Best Static Code Analysis Tools

AC
Researched and written by Adam Crivello

Static code analysis is the analysis of computer software performed without actually executing the code. Static code analysis tools scan all code in a project and seek out vulnerabilities, validates code against industry best practices, and some software tools validate against company-specific project specifications. Static code analysis tools are used by software development and quality assurance teams to ensure the quality and security of code, and that project requirements are met. Static code analysis is a type of source code management and can integrate with version control systems and through build automation tasks using continuous integration software.

To qualify as a static code analysis tool, a product must:

Scan code without executing that code
List security vulnerabilities after scanning
Validate code against industry best practices
Provide recommendations on where and how to fix issues

Best Static Code Analysis Tools At A Glance

Highest Performer:
Best Contender:
Most Niche:
Most Trending:
Show LessShow More
Best Contender:
Most Niche:
Most Trending:

G2 takes pride in showing unbiased reviews on user satisfaction in our ratings and reports. We do not allow paid placements in any of our ratings, rankings, or reports. Learn about our scoring methodologies.

No filters applied
114 Listings in Static Code Analysis Available
Entry Level Price:Free
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    SonarQube Server is a self-managed static code analysis tool that ensures all developer-written and AI-generated code meets the highest coding standards. By integrating with the top DevOps platforms i

    Users
    • Software Engineer
    Industries
    • Computer Software
    • Information Technology and Services
    Market Segment
    • 44% Enterprise
    • 36% Mid-Market
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • SonarQube Server (formerly SonarQube) Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Code Quality
    17
    Features
    15
    Ease of Use
    12
    Integrations
    10
    Issue Identification
    10
    Cons
    Limited Features
    10
    Complex Configuration
    6
    Complex Setup
    6
    Expensive
    6
    Missing Features
    6
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • SonarQube Server (formerly SonarQube) features and usability ratings that predict user satisfaction
    8.3
    Has the product been a good partner in doing business?
    Average: 8.7
    8.3
    Ease of Admin
    Average: 8.5
    8.3
    Ease of Use
    Average: 8.6
    10.0
    What is your organization's estimated ROI on the product (payback period in months)?
    Average: 10
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Company Website
    Year Founded
    2008
    HQ Location
    Geneva, Switzerland
    Twitter
    @SonarSource
    10,254 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    653 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

SonarQube Server is a self-managed static code analysis tool that ensures all developer-written and AI-generated code meets the highest coding standards. By integrating with the top DevOps platforms i

Users
  • Software Engineer
Industries
  • Computer Software
  • Information Technology and Services
Market Segment
  • 44% Enterprise
  • 36% Mid-Market
SonarQube Server (formerly SonarQube) Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Code Quality
17
Features
15
Ease of Use
12
Integrations
10
Issue Identification
10
Cons
Limited Features
10
Complex Configuration
6
Complex Setup
6
Expensive
6
Missing Features
6
SonarQube Server (formerly SonarQube) features and usability ratings that predict user satisfaction
8.3
Has the product been a good partner in doing business?
Average: 8.7
8.3
Ease of Admin
Average: 8.5
8.3
Ease of Use
Average: 8.6
10.0
What is your organization's estimated ROI on the product (payback period in months)?
Average: 10
Seller Details
Company Website
Year Founded
2008
HQ Location
Geneva, Switzerland
Twitter
@SonarSource
10,254 Twitter followers
LinkedIn® Page
www.linkedin.com
653 employees on LinkedIn®
Entry Level Price:Free
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    Typo is an AI-driven software engineering intelligence platform that enables dev teams with real-time SDLC visibility, automated code reviews & DevEX insights to code better, deploy faster & s

    Users
    • Software Engineer
    Industries
    • Computer Software
    • Information Technology and Services
    Market Segment
    • 47% Small-Business
    • 43% Mid-Market
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • Typo Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Metrics
    23
    Metrics Analysis
    21
    Insights
    17
    Customer Support
    14
    Team Collaboration
    14
    Cons
    Metrics Issues
    6
    Missing Features
    6
    Complex Configuration
    4
    Data Inaccuracy
    4
    Lack of Customization
    4
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • Typo features and usability ratings that predict user satisfaction
    9.2
    Has the product been a good partner in doing business?
    Average: 8.7
    8.9
    Ease of Admin
    Average: 8.5
    9.1
    Ease of Use
    Average: 8.6
    9.4
    What is your organization's estimated ROI on the product (payback period in months)?
    Average: 10
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Seller
    Typo
    Company Website
    Year Founded
    2020
    HQ Location
    Dover, US
    Twitter
    @Typoapp_
    64 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    54 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

