.2
7.8
Black-Box Scanning
Average: 8.0
Seller Details
Year Founded
2021
HQ Location
New York, USA
LinkedIn® Page
www.linkedin.com
136 employees on LinkedIn®
(54)4.7 out of 5
Optimized for quick response
7th Easiest To Use in Static Application Security Testing (SAST) software
Save to My Lists
Entry Level Price:Free
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    Aikido is an application security (AppSec) platform specifically designed for developers who prioritize their coding tasks over managing security alerts. Our innovative solution consolidates nine esse

    Users
    No information available
    Industries
    • Computer Software
    • Information Technology and Services
    Market Segment
    • 78% Small-Business
    • 22% Mid-Market
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • Aikido Security Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Ease of Use
    29
    Security
    26
    Easy Integrations
    23
    Easy Setup
    21
    Features
    20
    Cons
    Missing Features
    8
    False Positives
    7
    Limited Features
    7
    Improvement Needed
    6
    Lack of Information
    6
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • Aikido Security features and usability ratings that predict user satisfaction
    7.4
    Test Automation
    Average: 8.5
    9.6
    Has the product been a good partner in doing business?
    Average: 9.1
    9.6
    Quality of Support
    Average: 9.2
    8.6
    Black-Box Scanning
    Average: 8.0
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Company Website
    Year Founded
    2022
    HQ Location
    Ghent, Belgium
    Twitter
    @AikidoSecurity
    1,331 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    50 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

Aikido is an application security (AppSec) platform specifically designed for developers who prioritize their coding tasks over managing security alerts. Our innovative solution consolidates nine esse

Users
No information available
Industries
  • Computer Software
  • Information Technology and Services
Market Segment
  • 78% Small-Business
  • 22% Mid-Market
Aikido Security Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Ease of Use
29
Security
26
Easy Integrations
23
Easy Setup
21
Features
20
Cons
Missing Features
8
False Positives
7
Limited Features
7
Improvement Needed
6
Lack of Information
6
Aikido Security features and usability ratings that predict user satisfaction
7.4
Test Automation
Average: 8.5
9.6
Has the product been a good partner in doing business?
Average: 9.1
9.6
Quality of Support
Average: 9.2
8.6
Black-Box Scanning
Average: 8.0
Seller Details
Company Website
Year Founded
2022
HQ Location
Ghent, Belgium
Twitter
@AikidoSecurity
1,331 Twitter followers
LinkedIn® Page
www.linkedin.com
50 employees on LinkedIn®
(36)4.7 out of 5
Optimized for quick response
6th Easiest To Use in Static Application Security Testing (SAST) software
Save to My Lists
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    Jit is redefining application security by introducing the first Agentic AppSec Platform, seamlessly blending human expertise with AI-driven automation. Designed for modern development teams, Jit empow

    Users
    No information available
    Industries
    • Computer Software
    • Financial Services
    Market Segment
    • 53% Mid-Market
    • 36% Small-Business
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • Jit Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Ease of Use
    19
    Security
    18
    Integration Support
    15
    Customer Support
    14
    Features
    13
    Cons
    Poor User Interface
    6
    Integration Issues
    4
    Limited Cloud Integration
    4
    Limited Features
    4
    Complexity
    3
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • Jit features and usability ratings that predict user satisfaction
    8.8
    Test Automation
    Average: 8.5
    9.7
    Has the product been a good partner in doing business?
    Average: 9.1
    9.5
    Quality of Support
    Average: 9.2
    8.4
    Black-Box Scanning
    Average: 8.0
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Seller
    jit
    Company Website
    Year Founded
    2021
    HQ Location
    Boston, MA
    Twitter
    @jit_io
    515 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    97 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

Jit is redefining application security by introducing the first Agentic AppSec Platform, seamlessly blending human expertise with AI-driven automation. Designed for modern development teams, Jit empow

