Best Software for 2025 is now live!
|| products.size

Best Static Code Analysis Tools

Adam Crivello
AC
Researched and written by Adam Crivello

Static code analysis is the analysis of computer software performed without actually executing the code. Static code analysis tools scan all code in a project and seek out vulnerabilities, validates code against industry best practices, and some software tools validate against company-specific project specifications. Static code analysis tools are used by software development and quality assurance teams to ensure the quality and security of code, and that project requirements are met. Static code analysis is a type of source code management and can integrate with version control systems and through build automation tasks using continuous integration software.

To qualify as a static code analysis tool, a product must:

Scan code without executing that code
List security vulnerabilities after scanning
Validate code against industry best practices
Provide recommendations on where and how to fix issues

Best Static Code Analysis Tools At A Glance

Best for Small Businesses:
Highest User Satisfaction:
Best Free Software:
Show LessShow More
Highest User Satisfaction:
Best Free Software:

G2 takes pride in showing unbiased reviews on user satisfaction in our ratings and reports. We do not allow paid placements in any of our ratings, rankings, or reports. Learn about our scoring methodologies.

No filters applied
115 Listings in Static Code Analysis Available
(90)4.4 out of 5
3rd Easiest To Use in Static Code Analysis software
Save to My Lists
Entry Level Price:Free
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    SonarQube Server (formerly SonarQube) is a self-managed open-source platform that helps developers create code devoid of quality and vulnerability issues. By integrating seamlessly with the top DevOps

    Users
    • Software Engineer
    Industries
    • Computer Software
    • Information Technology and Services
    Market Segment
    • 44% Enterprise
    • 36% Mid-Market
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • SonarQube Server (formerly SonarQube) Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Code Quality
    19
    Features
    17
    Ease of Use
    12
    Issue Identification
    12
    Integrations
    10
    Cons
    Limited Features
    10
    Complex Configuration
    7
    Complex Setup
    7
    Expensive
    7
    Integration Issues
    6
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • SonarQube Server (formerly SonarQube) features and usability ratings that predict user satisfaction
    8.3
    Has the product been a good partner in doing business?
    Average: 8.8
    8.3
    Ease of Admin
    Average: 8.5
    8.3
    Ease of Use
    Average: 8.6
    10.0
    What is your organization's estimated ROI on the product (payback period in months)?
    Average: 10
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Company Website
    Year Founded
    2008
    HQ Location
    Geneva, Switzerland
    Twitter
    @SonarSource
    10,279 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    653 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

SonarQube Server (formerly SonarQube) is a self-managed open-source platform that helps developers create code devoid of quality and vulnerability issues. By integrating seamlessly with the top DevOps

Users
  • Software Engineer
Industries
  • Computer Software
  • Information Technology and Services
Market Segment
  • 44% Enterprise
  • 36% Mid-Market
SonarQube Server (formerly SonarQube) Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Code Quality
19
Features
17
Ease of Use
12
Issue Identification
12
Integrations
10
Cons
Limited Features
10
Complex Configuration
7
Complex Setup
7
Expensive
7
Integration Issues
6
SonarQube Server (formerly SonarQube) features and usability ratings that predict user satisfaction
8.3
Has the product been a good partner in doing business?
Average: 8.8
8.3
Ease of Admin
Average: 8.5
8.3
Ease of Use
Average: 8.6
10.0
What is your organization's estimated ROI on the product (payback period in months)?
Average: 10
Seller Details
Company Website
Year Founded
2008
HQ Location
Geneva, Switzerland
Twitter
@SonarSource
10,279 Twitter followers
LinkedIn® Page
www.linkedin.com
653 employees on LinkedIn®
By Typo
(112)4.7 out of 5
Save to My Lists
Entry Level Price:Free
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    Typo is an AI-driven software engineering intelligence platform that enables dev teams with real-time SDLC visibility, automated code reviews & DevEX insights to code better, deploy faster & s

    Users
    • Software Engineer
    Industries
    • Computer Software
    • Information Technology and Services
    Market Segment
    • 46% Small-Business
    • 43% Mid-Market
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • Typo Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Metrics
    23
    Metrics Analysis
    21
    Insights
    17
    Customer Support
    13
    Team Collaboration
    13
    Cons
    Metrics Issues
    6
    Missing Features
    6
    Complex Configuration
    4
    Data Inaccuracy
    4
    Lack of Customization
    4
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • Typo features and usability ratings that predict user satisfaction
    9.1
    Has the product been a good partner in doing business?
    Average: 8.8
    9.0
    Ease of Admin
    Average: 8.5
    9.2
    Ease of Use
    Average: 8.6
    7.3
    What is your organization's estimated ROI on the product (payback period in months)?
    Average: 10
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Seller
    Typo
    Company Website
    Year Founded
    2020
    HQ Location
    Dover, US
    Twitter
    @Typoapp_
    64 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    54 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