Typo is an AI-driven software engineering intelligence platform that enables dev teams with real-time SDLC visibility, automated code reviews & DevEX insights to code better, deploy faster & s

Users
  • Software Engineer
Industries
  • Computer Software
  • Information Technology and Services
Market Segment
  • 47% Small-Business
  • 43% Mid-Market
Typo Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Metrics
23
Metrics Analysis
21
Insights
17
Customer Support
14
Team Collaboration
14
Cons
Metrics Issues
6
Missing Features
6
Complex Configuration
4
Data Inaccuracy
4
Lack of Customization
4
Typo features and usability ratings that predict user satisfaction
9.2
Has the product been a good partner in doing business?
Average: 8.7
8.9
Ease of Admin
Average: 8.5
9.1
Ease of Use
Average: 8.6
9.4
What is your organization's estimated ROI on the product (payback period in months)?
Average: 10
Seller Details
Seller
Typo
Company Website
Year Founded
2020
HQ Location
Dover, US
Twitter
@Typoapp_
64 Twitter followers
LinkedIn® Page
www.linkedin.com
54 employees on LinkedIn®

This is how G2 Deals can help you:

  • Easily shop for curated – and trusted – software
  • Own your own software buying journey
  • Discover exclusive deals on software
Entry Level Price:Free
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    Visual Assist (VA) is a productivity plugin for Microsoft's Visual Studio developed by Whole Tomato Software. VA has been enhancing the overall IDE experience for thousands of C/C++ and C# developers

    Users
    No information available
    Industries
    • Computer Games
    • Computer Software
    Market Segment
    • 67% Small-Business
    • 22% Mid-Market
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • VISUAL ASSIST features and usability ratings that predict user satisfaction
    10.0
    Has the product been a good partner in doing business?
    Average: 8.7
    10.0
    Ease of Admin
    Average: 8.5
    9.1
    Ease of Use
    Average: 8.6
    0.0
    No information available
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Year Founded
    1999
    HQ Location
    Houston, TX
    Twitter
    @MigrationWiz
    498 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    66 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

Visual Assist (VA) is a productivity plugin for Microsoft's Visual Studio developed by Whole Tomato Software. VA has been enhancing the overall IDE experience for thousands of C/C++ and C# developers

Users
No information available
Industries
  • Computer Games
  • Computer Software
Market Segment
  • 67% Small-Business
  • 22% Mid-Market
VISUAL ASSIST features and usability ratings that predict user satisfaction
10.0
Has the product been a good partner in doing business?
Average: 8.7
10.0
Ease of Admin
Average: 8.5
9.1
Ease of Use
Average: 8.6
0.0
No information available
Seller Details
Year Founded
1999
HQ Location
Houston, TX
Twitter
@MigrationWiz
498 Twitter followers
LinkedIn® Page
www.linkedin.com
66 employees on LinkedIn®
(28)4.6 out of 5
5th Easiest To Use in Static Code Analysis software
Save to My Lists
Entry Level Price:Free
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    Codacy is the only DevSecOps platform that delivers plug-and-play code health and security scanning for AI and human generated code. Future-proof your software – from source code to runtime – without

    Users
    No information available
    Industries
    • Computer Software
    Market Segment
    • 61% Small-Business
    • 21% Mid-Market
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • Codacy Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Security
    2
    Automation
    1
    Automation Testing
    1
    Code Quality
    1
    Customer Support
    1
    Cons
    Expensive
    1
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • Codacy features and usability ratings that predict user satisfaction
    9.1
    Has the product been a good partner in doing business?
    Average: 8.7
    8.9
    Ease of Admin
    Average: 8.5
    9.2
    Ease of Use
    Average: 8.6
    10.0
    What is your organization's estimated ROI on the product (payback period in months)?
    Average: 10
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Seller
    Codacy
    Year Founded
    2012
    HQ Location
    Lisbon, Lisboa
    Twitter
    @codacy
    4,911 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    68 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

Codacy is the only DevSecOps platform that delivers plug-and-play code health and security scanning for AI and human generated code. Future-proof your software – from source code to runtime – without

Users
No information available
Industries
  • Computer Software
Market Segment
  • 61% Small-Business
  • 21% Mid-Market
Codacy Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Security
2
Automation
1
Automation Testing
1
Code Quality
1
Customer Support
1
Cons
Expensive
1
Codacy features and usability ratings that predict user satisfaction
9.1
Has the product been a good partner in doing business?
Average: 8.7
8.9
Ease of Admin
Average: 8.5
9.2
Ease of Use
Average: 8.6
10.0
What is your organization's estimated ROI on the product (payback period in months)?
Average: 10
Seller Details
Seller
Codacy
Year Founded
2012
HQ Location
Lisbon, Lisboa
Twitter
@codacy
4,911 Twitter followers
LinkedIn® Page
www.linkedin.com
68 employees on LinkedIn®
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    Fortify Static Code Analyzer is designed to identify security vulnerabilities in the user's source code early in the software development lifecycle and provides best practices so developers can code m