Users
No information available
Industries
  • Computer Software
  • Financial Services
Market Segment
  • 53% Mid-Market
  • 36% Small-Business
Jit Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Ease of Use
19
Security
18
Integration Support
15
Customer Support
14
Features
13
Cons
Poor User Interface
6
Integration Issues
4
Limited Cloud Integration
4
Limited Features
4
Complexity
3
Jit features and usability ratings that predict user satisfaction
8.8
Test Automation
Average: 8.5
9.7
Has the product been a good partner in doing business?
Average: 9.1
9.5
Quality of Support
Average: 9.2
8.4
Black-Box Scanning
Average: 8.0
Seller Details
Seller
jit
Company Website
Year Founded
2021
HQ Location
Boston, MA
Twitter
@jit_io
515 Twitter followers
LinkedIn® Page
www.linkedin.com
97 employees on LinkedIn®
(60)4.6 out of 5
Optimized for quick response
3rd Easiest To Use in Static Application Security Testing (SAST) software
View top Consulting Services for Invicti (formerly Netsparker)
Save to My Lists
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    Invicti is an automated application and API security testing solution that allows enterprise organizations to secure thousands of websites, web apps, and APIs and dramatically reduce the risk of attac

    Users
    No information available
    Industries
    • Information Technology and Services
    • Financial Services
    Market Segment
    • 50% Enterprise
    • 25% Mid-Market
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • Invicti (formerly Netsparker) Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Customer Support
    4
    Ease of Use
    4
    Vulnerability Detection
    4
    Vulnerability Identification
    4
    Accuracy of Results
    3
    Cons
    API Issues
    1
    Inadequate Testing
    1
    Limited Testing Capabilities
    1
    Scanning Issues
    1
    Slow Performance
    1
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • Invicti (formerly Netsparker) features and usability ratings that predict user satisfaction
    0.0
    No information available
    9.7
    Has the product been a good partner in doing business?
    Average: 9.1
    9.1
    Quality of Support
    Average: 9.2
    0.0
    No information available
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Company Website
    Year Founded
    2018
    HQ Location
    Austin, Texas
    Twitter
    @InvictiSecurity
    2,550 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    312 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

Invicti is an automated application and API security testing solution that allows enterprise organizations to secure thousands of websites, web apps, and APIs and dramatically reduce the risk of attac

Users
No information available
Industries
  • Information Technology and Services
  • Financial Services
Market Segment
  • 50% Enterprise
  • 25% Mid-Market
Invicti (formerly Netsparker) Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Customer Support
4
Ease of Use
4
Vulnerability Detection
4
Vulnerability Identification
4
Accuracy of Results
3
Cons
API Issues
1
Inadequate Testing
1
Limited Testing Capabilities
1
Scanning Issues
1
Slow Performance
1
Invicti (formerly Netsparker) features and usability ratings that predict user satisfaction
0.0
No information available
9.7
Has the product been a good partner in doing business?
Average: 9.1
9.1
Quality of Support
Average: 9.2
0.0
No information available
Seller Details
Company Website
Year Founded
2018
HQ Location
Austin, Texas
Twitter
@InvictiSecurity
2,550 Twitter followers
LinkedIn® Page
www.linkedin.com
312 employees on LinkedIn®
(122)4.5 out of 5
8th Easiest To Use in Static Application Security Testing (SAST) software
View top Consulting Services for Snyk
Save to My Lists
Entry Level Price:Free
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    Snyk (pronounced sneak) is a developer security platform for securing custom code, open source dependencies, containers, and cloud infrastructure all from a single platform. Snyk’s developer securit

    Users
    • Software Engineer
    Industries
    • Computer Software
    • Information Technology and Services
    Market Segment
    • 42% Mid-Market
    • 38% Small-Business
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • Snyk Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Easy Integrations
    5
    Integration Support
    4
    Integrations
    3
    Version Control
    3
    Ease of Use
    2
    Cons
    False Positives
    3
    Complex Configuration
    2
    Poor Customer Support
    2
    Poor Support Services
    2
    Pricing Issues
    2
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • Snyk features and usability ratings that predict user satisfaction
    7.9
    Test Automation
    Average: 8.5
    8.8
    Has the product been a good partner in doing business?
    Average: 9.1
    8.6
    Quality of Support
    Average: 9.2
    6.4
    Black-Box Scanning
    Average: 8.0
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Seller
    Snyk
    HQ Location
    Boston, Massachusetts
    Twitter
    @snyksec
    19,731 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    1,284 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