Typo is an AI-driven software engineering intelligence platform that enables dev teams with real-time SDLC visibility, automated code reviews & DevEX insights to code better, deploy faster & s

Users
  • Software Engineer
Industries
  • Computer Software
  • Information Technology and Services
Market Segment
  • 46% Small-Business
  • 43% Mid-Market
Typo Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Metrics
23
Metrics Analysis
21
Insights
17
Customer Support
13
Team Collaboration
13
Cons
Metrics Issues
6
Missing Features
6
Complex Configuration
4
Data Inaccuracy
4
Lack of Customization
4
Typo features and usability ratings that predict user satisfaction
9.1
Has the product been a good partner in doing business?
Average: 8.8
9.0
Ease of Admin
Average: 8.5
9.2
Ease of Use
Average: 8.6
7.3
What is your organization's estimated ROI on the product (payback period in months)?
Average: 10
Seller Details
Seller
Typo
Company Website
Year Founded
2020
HQ Location
Dover, US
Twitter
@Typoapp_
64 Twitter followers
LinkedIn® Page
www.linkedin.com
54 employees on LinkedIn®

This is how G2 Deals can help you:

  • Easily shop for curated – and trusted – software
  • Own your own software buying journey
  • Discover exclusive deals on software
(28)4.6 out of 5
5th Easiest To Use in Static Code Analysis software
Save to My Lists
Entry Level Price:Free
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    Codacy Helps Build High Quality, Secure Applications. You can get up and running effortlessly and start increasing quality, test coverage, and security today. Codacy is a plug-and-play solution to qu

    Users
    No information available
    Industries
    • Computer Software
    Market Segment
    • 61% Small-Business
    • 21% Mid-Market
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • Codacy Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Security
    2
    Automation
    1
    Automation Testing
    1
    Code Quality
    1
    Customer Support
    1
    Cons
    Expensive
    1
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • Codacy features and usability ratings that predict user satisfaction
    9.1
    Has the product been a good partner in doing business?
    Average: 8.8
    8.9
    Ease of Admin
    Average: 8.5
    9.2
    Ease of Use
    Average: 8.6
    10.0
    What is your organization's estimated ROI on the product (payback period in months)?
    Average: 10
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Seller
    Codacy
    Year Founded
    2012
    HQ Location
    Lisbon, Lisboa
    Twitter
    @codacy
    4,931 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    68 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

Codacy Helps Build High Quality, Secure Applications. You can get up and running effortlessly and start increasing quality, test coverage, and security today. Codacy is a plug-and-play solution to qu

Users
No information available
Industries
  • Computer Software
Market Segment
  • 61% Small-Business
  • 21% Mid-Market
Codacy Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Security
2
Automation
1
Automation Testing
1
Code Quality
1
Customer Support
1
Cons
Expensive
1
Codacy features and usability ratings that predict user satisfaction
9.1
Has the product been a good partner in doing business?
Average: 8.8
8.9
Ease of Admin
Average: 8.5
9.2
Ease of Use
Average: 8.6
10.0
What is your organization's estimated ROI on the product (payback period in months)?
Average: 10
Seller Details
Seller
Codacy
Year Founded
2012
HQ Location
Lisbon, Lisboa
Twitter
@codacy
4,931 Twitter followers
LinkedIn® Page
www.linkedin.com
68 employees on LinkedIn®
Entry Level Price:Free
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    Visual Assist (VA) is a productivity plugin for Microsoft's Visual Studio developed by Whole Tomato Software. VA has been enhancing the overall IDE experience for thousands of C/C++ and C# developers

    Users
    No information available
    Industries
    • Computer Games
    • Computer Software
    Market Segment
    • 67% Small-Business
    • 22% Mid-Market
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • VISUAL ASSIST features and usability ratings that predict user satisfaction
    10.0
    Has the product been a good partner in doing business?
    Average: 8.8
    10.0
    Ease of Admin
    Average: 8.5
    9.1
    Ease of Use
    Average: 8.6
    0.0
    No information available
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Year Founded
    1999
    HQ Location
    Houston, TX
    Twitter
    @MigrationWiz
    500 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    66 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