    Users
    No information available
    Industries
    • Banking
    • Financial Services
    Market Segment
    • 50% Enterprise
    • 29% Small-Business
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • OpenText Fortify Static Code Analyzer Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Easy Integrations
    1
    Integrations
    1
    Integration Support
    1
    Cons
    False Positives
    1
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • OpenText Fortify Static Code Analyzer features and usability ratings that predict user satisfaction
    8.5
    Has the product been a good partner in doing business?
    Average: 8.7
    8.1
    Ease of Admin
    Average: 8.5
    8.7
    Ease of Use
    Average: 8.6
    10.0
    What is your organization's estimated ROI on the product (payback period in months)?
    Average: 10
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Seller
    OpenText
    Year Founded
    1991
    HQ Location
    Waterloo, ON
    Twitter
    @OpenText
    21,885 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    22,114 employees on LinkedIn®
    Ownership
    NASDAQ:OTEX
Product Description
How are these determined?Information
This description is provided by the seller.

Fortify Static Code Analyzer is designed to identify security vulnerabilities in the user's source code early in the software development lifecycle and provides best practices so developers can code m

Users
No information available
Industries
  • Banking
  • Financial Services
Market Segment
  • 50% Enterprise
  • 29% Small-Business
OpenText Fortify Static Code Analyzer Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Easy Integrations
1
Integrations
1
Integration Support
1
Cons
False Positives
1
OpenText Fortify Static Code Analyzer features and usability ratings that predict user satisfaction
8.5
Has the product been a good partner in doing business?
Average: 8.7
8.1
Ease of Admin
Average: 8.5
8.7
Ease of Use
Average: 8.6
10.0
What is your organization's estimated ROI on the product (payback period in months)?
Average: 10
Seller Details
Seller
OpenText
Year Founded
1991
HQ Location
Waterloo, ON
Twitter
@OpenText
21,885 Twitter followers
LinkedIn® Page
www.linkedin.com
22,114 employees on LinkedIn®
Ownership
NASDAQ:OTEX
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    CAST Imaging helps architects and developers understand, change, and modernize applications. It automatically reverse-engineers all database structures, code components, and interdependencies in any c

    Users
    No information available
    Industries
    • Information Technology and Services
    Market Segment
    • 55% Enterprise
    • 29% Small-Business
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • CAST Imaging features and usability ratings that predict user satisfaction
    8.3
    Has the product been a good partner in doing business?
    Average: 8.7
    7.4
    Ease of Admin
    Average: 8.5
    7.9
    Ease of Use
    Average: 8.6
    10.0
    What is your organization's estimated ROI on the product (payback period in months)?
    Average: 10
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Seller
    CAST
    Company Website
    Year Founded
    1990
    HQ Location
    New York
    Twitter
    @SW_Intelligence
    1,863 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    1,205 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

CAST Imaging helps architects and developers understand, change, and modernize applications. It automatically reverse-engineers all database structures, code components, and interdependencies in any c

Users
No information available
Industries
  • Information Technology and Services
Market Segment
  • 55% Enterprise
  • 29% Small-Business
CAST Imaging features and usability ratings that predict user satisfaction
8.3
Has the product been a good partner in doing business?
Average: 8.7
7.4
Ease of Admin
Average: 8.5
7.9
Ease of Use
Average: 8.6
10.0
What is your organization's estimated ROI on the product (payback period in months)?
Average: 10
Seller Details
Seller
CAST
Company Website
Year Founded
1990
HQ Location
New York
Twitter
@SW_Intelligence
1,863 Twitter followers
LinkedIn® Page
www.linkedin.com
1,205 employees on LinkedIn®
(32)4.5 out of 5
11th Easiest To Use in Static Code Analysis software
Save to My Lists
Entry Level Price:Free
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    CodeScene is a code analysis, visualization, and reporting tool. Cross reference contextual factors such as code quality, team dynamics, and delivery output to get actionable insights to effectively r