Snyk (pronounced sneak) is a developer security platform for securing custom code, open source dependencies, containers, and cloud infrastructure all from a single platform. Snyk’s developer securit

Users
  • Software Engineer
Industries
  • Computer Software
  • Information Technology and Services
Market Segment
  • 42% Mid-Market
  • 38% Small-Business
Snyk Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Easy Integrations
5
Integration Support
4
Integrations
3
Version Control
3
Ease of Use
2
Cons
False Positives
3
Complex Configuration
2
Poor Customer Support
2
Poor Support Services
2
Pricing Issues
2
Snyk features and usability ratings that predict user satisfaction
7.9
Test Automation
Average: 8.5
8.8
Has the product been a good partner in doing business?
Average: 9.1
8.6
Quality of Support
Average: 9.2
6.4
Black-Box Scanning
Average: 8.0
Seller Details
Seller
Snyk
HQ Location
Boston, Massachusetts
Twitter
@snyksec
19,731 Twitter followers
LinkedIn® Page
www.linkedin.com
1,284 employees on LinkedIn®
(823)4.5 out of 5
Optimized for quick response
10th Easiest To Use in Static Application Security Testing (SAST) software
View top Consulting Services for GitLab
Save to My Lists
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    GitLab is the most comprehensive AI-Powered DevSecOps platform that enables software innovation by empowering development, security, and operations teams to build better software, faster. With GitLab

    Users
    • Software Engineer
    • Senior Software Engineer
    Industries
    • Computer Software
    • Information Technology and Services
    Market Segment
    • 37% Small-Business
    • 37% Mid-Market
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • GitLab Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Ease of Use
    46
    Features
    42
    Deployment
    30
    Repository Management
    30
    Version Control
    28
    Cons
    Complexity
    15
    Limited Features
    14
    Missing Features
    13
    Poor User Interface
    13
    Confusing Interface
    11
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • GitLab features and usability ratings that predict user satisfaction
    8.9
    Test Automation
    Average: 8.5
    8.8
    Has the product been a good partner in doing business?
    Average: 9.1
    8.5
    Quality of Support
    Average: 9.2
    8.6
    Black-Box Scanning
    Average: 8.0
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Company Website
    Year Founded
    2014
    HQ Location
    San Francisco, California
    Twitter
    @gitlab
    167,537 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    2,843 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

GitLab is the most comprehensive AI-Powered DevSecOps platform that enables software innovation by empowering development, security, and operations teams to build better software, faster. With GitLab

Users
  • Software Engineer
  • Senior Software Engineer
Industries
  • Computer Software
  • Information Technology and Services
Market Segment
  • 37% Small-Business
  • 37% Mid-Market
GitLab Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Ease of Use
46
Features
42
Deployment
30
Repository Management
30
Version Control
28
Cons
Complexity
15
Limited Features
14
Missing Features
13
Poor User Interface
13
Confusing Interface
11
GitLab features and usability ratings that predict user satisfaction
8.9
Test Automation
Average: 8.5
8.8
Has the product been a good partner in doing business?
Average: 9.1
8.5
Quality of Support
Average: 9.2
8.6
Black-Box Scanning
Average: 8.0
Seller Details
Company Website
Year Founded
2014
HQ Location
San Francisco, California
Twitter
@gitlab
167,537 Twitter followers
LinkedIn® Page
www.linkedin.com
2,843 employees on LinkedIn®
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    Checkmarx is constantly pushing the boundaries of Application Security (AppSec) Testing to make security seamless and simple for the world’s developers while giving CISOs the confidence and control th

    Users
    No information available
    Industries
    • Information Technology and Services
    • Computer Software
    Market Segment
    • 57% Enterprise
    • 26% Mid-Market
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • Checkmarx Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Features
    3
    CD Integration
    2
    CI
    2
    Ease of Use
    2
    User Interface
    2
    Cons
    Difficult Customization
    1
    Expensive
    1
    False Positives
    1
    Poor Customer Support
    1
    Poor Navigation
    1
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • Checkmarx features and usability ratings that predict user satisfaction
    8.3
    Test Automation
    Average: 8.5
    8.3
    Has the product been a good partner in doing business?
    Average: 9.1
    8.3
    Quality of Support
    Average: 9.2
    5.6
    Black-Box Scanning
    Average: 8.0
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Year Founded
    2006
    HQ Location
    Paramus, NJ
    Twitter
    @Checkmarx
    7,194 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    902 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