Visual Assist (VA) is a productivity plugin for Microsoft's Visual Studio developed by Whole Tomato Software. VA has been enhancing the overall IDE experience for thousands of C/C++ and C# developers

Users
No information available
Industries
  • Computer Games
  • Computer Software
Market Segment
  • 67% Small-Business
  • 22% Mid-Market
VISUAL ASSIST features and usability ratings that predict user satisfaction
10.0
Has the product been a good partner in doing business?
Average: 8.8
10.0
Ease of Admin
Average: 8.5
9.1
Ease of Use
Average: 8.6
0.0
No information available
Seller Details
Year Founded
1999
HQ Location
Houston, TX
Twitter
@MigrationWiz
500 Twitter followers
LinkedIn® Page
www.linkedin.com
66 employees on LinkedIn®
(35)4.2 out of 5
9th Easiest To Use in Static Code Analysis software
Save to My Lists
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    Checkmarx is constantly pushing the boundaries of Application Security (AppSec) Testing to make security seamless and simple for the world’s developers while giving CISOs the confidence and control th

    Users
    No information available
    Industries
    • Information Technology and Services
    • Computer Software
    Market Segment
    • 57% Enterprise
    • 26% Mid-Market
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • Checkmarx Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Features
    3
    CD Integration
    2
    CI
    2
    Ease of Use
    2
    User Interface
    2
    Cons
    Difficult Customization
    1
    Expensive
    1
    False Positives
    1
    Poor Customer Support
    1
    Poor Navigation
    1
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • Checkmarx features and usability ratings that predict user satisfaction
    8.3
    Has the product been a good partner in doing business?
    Average: 8.8
    7.9
    Ease of Admin
    Average: 8.5
    8.2
    Ease of Use
    Average: 8.6
    10.0
    What is your organization's estimated ROI on the product (payback period in months)?
    Average: 10
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Year Founded
    2006
    HQ Location
    Paramus, NJ
    Twitter
    @Checkmarx
    7,213 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    902 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

Checkmarx is constantly pushing the boundaries of Application Security (AppSec) Testing to make security seamless and simple for the world’s developers while giving CISOs the confidence and control th

Users
No information available
Industries
  • Information Technology and Services
  • Computer Software
Market Segment
  • 57% Enterprise
  • 26% Mid-Market
Checkmarx Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Features
3
CD Integration
2
CI
2
Ease of Use
2
User Interface
2
Cons
Difficult Customization
1
Expensive
1
False Positives
1
Poor Customer Support
1
Poor Navigation
1
Checkmarx features and usability ratings that predict user satisfaction
8.3
Has the product been a good partner in doing business?
Average: 8.8
7.9
Ease of Admin
Average: 8.5
8.2
Ease of Use
Average: 8.6
10.0
What is your organization's estimated ROI on the product (payback period in months)?
Average: 10
Seller Details
Year Founded
2006
HQ Location
Paramus, NJ
Twitter
@Checkmarx
7,213 Twitter followers
LinkedIn® Page
www.linkedin.com
902 employees on LinkedIn®
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    Fortify Static Code Analyzer is designed to identify security vulnerabilities in the user's source code early in the software development lifecycle and provides best practices so developers can code m

    Users
    No information available
    Industries
    • Financial Services
    • Banking
    Market Segment
    • 50% Enterprise
    • 29% Small-Business
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • OpenText Fortify Static Code Analyzer Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Easy Integrations
    1
    Integrations
    1
    Integration Support
    1
    Cons
    False Positives
    1
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • OpenText Fortify Static Code Analyzer features and usability ratings that predict user satisfaction
    8.5
    Has the product been a good partner in doing business?
    Average: 8.8
    8.1
    Ease of Admin
    Average: 8.5
    8.7
    Ease of Use
    Average: 8.6
    10.0
    What is your organization's estimated ROI on the product (payback period in months)?
    Average: 10
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Seller
    OpenText
    Year Founded
    1991
    HQ Location
    Waterloo, ON
    Twitter
    @OpenText
    21,942 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    22,114 employees on LinkedIn®
    Ownership
    NASDAQ:OTEX
Product Description
How are these determined?Information
This description is provided by the seller.