    Users
    No information available
    Industries
    • Computer Software
    Market Segment
    • 50% Mid-Market
    • 31% Small-Business
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • CodeScene Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Code Quality
    17
    Features
    13
    Issue Identification
    9
    Engineering Practices
    7
    PR Reviews
    7
    Cons
    Difficult Learning
    5
    Complex Configuration
    4
    Complex User Interface
    3
    Confusing Interface
    3
    Difficult Configuration
    3
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • CodeScene features and usability ratings that predict user satisfaction
    9.6
    Has the product been a good partner in doing business?
    Average: 8.7
    8.3
    Ease of Admin
    Average: 8.5
    8.1
    Ease of Use
    Average: 8.6
    9.0
    What is your organization's estimated ROI on the product (payback period in months)?
    Average: 10
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Company Website
    Year Founded
    2015
    HQ Location
    Malmö, SE
    Twitter
    @codescene
    1,230 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    35 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

CodeScene is a code analysis, visualization, and reporting tool. Cross reference contextual factors such as code quality, team dynamics, and delivery output to get actionable insights to effectively r

Users
No information available
Industries
  • Computer Software
Market Segment
  • 50% Mid-Market
  • 31% Small-Business
CodeScene Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Code Quality
17
Features
13
Issue Identification
9
Engineering Practices
7
PR Reviews
7
Cons
Difficult Learning
5
Complex Configuration
4
Complex User Interface
3
Confusing Interface
3
Difficult Configuration
3
CodeScene features and usability ratings that predict user satisfaction
9.6
Has the product been a good partner in doing business?
Average: 8.7
8.3
Ease of Admin
Average: 8.5
8.1
Ease of Use
Average: 8.6
9.0
What is your organization's estimated ROI on the product (payback period in months)?
Average: 10
Seller Details
Company Website
Year Founded
2015
HQ Location
Malmö, SE
Twitter
@codescene
1,230 Twitter followers
LinkedIn® Page
www.linkedin.com
35 employees on LinkedIn®
(35)4.2 out of 5
9th Easiest To Use in Static Code Analysis software
Save to My Lists
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    Checkmarx is constantly pushing the boundaries of Application Security (AppSec) Testing to make security seamless and simple for the world’s developers while giving CISOs the confidence and control th

    Users
    No information available
    Industries
    • Information Technology and Services
    • Computer Software
    Market Segment
    • 57% Enterprise
    • 26% Mid-Market
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • Checkmarx Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Features
    3
    CD Integration
    2
    CI
    2
    Ease of Use
    2
    User Interface
    2
    Cons
    Difficult Customization
    1
    Expensive
    1
    False Positives
    1
    Poor Customer Support
    1
    Poor Navigation
    1
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • Checkmarx features and usability ratings that predict user satisfaction
    8.3
    Has the product been a good partner in doing business?
    Average: 8.7
    7.9
    Ease of Admin
    Average: 8.5
    8.2
    Ease of Use
    Average: 8.6
    10.0
    What is your organization's estimated ROI on the product (payback period in months)?
    Average: 10
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Year Founded
    2006
    HQ Location
    Paramus, NJ
    Twitter
    @Checkmarx
    7,198 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    902 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

Checkmarx is constantly pushing the boundaries of Application Security (AppSec) Testing to make security seamless and simple for the world’s developers while giving CISOs the confidence and control th

Users
No information available
Industries
  • Information Technology and Services
  • Computer Software
Market Segment
  • 57% Enterprise
  • 26% Mid-Market
Checkmarx Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Features
3
CD Integration
2
CI
2
Ease of Use
2
User Interface
2
Cons
Difficult Customization
1
Expensive
1
False Positives
1
Poor Customer Support
1
Poor Navigation
1
Checkmarx features and usability ratings that predict user satisfaction
8.3
Has the product been a good partner in doing business?
Average: 8.7
7.9
Ease of Admin
Average: 8.5
8.2
Ease of Use
Average: 8.6
10.0
What is your organization's estimated ROI on the product (payback period in months)?
Average: 10
Seller Details
Year Founded
2006
HQ Location
Paramus, NJ
Twitter
@Checkmarx
7,198 Twitter followers
LinkedIn® Page
www.linkedin.com
902 employees on LinkedIn®
Entry Level Price:Free
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    SonarQube Cloud is a cloud-based alternative to the SonarQube Server platform. It is a fully managed SaaS solution, improving human-developed and AI-assisted code at scale, offering continuous code q

    Users
    No information available
    Industries
    No information available
    Market Segment
    • 56% Mid-Market
    • 25% Enterprise
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • SonarQube Cloud (formerly SonarCloud) Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Integration Support
    6
    Easy Integrations
    5
    Git Integration
    5
    Integrations
    5
    Security
    5
    Cons
    Complex Configuration
    5
    Inefficient Scanning
    4
    Slow Scanning
    4
    Complex Setup
    3
    Setup Difficulty
    3
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • SonarQube Cloud (formerly SonarCloud) features and usability ratings that predict user satisfaction
    9.0
    Has the product been a good partner in doing business?
    Average: 8.7
    9.5
    Ease of Admin
    Average: 8.5
    8.7
    Ease of Use
    Average: 8.6
    10.0
    What is your organization's estimated ROI on the product (payback period in months)?
    Average: 10
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Company Website
    Year Founded
    2008
    HQ Location
    Geneva, Switzerland
    Twitter
    @SonarSource
    10,254 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    653 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