Checkmarx is constantly pushing the boundaries of Application Security (AppSec) Testing to make security seamless and simple for the world’s developers while giving CISOs the confidence and control th

Users
No information available
Industries
  • Information Technology and Services
  • Computer Software
Market Segment
  • 57% Enterprise
  • 26% Mid-Market
Checkmarx Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Features
3
CD Integration
2
CI
2
Ease of Use
2
User Interface
2
Cons
Difficult Customization
1
Expensive
1
False Positives
1
Poor Customer Support
1
Poor Navigation
1
Checkmarx features and usability ratings that predict user satisfaction
8.3
Test Automation
Average: 8.5
8.3
Has the product been a good partner in doing business?
Average: 9.1
8.3
Quality of Support
Average: 9.2
5.6
Black-Box Scanning
Average: 8.0
Seller Details
Year Founded
2006
HQ Location
Paramus, NJ
Twitter
@Checkmarx
7,194 Twitter followers
LinkedIn® Page
www.linkedin.com
902 employees on LinkedIn®
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    SonarQube Server is a self-managed static code analysis tool that ensures all developer-written and AI-generated code meets the highest coding standards. By integrating with the top DevOps platforms i

    Users
    • Software Engineer
    Industries
    • Computer Software
    • Information Technology and Services
    Market Segment
    • 44% Enterprise
    • 36% Mid-Market
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • SonarQube Server (formerly SonarQube) Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Code Quality
    17
    Features
    15
    Ease of Use
    12
    Integrations
    10
    Issue Identification
    10
    Cons
    Limited Features
    10
    Complex Configuration
    6
    Complex Setup
    6
    Expensive
    6
    Missing Features
    6
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • SonarQube Server (formerly SonarQube) features and usability ratings that predict user satisfaction
    6.3
    Test Automation
    Average: 8.5
    8.3
    Has the product been a good partner in doing business?
    Average: 9.1
    8.0
    Quality of Support
    Average: 9.2
    7.6
    Black-Box Scanning
    Average: 8.0
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Company Website
    Year Founded
    2008
    HQ Location
    Geneva, Switzerland
    Twitter
    @SonarSource
    10,255 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    653 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

SonarQube Server is a self-managed static code analysis tool that ensures all developer-written and AI-generated code meets the highest coding standards. By integrating with the top DevOps platforms i

Users
  • Software Engineer
Industries
  • Computer Software
  • Information Technology and Services
Market Segment
  • 44% Enterprise
  • 36% Mid-Market
SonarQube Server (formerly SonarQube) Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Code Quality
17
Features
15
Ease of Use
12
Integrations
10
Issue Identification
10
Cons
Limited Features
10
Complex Configuration
6
Complex Setup
6
Expensive
6
Missing Features
6
SonarQube Server (formerly SonarQube) features and usability ratings that predict user satisfaction
6.3
Test Automation
Average: 8.5
8.3
Has the product been a good partner in doing business?
Average: 9.1
8.0
Quality of Support
Average: 9.2
7.6
Black-Box Scanning
Average: 8.0
Seller Details
Company Website
Year Founded
2008
HQ Location
Geneva, Switzerland
Twitter
@SonarSource
10,255 Twitter followers
LinkedIn® Page
www.linkedin.com
653 employees on LinkedIn®
(56)4.2 out of 5
15th Easiest To Use in Static Application Security Testing (SAST) software
Save to My Lists
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    Coverity® is a fast, accurate, and highly scalable static analysis (SAST) solution that helps development and security teams address security and quality defects early in the software development life