Fortify Static Code Analyzer is designed to identify security vulnerabilities in the user's source code early in the software development lifecycle and provides best practices so developers can code m

Users
No information available
Industries
  • Financial Services
  • Banking
Market Segment
  • 50% Enterprise
  • 29% Small-Business
OpenText Fortify Static Code Analyzer Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Easy Integrations
1
Integrations
1
Integration Support
1
Cons
False Positives
1
OpenText Fortify Static Code Analyzer features and usability ratings that predict user satisfaction
8.5
Has the product been a good partner in doing business?
Average: 8.8
8.1
Ease of Admin
Average: 8.5
8.7
Ease of Use
Average: 8.6
10.0
What is your organization's estimated ROI on the product (payback period in months)?
Average: 10
Seller Details
Seller
OpenText
Year Founded
1991
HQ Location
Waterloo, ON
Twitter
@OpenText
21,942 Twitter followers
LinkedIn® Page
www.linkedin.com
22,114 employees on LinkedIn®
Ownership
NASDAQ:OTEX
Entry Level Price:Starting at $7,000.00
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    CAST Imaging helps architects and developers understand, change, and modernize applications. It automatically reverse-engineers all database structures, code components, and interdependencies in any c

    Users
    No information available
    Industries
    • Information Technology and Services
    Market Segment
    • 57% Enterprise
    • 27% Small-Business
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • CAST Imaging features and usability ratings that predict user satisfaction
    8.5
    Has the product been a good partner in doing business?
    Average: 8.8
    7.4
    Ease of Admin
    Average: 8.5
    8.0
    Ease of Use
    Average: 8.6
    10.0
    What is your organization's estimated ROI on the product (payback period in months)?
    Average: 10
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Seller
    CAST
    Company Website
    Year Founded
    1990
    HQ Location
    New York
    Twitter
    @SW_Intelligence
    1,864 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    1,205 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

CAST Imaging helps architects and developers understand, change, and modernize applications. It automatically reverse-engineers all database structures, code components, and interdependencies in any c

Users
No information available
Industries
  • Information Technology and Services
Market Segment
  • 57% Enterprise
  • 27% Small-Business
CAST Imaging features and usability ratings that predict user satisfaction
8.5
Has the product been a good partner in doing business?
Average: 8.8
7.4
Ease of Admin
Average: 8.5
8.0
Ease of Use
Average: 8.6
10.0
What is your organization's estimated ROI on the product (payback period in months)?
Average: 10
Seller Details
Seller
CAST
Company Website
Year Founded
1990
HQ Location
New York
Twitter
@SW_Intelligence
1,864 Twitter followers
LinkedIn® Page
www.linkedin.com
1,205 employees on LinkedIn®
(15)4.5 out of 5
1st Easiest To Use in Static Code Analysis software
Save to My Lists
Entry Level Price:Free
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    SonarQube Cloud (formerly SonarCloud) is a SaaS code analysis tool, designed to detect coding issues in 30+ languages, frameworks, and IaC platforms. The solution also provides fix recommendations lev

    Users
    No information available
    Industries
    No information available
    Market Segment
    • 53% Mid-Market
    • 27% Enterprise
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • SonarQube Cloud (formerly SonarCloud) Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Integration Support
    6
    Easy Integrations
    5
    Git Integration
    5
    Integrations
    5
    Security
    5
    Cons
    Complex Configuration
    5
    Inefficient Scanning
    4
    Slow Scanning
    4
    Complex Setup
    3
    Setup Difficulty
    3
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • SonarQube Cloud (formerly SonarCloud) features and usability ratings that predict user satisfaction
    9.3
    Has the product been a good partner in doing business?
    Average: 8.8
    9.6
    Ease of Admin
    Average: 8.5
    8.6
    Ease of Use
    Average: 8.6
    10.0
    What is your organization's estimated ROI on the product (payback period in months)?
    Average: 10
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Company Website
    Year Founded
    2008
    HQ Location
    Geneva, Switzerland
    Twitter
    @SonarSource
    10,279 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    653 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

SonarQube Cloud (formerly SonarCloud) is a SaaS code analysis tool, designed to detect coding issues in 30+ languages, frameworks, and IaC platforms. The solution also provides fix recommendations lev

Users
No information available
Industries
No information available
Market Segment
  • 53% Mid-Market
  • 27% Enterprise
SonarQube Cloud (formerly SonarCloud) Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Integration Support
6
Easy Integrations
5
Git Integration
5
Integrations
5
Security
5
Cons
Complex Configuration
5
Inefficient Scanning
4
Slow Scanning
4
Complex Setup
3
Setup Difficulty
3
SonarQube Cloud (formerly SonarCloud) features and usability ratings that predict user satisfaction
9.3
Has the product been a good partner in doing business?
Average: 8.8
9.6
Ease of Admin
Average: 8.5
8.6
Ease of Use
Average: 8.6
10.0
What is your organization's estimated ROI on the product (payback period in months)?
Average: 10
Seller Details
Company Website
Year Founded
2008
HQ Location
Geneva, Switzerland
Twitter
@SonarSource
10,279 Twitter followers
LinkedIn® Page
www.linkedin.com
653 employees on LinkedIn®
(85)4.5 out of 5
8th Easiest To Use in Static Code Analysis software
Save to My Lists
Entry Level Price:Free
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    ReSharper is a renowned productivity tool that turns Microsoft Visual Studio into a much better IDE. Both individual .NET developers and teams rely on ReSharper to write and maintain code in a more ma