SonarQube Cloud is a cloud-based alternative to the SonarQube Server platform. It is a fully managed SaaS solution, improving human-developed and AI-assisted code at scale, offering continuous code q

Users
No information available
Industries
No information available
Market Segment
  • 56% Mid-Market
  • 25% Enterprise
SonarQube Cloud (formerly SonarCloud) Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Integration Support
6
Easy Integrations
5
Git Integration
5
Integrations
5
Security
5
Cons
Complex Configuration
5
Inefficient Scanning
4
Slow Scanning
4
Complex Setup
3
Setup Difficulty
3
SonarQube Cloud (formerly SonarCloud) features and usability ratings that predict user satisfaction
9.0
Has the product been a good partner in doing business?
Average: 8.7
9.5
Ease of Admin
Average: 8.5
8.7
Ease of Use
Average: 8.6
10.0
What is your organization's estimated ROI on the product (payback period in months)?
Average: 10
Seller Details
Company Website
Year Founded
2008
HQ Location
Geneva, Switzerland
Twitter
@SonarSource
10,254 Twitter followers
LinkedIn® Page
www.linkedin.com
653 employees on LinkedIn®
(85)4.5 out of 5
8th Easiest To Use in Static Code Analysis software
Save to My Lists
Entry Level Price:Free
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    ReSharper is a renowned productivity tool that turns Microsoft Visual Studio into a much better IDE. Both individual .NET developers and teams rely on ReSharper to write and maintain code in a more ma

    Users
    • Software Engineer
    • Software Developer
    Industries
    • Computer Software
    • Information Technology and Services
    Market Segment
    • 39% Small-Business
    • 38% Mid-Market
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • ReSharper features and usability ratings that predict user satisfaction
    8.7
    Has the product been a good partner in doing business?
    Average: 8.7
    8.3
    Ease of Admin
    Average: 8.5
    8.8
    Ease of Use
    Average: 8.6
    10.0
    What is your organization's estimated ROI on the product (payback period in months)?
    Average: 10
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Seller
    JetBrains
    Year Founded
    2000
    HQ Location
    Prague
    Twitter
    @jetbrains
    201,049 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    2,214 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

ReSharper is a renowned productivity tool that turns Microsoft Visual Studio into a much better IDE. Both individual .NET developers and teams rely on ReSharper to write and maintain code in a more ma

Users
  • Software Engineer
  • Software Developer
Industries
  • Computer Software
  • Information Technology and Services
Market Segment
  • 39% Small-Business
  • 38% Mid-Market
ReSharper features and usability ratings that predict user satisfaction
8.7
Has the product been a good partner in doing business?
Average: 8.7
8.3
Ease of Admin
Average: 8.5
8.8
Ease of Use
Average: 8.6
10.0
What is your organization's estimated ROI on the product (payback period in months)?
Average: 10
Seller Details
Seller
JetBrains
Year Founded
2000
HQ Location
Prague
Twitter
@jetbrains
201,049 Twitter followers
LinkedIn® Page
www.linkedin.com
2,214 employees on LinkedIn®
(30)4.4 out of 5
2nd Easiest To Use in Static Code Analysis software
Save to My Lists
Entry Level Price:From $599
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    Kiuwan is a robust, end-to-end application security platform that integrates seamlessly into your development process. Our toolset includes Static Application Security Testing (SAST), Software Composi

    Users
    No information available
    Industries
    • Information Technology and Services
    Market Segment
    • 43% Enterprise
    • 37% Mid-Market
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • Kiuwan Code Security & Insights Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Ease of Use
    3
    Customer Support
    2
    Flexibility
    2
    Vulnerability Detection
    2
    Vulnerability Identification
    2
    Cons
    Inefficiency
    1
    Poor Customer Support
    1
    Scanning Issues
    1
    Slow Performance
    1
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • Kiuwan Code Security & Insights features and usability ratings that predict user satisfaction
    8.9
    Has the product been a good partner in doing business?
    Average: 8.7
    8.6
    Ease of Admin
    Average: 8.5
    8.5
    Ease of Use
    Average: 8.6
    10.0
    What is your organization's estimated ROI on the product (payback period in months)?
    Average: 10
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Seller
    Kiuwan
    Year Founded
    2012
    HQ Location
    Houston, TX
    Twitter
    @Kiuwan
    3,435 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    26 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