    Users
    • Software Engineer
    Industries
    • Computer Software
    • Information Technology and Services
    Market Segment
    • 64% Enterprise
    • 27% Mid-Market
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • Coverity Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Accuracy
    1
    Vulnerability Detection
    1
    Cons
    Limited Features
    1
    Missing Features
    1
    Poor Customer Support
    1
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • Coverity features and usability ratings that predict user satisfaction
    8.5
    Test Automation
    Average: 8.5
    8.1
    Has the product been a good partner in doing business?
    Average: 9.1
    8.6
    Quality of Support
    Average: 9.2
    8.8
    Black-Box Scanning
    Average: 8.0
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Seller
    Synopsys
    Year Founded
    1986
    HQ Location
    Mountain View, CA
    Twitter
    @synopsys
    23,009 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    19,499 employees on LinkedIn®
    Ownership
    NASDAQ:SNPS
Product Description
How are these determined?Information
This description is provided by the seller.

Coverity® is a fast, accurate, and highly scalable static analysis (SAST) solution that helps development and security teams address security and quality defects early in the software development life

Users
  • Software Engineer
Industries
  • Computer Software
  • Information Technology and Services
Market Segment
  • 64% Enterprise
  • 27% Mid-Market
Coverity Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Accuracy
1
Vulnerability Detection
1
Cons
Limited Features
1
Missing Features
1
Poor Customer Support
1
Coverity features and usability ratings that predict user satisfaction
8.5
Test Automation
Average: 8.5
8.1
Has the product been a good partner in doing business?
Average: 9.1
8.6
Quality of Support
Average: 9.2
8.8
Black-Box Scanning
Average: 8.0
Seller Details
Seller
Synopsys
Year Founded
1986
HQ Location
Mountain View, CA
Twitter
@synopsys
23,009 Twitter followers
LinkedIn® Page
www.linkedin.com
19,499 employees on LinkedIn®
Ownership
NASDAQ:SNPS
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    Veracode helps companies that innovate through software deliver secure code on time. Unlike on-premise solutions that are hard to scale and focused on finding rather than fixing, Veracode comprises a

    Users
    No information available
    Industries
    • Information Technology and Services
    Market Segment
    • 75% Enterprise
    • 29% Mid-Market
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • Veracode Application Security Platform Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Security
    2
    Vulnerability Detection
    2
    Accuracy of Findings
    1
    Code Review
    1
    Comprehensive Solutions
    1
    Cons
    Expensive
    2
    Licensing Issues
    2
    Pricing Issues
    2
    Complexity
    1
    Cost Issues
    1
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • Veracode Application Security Platform features and usability ratings that predict user satisfaction
    9.2
    Test Automation
    Average: 8.5
    7.9
    Has the product been a good partner in doing business?
    Average: 9.1
    8.0
    Quality of Support
    Average: 9.2
    8.3
    Black-Box Scanning
    Average: 8.0
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Seller
    VERACODE
    Year Founded
    2006
    HQ Location
    Burlington, MA
    Twitter
    @Veracode
    22,494 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    638 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

Veracode helps companies that innovate through software deliver secure code on time. Unlike on-premise solutions that are hard to scale and focused on finding rather than fixing, Veracode comprises a

Users
No information available
Industries
  • Information Technology and Services
Market Segment
  • 75% Enterprise
  • 29% Mid-Market
Veracode Application Security Platform Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Security
2
Vulnerability Detection
2
Accuracy of Findings
1
Code Review
1
Comprehensive Solutions
1
Cons
Expensive
2
Licensing Issues
2
Pricing Issues
2
Complexity
1
Cost Issues
1
Veracode Application Security Platform features and usability ratings that predict user satisfaction
9.2
Test Automation
Average: 8.5
7.9
Has the product been a good partner in doing business?
Average: 9.1
8.0
Quality of Support
Average: 9.2
8.3
Black-Box Scanning
Average: 8.0
Seller Details
Seller
VERACODE
Year Founded
2006
HQ Location
Burlington, MA
Twitter
@Veracode
22,494 Twitter followers
LinkedIn® Page
www.linkedin.com
638 employees on LinkedIn®
(31)4.6 out of 5
View top Consulting Services for Semgrep
Save to My Lists
Entry Level Price:$40.00
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    Semgrep is a highly customizable application security platform built for security engineers and developers. Semgrep scans first and third-party code to find security issues unique to an organization,