    Users
    • Software Engineer
    • Software Developer
    Industries
    • Computer Software
    • Information Technology and Services
    Market Segment
    • 39% Small-Business
    • 38% Mid-Market
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • ReSharper features and usability ratings that predict user satisfaction
    8.7
    Has the product been a good partner in doing business?
    Average: 8.8
    8.3
    Ease of Admin
    Average: 8.5
    8.8
    Ease of Use
    Average: 8.6
    10.0
    What is your organization's estimated ROI on the product (payback period in months)?
    Average: 10
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Seller
    JetBrains
    Year Founded
    2000
    HQ Location
    Prague
    Twitter
    @jetbrains
    201,203 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    2,214 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

ReSharper is a renowned productivity tool that turns Microsoft Visual Studio into a much better IDE. Both individual .NET developers and teams rely on ReSharper to write and maintain code in a more ma

Users
  • Software Engineer
  • Software Developer
Industries
  • Computer Software
  • Information Technology and Services
Market Segment
  • 39% Small-Business
  • 38% Mid-Market
ReSharper features and usability ratings that predict user satisfaction
8.7
Has the product been a good partner in doing business?
Average: 8.8
8.3
Ease of Admin
Average: 8.5
8.8
Ease of Use
Average: 8.6
10.0
What is your organization's estimated ROI on the product (payback period in months)?
Average: 10
Seller Details
Seller
JetBrains
Year Founded
2000
HQ Location
Prague
Twitter
@jetbrains
201,203 Twitter followers
LinkedIn® Page
www.linkedin.com
2,214 employees on LinkedIn®
Entry Level Price:Free
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    CodeScene is a code analysis, visualization, and reporting tool. Cross reference contextual factors such as code quality, team dynamics, and delivery output to get actionable insights to effectively r

    Users
    No information available
    Industries
    • Computer Software
    Market Segment
    • 47% Mid-Market
    • 33% Small-Business
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • CodeScene Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Code Quality
    17
    Features
    12
    Issue Identification
    8
    Engineering Practices
    7
    PR Reviews
    7
    Cons
    Difficult Learning
    5
    Complex Configuration
    4
    Complex User Interface
    3
    Confusing Interface
    3
    Learning Difficulty
    3
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • CodeScene features and usability ratings that predict user satisfaction
    9.4
    Has the product been a good partner in doing business?
    Average: 8.8
    8.3
    Ease of Admin
    Average: 8.5
    8.0
    Ease of Use
    Average: 8.6
    10.0
    What is your organization's estimated ROI on the product (payback period in months)?
    Average: 10
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Company Website
    Year Founded
    2015
    HQ Location
    Malmö, SE
    Twitter
    @codescene
    1,244 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    35 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

CodeScene is a code analysis, visualization, and reporting tool. Cross reference contextual factors such as code quality, team dynamics, and delivery output to get actionable insights to effectively r

Users
No information available
Industries
  • Computer Software
Market Segment
  • 47% Mid-Market
  • 33% Small-Business
CodeScene Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Code Quality
17
Features
12
Issue Identification
8
Engineering Practices
7
PR Reviews
7
Cons
Difficult Learning
5
Complex Configuration
4
Complex User Interface
3
Confusing Interface
3
Learning Difficulty
3
CodeScene features and usability ratings that predict user satisfaction
9.4
Has the product been a good partner in doing business?
Average: 8.8
8.3
Ease of Admin
Average: 8.5
8.0
Ease of Use
Average: 8.6
10.0
What is your organization's estimated ROI on the product (payback period in months)?
Average: 10
Seller Details
Company Website
Year Founded
2015
HQ Location
Malmö, SE
Twitter
@codescene
1,244 Twitter followers
LinkedIn® Page
www.linkedin.com
35 employees on LinkedIn®
(30)4.4 out of 5
2nd Easiest To Use in Static Code Analysis software
Save to My Lists
Entry Level Price:From $599
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    Kiuwan is a robust, end-to-end application security platform that integrates seamlessly into your development process. Our toolset includes Static Application Security Testing (SAST), Software Composi