Kiuwan is a robust, end-to-end application security platform that integrates seamlessly into your development process. Our toolset includes Static Application Security Testing (SAST), Software Composi

Users
No information available
Industries
  • Information Technology and Services
Market Segment
  • 43% Enterprise
  • 37% Mid-Market
Kiuwan Code Security & Insights Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Ease of Use
3
Customer Support
2
Flexibility
2
Vulnerability Detection
2
Vulnerability Identification
2
Cons
Inefficiency
1
Poor Customer Support
1
Scanning Issues
1
Slow Performance
1
Kiuwan Code Security & Insights features and usability ratings that predict user satisfaction
8.9
Has the product been a good partner in doing business?
Average: 8.7
8.6
Ease of Admin
Average: 8.5
8.5
Ease of Use
Average: 8.6
10.0
What is your organization's estimated ROI on the product (payback period in months)?
Average: 10
Seller Details
Seller
Kiuwan
Year Founded
2012
HQ Location
Houston, TX
Twitter
@Kiuwan
3,435 Twitter followers
LinkedIn® Page
www.linkedin.com
26 employees on LinkedIn®
(31)4.6 out of 5
View top Consulting Services for Semgrep
Save to My Lists
Entry Level Price:$40.00
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    Semgrep is a highly customizable application security platform built for security engineers and developers. Semgrep scans first and third-party code to find security issues unique to an organization,

    Users
    No information available
    Industries
    • Computer Software
    • Information Technology and Services
    Market Segment
    • 58% Mid-Market
    • 29% Enterprise
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • Semgrep Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Custom Rules
    4
    Features
    4
    Automated Scanning
    3
    Ease of Use
    3
    Easy Integrations
    3
    Cons
    Scanning Issues
    3
    False Positives
    2
    Inaccuracy
    2
    Bug Issues
    1
    Dependency Issues
    1
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • Semgrep features and usability ratings that predict user satisfaction
    9.5
    Has the product been a good partner in doing business?
    Average: 8.7
    9.2
    Ease of Admin
    Average: 8.5
    9.3
    Ease of Use
    Average: 8.6
    10.0
    What is your organization's estimated ROI on the product (payback period in months)?
    Average: 10
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Seller
    Semgrep
    Year Founded
    2017
    HQ Location
    San Francisco, US
    Twitter
    @semgrep
    3,601 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    170 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

Semgrep is a highly customizable application security platform built for security engineers and developers. Semgrep scans first and third-party code to find security issues unique to an organization,

Users
No information available
Industries
  • Computer Software
  • Information Technology and Services
Market Segment
  • 58% Mid-Market
  • 29% Enterprise
Semgrep Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Custom Rules
4
Features
4
Automated Scanning
3
Ease of Use
3
Easy Integrations
3
Cons
Scanning Issues
3
False Positives
2
Inaccuracy
2
Bug Issues
1
Dependency Issues
1
Semgrep features and usability ratings that predict user satisfaction
9.5
Has the product been a good partner in doing business?
Average: 8.7
9.2
Ease of Admin
Average: 8.5
9.3
Ease of Use
Average: 8.6
10.0
What is your organization's estimated ROI on the product (payback period in months)?
Average: 10
Seller Details
Seller
Semgrep
Year Founded
2017
HQ Location
San Francisco, US
Twitter
@semgrep
3,601 Twitter followers
LinkedIn® Page
www.linkedin.com
170 employees on LinkedIn®
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    The Closure Compiler is a tool for making JavaScript download and run faster. Instead of compiling from a source language to machine code, it compiles from JavaScript to better JavaScript.

    Users
    No information available
    Industries
    No information available
    Market Segment
    • 46% Small-Business
    • 38% Mid-Market
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • Closure Compiler features and usability ratings that predict user satisfaction
    8.3
    Has the product been a good partner in doing business?
    Average: 8.7
    10.0
    Ease of Admin
    Average: 8.5
    8.2
    Ease of Use
    Average: 8.6
    10.0
    What is your organization's estimated ROI on the product (payback period in months)?
    Average: 10
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Seller
    Google
    Year Founded
    1998
    HQ Location
    Mountain View, CA
    Twitter
    @google
    32,687,682 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    301,875 employees on LinkedIn®
    Ownership
    NASDAQ:GOOG
Product Description
How are these determined?Information
This description is provided by the seller.

The Closure Compiler is a tool for making JavaScript download and run faster. Instead of compiling from a source language to machine code, it compiles from JavaScript to better JavaScript.

