CodeSonar is easy to use offers rich experience in finding security vulnerabilities in source code
The CodeSonar hub interface is not ergonomic and practical for dealing with errors. Bad integration in the CI/CD process like Jenkins. The configuration process from the configuration is a little longer to set up (but great doc does deal with it so small...
During the years I found that Klocwork provides very good findings when analyzing C++ code.
Inexistent traceability of developer's issue suppression from their desktop. The way of working proposed by Klocwork is to have dedicated team that reviews suppressions but this becomes a bottleneck when this team needs to overwatch many small embedded...
CodeSonar is easy to use offers rich experience in finding security vulnerabilities in source code
During the years I found that Klocwork provides very good findings when analyzing C++ code.
The CodeSonar hub interface is not ergonomic and practical for dealing with errors. Bad integration in the CI/CD process like Jenkins. The configuration process from the configuration is a little longer to set up (but great doc does deal with it so small...
Inexistent traceability of developer's issue suppression from their desktop. The way of working proposed by Klocwork is to have dedicated team that reviews suppressions but this becomes a bottleneck when this team needs to overwatch many small embedded...