    Users
    No information available
    Industries
    • Information Technology and Services
    Market Segment
    • 43% Enterprise
    • 37% Mid-Market
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • Kiuwan Code Security & Insights Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Ease of Use
    3
    Customer Support
    2
    Flexibility
    2
    Vulnerability Detection
    2
    Vulnerability Identification
    2
    Cons
    Inefficiency
    1
    Poor Customer Support
    1
    Scanning Issues
    1
    Slow Performance
    1
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • Kiuwan Code Security & Insights features and usability ratings that predict user satisfaction
    8.9
    Has the product been a good partner in doing business?
    Average: 8.8
    8.6
    Ease of Admin
    Average: 8.5
    8.5
    Ease of Use
    Average: 8.6
    10.0
    What is your organization's estimated ROI on the product (payback period in months)?
    Average: 10
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Seller
    Kiuwan
    Year Founded
    2012
    HQ Location
    Houston, TX
    Twitter
    @Kiuwan
    3,448 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    26 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

Kiuwan is a robust, end-to-end application security platform that integrates seamlessly into your development process. Our toolset includes Static Application Security Testing (SAST), Software Composi

Users
No information available
Industries
  • Information Technology and Services
Market Segment
  • 43% Enterprise
  • 37% Mid-Market
Kiuwan Code Security & Insights Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Ease of Use
3
Customer Support
2
Flexibility
2
Vulnerability Detection
2
Vulnerability Identification
2
Cons
Inefficiency
1
Poor Customer Support
1
Scanning Issues
1
Slow Performance
1
Kiuwan Code Security & Insights features and usability ratings that predict user satisfaction
8.9
Has the product been a good partner in doing business?
Average: 8.8
8.6
Ease of Admin
Average: 8.5
8.5
Ease of Use
Average: 8.6
10.0
What is your organization's estimated ROI on the product (payback period in months)?
Average: 10
Seller Details
Seller
Kiuwan
Year Founded
2012
HQ Location
Houston, TX
Twitter
@Kiuwan
3,448 Twitter followers
LinkedIn® Page
www.linkedin.com
26 employees on LinkedIn®
(31)4.6 out of 5
View top Consulting Services for Semgrep
Save to My Lists
Entry Level Price:$40.00
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    Semgrep is a highly customizable application security platform built for security engineers and developers. Semgrep scans first and third-party code to find security issues unique to an organization,

    Users
    No information available
    Industries
    • Computer Software
    • Information Technology and Services
    Market Segment
    • 58% Mid-Market
    • 29% Enterprise
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • Semgrep Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Custom Rules
    4
    Features
    4
    Automated Scanning
    3
    Ease of Use
    3
    Easy Integrations
    3
    Cons
    Scanning Issues
    3
    False Positives
    2
    Inaccuracy
    2
    Bug Issues
    1
    Dependency Issues
    1
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • Semgrep features and usability ratings that predict user satisfaction
    9.5
    Has the product been a good partner in doing business?
    Average: 8.8
    9.2
    Ease of Admin
    Average: 8.5
    9.3
    Ease of Use
    Average: 8.6
    10.0
    What is your organization's estimated ROI on the product (payback period in months)?
    Average: 10
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Seller
    Semgrep
    Year Founded
    2017
    HQ Location
    San Francisco, US
    Twitter
    @semgrep
    3,487 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    170 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

Semgrep is a highly customizable application security platform built for security engineers and developers. Semgrep scans first and third-party code to find security issues unique to an organization,

Users
No information available
Industries
  • Computer Software
  • Information Technology and Services
Market Segment
  • 58% Mid-Market
  • 29% Enterprise
Semgrep Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Custom Rules
4
Features
4
Automated Scanning
3
Ease of Use
3
Easy Integrations
3
Cons
Scanning Issues
3
False Positives
2
Inaccuracy
2
Bug Issues
1
Dependency Issues
1
Semgrep features and usability ratings that predict user satisfaction
9.5
Has the product been a good partner in doing business?
Average: 8.8
9.2
Ease of Admin
Average: 8.5
9.3
Ease of Use
Average: 8.6
10.0
What is your organization's estimated ROI on the product (payback period in months)?
Average: 10
Seller Details
Seller
Semgrep
Year Founded
2017
HQ Location
San Francisco, US
Twitter
@semgrep
3,487 Twitter followers
LinkedIn® Page
www.linkedin.com
170 employees on LinkedIn®
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    The Closure Compiler is a tool for making JavaScript download and run faster. Instead of compiling from a source language to machine code, it compiles from JavaScript to better JavaScript.