Users
No information available
Industries
No information available
Market Segment
  • 46% Small-Business
  • 38% Mid-Market
Closure Compiler features and usability ratings that predict user satisfaction
8.3
Has the product been a good partner in doing business?
Average: 8.7
10.0
Ease of Admin
Average: 8.5
8.2
Ease of Use
Average: 8.6
10.0
What is your organization's estimated ROI on the product (payback period in months)?
Average: 10
Seller Details
Seller
Google
Year Founded
1998
HQ Location
Mountain View, CA
Twitter
@google
32,687,682 Twitter followers
LinkedIn® Page
www.linkedin.com
301,875 employees on LinkedIn®
Ownership
NASDAQ:GOOG
(171)4.8 out of 5
3rd Easiest To Use in Static Code Analysis software
Save to My Lists
Entry Level Price:Starting at $49.00
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    Introducing FusionReactor Observability with OpsPilot GenAI and OpenTelemetry Integration – the ultimate solution for comprehensive application monitoring and analysis. With this powerful combination

    Users
    • CTO
    • Developer
    Industries
    • Information Technology and Services
    • Computer Software
    Market Segment
    • 62% Small-Business
    • 29% Mid-Market
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • FusionReactor APM Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Monitoring
    21
    Real-time Monitoring
    18
    Performance
    17
    Ease of Use
    14
    Visibility
    13
    Cons
    Learning Curve
    8
    Difficult Learning
    6
    Expensive
    6
    Learning Difficulty
    5
    Poor User Interface
    5
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • FusionReactor APM features and usability ratings that predict user satisfaction
    9.4
    Has the product been a good partner in doing business?
    Average: 8.7
    9.0
    Ease of Admin
    Average: 8.5
    8.7
    Ease of Use
    Average: 8.6
    10.0
    What is your organization's estimated ROI on the product (payback period in months)?
    Average: 10
  • What G2 Users Think
    Expand/Collapse What G2 Users Think
  • User Sentiment
    How are these determined?Information
    These insights are written by G2's Market Research team, using actual user reviews for FusionReactor APM, left between October 2019 and May 2022.
    • Reviewers like the way that FusionReactor APM allows them to identify problematic code in their systems and fix it
    • Reviewers often mention the ability to monitor various network requests and isolate slow requests that are occurring
    • Reviewers appreciate the ability to monitor production servers for issues that may be occurring and speed up performance
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Seller
    Intergral
    Company Website
    Year Founded
    1998
    HQ Location
    Boeblingen, DE
    Twitter
    @Fusion_Reactor
    9,535 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    39 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

Introducing FusionReactor Observability with OpsPilot GenAI and OpenTelemetry Integration – the ultimate solution for comprehensive application monitoring and analysis. With this powerful combination

Users
  • CTO
  • Developer
Industries
  • Information Technology and Services
  • Computer Software
Market Segment
  • 62% Small-Business
  • 29% Mid-Market
FusionReactor APM Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Monitoring
21
Real-time Monitoring
18
Performance
17
Ease of Use
14
Visibility
13
Cons
Learning Curve
8
Difficult Learning
6
Expensive
6
Learning Difficulty
5
Poor User Interface
5
FusionReactor APM features and usability ratings that predict user satisfaction
9.4
Has the product been a good partner in doing business?
Average: 8.7
9.0
Ease of Admin
Average: 8.5
8.7
Ease of Use
Average: 8.6
10.0
What is your organization's estimated ROI on the product (payback period in months)?
Average: 10
User Sentiment
How are these determined?Information
These insights are written by G2's Market Research team, using actual user reviews for FusionReactor APM, left between October 2019 and May 2022.
  • Reviewers like the way that FusionReactor APM allows them to identify problematic code in their systems and fix it
  • Reviewers often mention the ability to monitor various network requests and isolate slow requests that are occurring
  • Reviewers appreciate the ability to monitor production servers for issues that may be occurring and speed up performance
Seller Details
Seller
Intergral
Company Website
Year Founded
1998
HQ Location
Boeblingen, DE
Twitter
@Fusion_Reactor
9,535 Twitter followers
LinkedIn® Page
www.linkedin.com
39 employees on LinkedIn®
(76)4.4 out of 5
10th Easiest To Use in Static Code Analysis software
Save to My Lists
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    Semmle makes the management of software development easier than ever before. By giving you complete visibility _ for every project, location, team, developer, timeframe and cost _ Semmle is engineerin