    Users
    No information available
    Industries
    • Computer Software
    • Information Technology and Services
    Market Segment
    • 58% Mid-Market
    • 29% Enterprise
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • Semgrep Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Custom Rules
    4
    Features
    4
    Automated Scanning
    3
    Ease of Use
    3
    Easy Integrations
    3
    Cons
    Scanning Issues
    3
    False Positives
    2
    Inaccuracy
    2
    Bug Issues
    1
    Dependency Issues
    1
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • Semgrep features and usability ratings that predict user satisfaction
    9.2
    Test Automation
    Average: 8.5
    9.5
    Has the product been a good partner in doing business?
    Average: 9.1
    9.2
    Quality of Support
    Average: 9.2
    7.0
    Black-Box Scanning
    Average: 8.0
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Seller
    Semgrep
    Year Founded
    2017
    HQ Location
    San Francisco, US
    Twitter
    @semgrep
    3,605 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    170 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

Semgrep is a highly customizable application security platform built for security engineers and developers. Semgrep scans first and third-party code to find security issues unique to an organization,

Users
No information available
Industries
  • Computer Software
  • Information Technology and Services
Market Segment
  • 58% Mid-Market
  • 29% Enterprise
Semgrep Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Custom Rules
4
Features
4
Automated Scanning
3
Ease of Use
3
Easy Integrations
3
Cons
Scanning Issues
3
False Positives
2
Inaccuracy
2
Bug Issues
1
Dependency Issues
1
Semgrep features and usability ratings that predict user satisfaction
9.2
Test Automation
Average: 8.5
9.5
Has the product been a good partner in doing business?
Average: 9.1
9.2
Quality of Support
Average: 9.2
7.0
Black-Box Scanning
Average: 8.0
Seller Details
Seller
Semgrep
Year Founded
2017
HQ Location
San Francisco, US
Twitter
@semgrep
3,605 Twitter followers
LinkedIn® Page
www.linkedin.com
170 employees on LinkedIn®
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    Fortify Static Code Analyzer is designed to identify security vulnerabilities in the user's source code early in the software development lifecycle and provides best practices so developers can code m

    Users
    No information available
    Industries
    • Banking
    • Financial Services
    Market Segment
    • 50% Enterprise
    • 29% Small-Business
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • OpenText Fortify Static Code Analyzer Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Easy Integrations
    1
    Integrations
    1
    Integration Support
    1
    Cons
    False Positives
    1
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • OpenText Fortify Static Code Analyzer features and usability ratings that predict user satisfaction
    8.7
    Test Automation
    Average: 8.5
    8.5
    Has the product been a good partner in doing business?
    Average: 9.1
    8.7
    Quality of Support
    Average: 9.2
    7.0
    Black-Box Scanning
    Average: 8.0
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Seller
    OpenText
    Year Founded
    1991
    HQ Location
    Waterloo, ON
    Twitter
    @OpenText
    21,879 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    22,114 employees on LinkedIn®
    Ownership
    NASDAQ:OTEX
Product Description
How are these determined?Information
This description is provided by the seller.

Fortify Static Code Analyzer is designed to identify security vulnerabilities in the user's source code early in the software development lifecycle and provides best practices so developers can code m

Users
No information available
Industries
  • Banking
  • Financial Services
Market Segment
  • 50% Enterprise
  • 29% Small-Business
OpenText Fortify Static Code Analyzer Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Easy Integrations
1
Integrations
1
Integration Support
1
Cons
False Positives
1
OpenText Fortify Static Code Analyzer features and usability ratings that predict user satisfaction
8.7
Test Automation
Average: 8.5
8.5
Has the product been a good partner in doing business?
Average: 9.1
8.7
Quality of Support
Average: 9.2
7.0
Black-Box Scanning
Average: 8.0
Seller Details
Seller
OpenText
Year Founded
1991
HQ Location
Waterloo, ON
Twitter
@OpenText
21,879 Twitter followers
LinkedIn® Page
www.linkedin.com
22,114 employees on LinkedIn®
Ownership
NASDAQ:OTEX