    Users
    No information available
    Industries
    No information available
    Market Segment
    • 46% Small-Business
    • 38% Mid-Market
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • Closure Compiler features and usability ratings that predict user satisfaction
    8.3
    Has the product been a good partner in doing business?
    Average: 8.8
    10.0
    Ease of Admin
    Average: 8.5
    8.2
    Ease of Use
    Average: 8.6
    10.0
    What is your organization's estimated ROI on the product (payback period in months)?
    Average: 10
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Seller
    Google
    Year Founded
    1998
    HQ Location
    Mountain View, CA
    Twitter
    @google
    32,520,271 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    301,875 employees on LinkedIn®
    Ownership
    NASDAQ:GOOG
Product Description
How are these determined?Information
This description is provided by the seller.

The Closure Compiler is a tool for making JavaScript download and run faster. Instead of compiling from a source language to machine code, it compiles from JavaScript to better JavaScript.

Users
No information available
Industries
No information available
Market Segment
  • 46% Small-Business
  • 38% Mid-Market
Closure Compiler features and usability ratings that predict user satisfaction
8.3
Has the product been a good partner in doing business?
Average: 8.8
10.0
Ease of Admin
Average: 8.5
8.2
Ease of Use
Average: 8.6
10.0
What is your organization's estimated ROI on the product (payback period in months)?
Average: 10
Seller Details
Seller
Google
Year Founded
1998
HQ Location
Mountain View, CA
Twitter
@google
32,520,271 Twitter followers
LinkedIn® Page
www.linkedin.com
301,875 employees on LinkedIn®
Ownership
NASDAQ:GOOG
Entry Level Price:$8.00
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    DeepSource is an all-in-one code health platform that equips organizations with everything they need to build maintainable and secure software while elevating the velocity of their software developmen

    Users
    No information available
    Industries
    • Computer Software
    Market Segment
    • 82% Small-Business
    • 9% Enterprise
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • DeepSource features and usability ratings that predict user satisfaction
    9.6
    Has the product been a good partner in doing business?
    Average: 8.8
    10.0
    Ease of Admin
    Average: 8.5
    9.3
    Ease of Use
    Average: 8.6
    3.3
    What is your organization's estimated ROI on the product (payback period in months)?
    Average: 10
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Year Founded
    2018
    HQ Location
    San Francisco, California
    Twitter
    @DeepSourceHQ
    1,699 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    14 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

DeepSource is an all-in-one code health platform that equips organizations with everything they need to build maintainable and secure software while elevating the velocity of their software developmen

Users
No information available
Industries
  • Computer Software
Market Segment
  • 82% Small-Business
  • 9% Enterprise
DeepSource features and usability ratings that predict user satisfaction
9.6
Has the product been a good partner in doing business?
Average: 8.8
10.0
Ease of Admin
Average: 8.5
9.3
Ease of Use
Average: 8.6
3.3
What is your organization's estimated ROI on the product (payback period in months)?
Average: 10
Seller Details
Year Founded
2018
HQ Location
San Francisco, California
Twitter
@DeepSourceHQ
1,699 Twitter followers
LinkedIn® Page
www.linkedin.com
14 employees on LinkedIn®
(56)4.2 out of 5
12th Easiest To Use in Static Code Analysis software
Save to My Lists
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    Coverity® is a fast, accurate, and highly scalable static analysis (SAST) solution that helps development and security teams address security and quality defects early in the software development life

    Users
    • Software Engineer
    Industries
    • Computer Software
    • Information Technology and Services
    Market Segment
    • 64% Enterprise
    • 27% Mid-Market
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • Coverity Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Accuracy
    1
    Vulnerability Detection
    1
    Cons
    Limited Features
    1
    Missing Features
    1
    Poor Customer Support
    1
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • Coverity features and usability ratings that predict user satisfaction
    8.1
    Has the product been a good partner in doing business?
    Average: 8.8
    8.2
    Ease of Admin
    Average: 8.5
    8.4
    Ease of Use
    Average: 8.6
    10.0
    What is your organization's estimated ROI on the product (payback period in months)?
    Average: 10
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Seller
    Synopsys
    Year Founded
    1986
    HQ Location
    Mountain View, CA
    Twitter
    @synopsys
    22,849 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    19,499 employees on LinkedIn®
    Ownership
    NASDAQ:SNPS
Product Description
How are these determined?Information
This description is provided by the seller.