    Users
    No information available
    Industries
    • Computer Software
    • Information Technology and Services
    Market Segment
    • 54% Small-Business
    • 36% Mid-Market
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • Semmle features and usability ratings that predict user satisfaction
    8.3
    Has the product been a good partner in doing business?
    Average: 8.7
    8.8
    Ease of Admin
    Average: 8.5
    8.6
    Ease of Use
    Average: 8.6
    10.0
    What is your organization's estimated ROI on the product (payback period in months)?
    Average: 10
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Seller
    Semmle
    Year Founded
    2006
    HQ Location
    San Francisco, California
    Twitter
    @SemmleInc
    1 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    5 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

Semmle makes the management of software development easier than ever before. By giving you complete visibility _ for every project, location, team, developer, timeframe and cost _ Semmle is engineerin

Users
No information available
Industries
  • Computer Software
  • Information Technology and Services
Market Segment
  • 54% Small-Business
  • 36% Mid-Market
Semmle features and usability ratings that predict user satisfaction
8.3
Has the product been a good partner in doing business?
Average: 8.7
8.8
Ease of Admin
Average: 8.5
8.6
Ease of Use
Average: 8.6
10.0
What is your organization's estimated ROI on the product (payback period in months)?
Average: 10
Seller Details
Seller
Semmle
Year Founded
2006
HQ Location
San Francisco, California
Twitter
@SemmleInc
1 Twitter followers
LinkedIn® Page
www.linkedin.com
5 employees on LinkedIn®

Learn More About Static Code Analysis Tools

What is Static Code Analysis Software?

Static code analysis is a debugging and quality assurance method that inspects a computer program’s code without executing the program. Static code analysis software scans code to identify security vulnerabilities, catch bugs, and ensure the code adheres to industry standards. These tools help software developers automate the core aspects of program comprehension. Rather than manually combing through lines of code with visual inspection alone, developers and programmers can rely on static code analysis software’s automatic scans and alerts to gain deeper insight into their code. This automation decreases software developers overall workload and frees up resources by streamlining the debugging and quality assurance process.

Static code analysis software serves as an automated standardization check in many different development environments. A common concern among development teams is code readability—if developer A writes a chunk of code which is passed to developer B, that code must be comprehensible and easy to digest. Constantly checking code against the industry standard or even custom best practices, static code analysis software helps software developers keep their code consistent to improve team collaboration.

Ideally, static code analysis software does more than save developers time, it greatly enhances the quality of their debugging processes. Manual code inspection is both time-consuming and subject to human error. Oftentimes, developers don’t find bugs until they manifest themselves post-deployment. Static code analysis software helps find and alert developers to the existence of bugs months before they can manifest in a deployed application. Static code analysis software ensures cleaner, higher-quality releases by minimizing bugs and errors, enhancing cybersecurity, and promoting coding best practices.

Key Benefits of Static Code Analysis Software

  • Fewer undetected bugs upon deployment
  • Save software developers time and resources
  • Minimize human error
  • Facilitate best industry or custom practices
  • Promote DevOps security by ensuring more secure applications

Why Use Static Code Analysis Software?

Reduced workload — Since static code analysis software runs automated scans, developers are free to spend more time working on new code and less time combing through existing code. Static code analysis automatically hunts down and alerts users to bad code. This means that software developers don’t have to spend time and resources manually combing through lines and lines of code.

Thorough debugging — Software developers are all too familiar with bugs that don’t show themselves known until months, or even years after an application’s release. Often, finding bugs via manual code inspection relies on running the code and hoping an error reveals itself during quality assurance testing. However, with static code analysis software, developers can find and resolve bugs that would otherwise have been hidden in the code allowing for cleaner deployments and less issues down the line.

Standardized best practices — Beyond debugging, static code analysis software checks code against industry standard benchmarks for best practices. This standardized regulation keeps teams on the same page by ensuring that everyone’s code is clear and optimized. Additionally, some software allows users to customize best practices to fit the specifications of their company or department.

Better security — Static code analysis software is often capable of finding and alerting developers of security vulnerabilities in their code. Developers can prioritize cybersecurity thanks to static code analysis.

What are the Common Features of Static Code Analysis Software?

Integrated development environment (IDE) integration — Most static code analysis software integrates with developers’ IDEs to provide a seamless solution within a pre-existing development environment. This integration means developers can continuously scan their code without interrupting their workflow.

Timely alerts — Because static code analysis software can scan code for bugs and vulnerabilities in a matter of seconds, developers receive timely alerts that help them enhance work efficiency. These timely alerts also help users react appropriately to bugs early on, saving them time and stress later.

Recommendations — Beyond alerting developers to code issues, static code analysis software generates actionable recommendations based on different errors or vulnerabilities that are detected. These suggestions give developer a starting point to resolve various problems, which saves time and mental energy.

Static Code Analysis Tools for Programming Languages and Features: C#, C/C++, Java, .NET, PHP, Python, Ruby, Salesforce