Coverity® is a fast, accurate, and highly scalable static analysis (SAST) solution that helps development and security teams address security and quality defects early in the software development life

Users
  • Software Engineer
Industries
  • Computer Software
  • Information Technology and Services
Market Segment
  • 64% Enterprise
  • 27% Mid-Market
Coverity Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Accuracy
1
Vulnerability Detection
1
Cons
Limited Features
1
Missing Features
1
Poor Customer Support
1
Coverity features and usability ratings that predict user satisfaction
8.1
Has the product been a good partner in doing business?
Average: 8.8
8.2
Ease of Admin
Average: 8.5
8.4
Ease of Use
Average: 8.6
10.0
What is your organization's estimated ROI on the product (payback period in months)?
Average: 10
Seller Details
Seller
Synopsys
Year Founded
1986
HQ Location
Mountain View, CA
Twitter
@synopsys
22,849 Twitter followers
LinkedIn® Page
www.linkedin.com
19,499 employees on LinkedIn®
Ownership
NASDAQ:SNPS

Learn More About Static Code Analysis Tools

What is Static Code Analysis Software?

Static code analysis is a debugging and quality assurance method that inspects a computer program’s code without executing the program. Static code analysis software scans code to identify security vulnerabilities, catch bugs, and ensure the code adheres to industry standards. These tools help software developers automate the core aspects of program comprehension. Rather than manually combing through lines of code with visual inspection alone, developers and programmers can rely on static code analysis software’s automatic scans and alerts to gain deeper insight into their code. This automation decreases software developers overall workload and frees up resources by streamlining the debugging and quality assurance process.

Static code analysis software serves as an automated standardization check in many different development environments. A common concern among development teams is code readability—if developer A writes a chunk of code which is passed to developer B, that code must be comprehensible and easy to digest. Constantly checking code against the industry standard or even custom best practices, static code analysis software helps software developers keep their code consistent to improve team collaboration.

Ideally, static code analysis software does more than save developers time, it greatly enhances the quality of their debugging processes. Manual code inspection is both time-consuming and subject to human error. Oftentimes, developers don’t find bugs until they manifest themselves post-deployment. Static code analysis software helps find and alert developers to the existence of bugs months before they can manifest in a deployed application. Static code analysis software ensures cleaner, higher-quality releases by minimizing bugs and errors, enhancing cybersecurity, and promoting coding best practices.

Key Benefits of Static Code Analysis Software

  • Fewer undetected bugs upon deployment
  • Save software developers time and resources
  • Minimize human error
  • Facilitate best industry or custom practices
  • Promote DevOps security by ensuring more secure applications

Why Use Static Code Analysis Software?

Reduced workload — Since static code analysis software runs automated scans, developers are free to spend more time working on new code and less time combing through existing code. Static code analysis automatically hunts down and alerts users to bad code. This means that software developers don’t have to spend time and resources manually combing through lines and lines of code.

Thorough debugging — Software developers are all too familiar with bugs that don’t show themselves known until months, or even years after an application’s release. Often, finding bugs via manual code inspection relies on running the code and hoping an error reveals itself during quality assurance testing. However, with static code analysis software, developers can find and resolve bugs that would otherwise have been hidden in the code allowing for cleaner deployments and less issues down the line.

Standardized best practices — Beyond debugging, static code analysis software checks code against industry standard benchmarks for best practices. This standardized regulation keeps teams on the same page by ensuring that everyone’s code is clear and optimized. Additionally, some software allows users to customize best practices to fit the specifications of their company or department.

Better security — Static code analysis software is often capable of finding and alerting developers of security vulnerabilities in their code. Developers can prioritize cybersecurity thanks to static code analysis.

What are the Common Features of Static Code Analysis Software?

Integrated development environment (IDE) integration — Most static code analysis software integrates with developers’ IDEs to provide a seamless solution within a pre-existing development environment. This integration means developers can continuously scan their code without interrupting their workflow.

Timely alerts — Because static code analysis software can scan code for bugs and vulnerabilities in a matter of seconds, developers receive timely alerts that help them enhance work efficiency. These timely alerts also help users react appropriately to bugs early on, saving them time and stress later.

Recommendations — Beyond alerting developers to code issues, static code analysis software generates actionable recommendations based on different errors or vulnerabilities that are detected. These suggestions give developer a starting point to resolve various problems, which saves time and mental energy.

Static Code Analysis Tools for Programming Languages and Features: C#, C/C++, Java, .NET, PHP, Python, Ruby, Salesforce