Best Static Application Security Testing (SAST) Software

Lauren Worth
LW
Researched and written by Lauren Worth

Static application security testing (SAST) software inspects and analyzes an application’s code to discover security vulnerabilities without actually executing code. These tools are frequently used by companies with continuous delivery practices to identify flaws prior to deployment. SAST tools provide vulnerability information and remediation suggestions for development teams to resolve. There is relation and overlap between SAST tools and static code analysis software, but SAST products are more focused on security testing. Static code analysis products, on the other hand, combine a number of analytical practices, test management, and team collaboration features.

SAST vs DAST — Learn the difference

To qualify for inclusion in the Static Application Security Testing (SAST) category, a product must:

  • Test applications to identify vulnerabilities
  • Not execute code during testing, or have the ability to run static tests
  • Provide information on relative vulnerabilities and exploits

Best Static Application Security Testing (SAST) Software At A Glance

Leader:
Highest Performer:
Easiest to Use:
Best Free Software:
Top Trending:
Show LessShow More
Easiest to Use:
Best Free Software:
Top Trending:

G2 takes pride in showing unbiased reviews on user satisfaction in our ratings and reports. We do not allow paid placements in any of our ratings, rankings, or reports. Learn about our scoring methodologies.

No filters applied
100 Listings in Static Application Security Testing (SAST) Available
(2,204)4.7 out of 5
1st Easiest To Use in Static Application Security Testing (SAST) software
View top Consulting Services for GitHub
Save to My Lists
Entry Level Price:Free
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    GitHub is where the world builds software. Millions of individuals, organizations and businesses around the world use GitHub to discover, share, and contribute software. Developers at startups to Fort

    Users
    • Software Engineer
    • Senior Software Engineer
    Industries
    • Computer Software
    • Information Technology and Services
    Market Segment
    • 46% Small-Business
    • 31% Mid-Market
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • GitHub Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Features
    121
    Ease of Use
    107
    Collaboration
    101
    Team Collaboration
    99
    Version Control
    83
    Cons
    Learning Curve
    37
    Complexity
    32
    Learning Difficulty
    31
    Difficulty for Beginners
    28
    Steep Learning Curve
    27
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • GitHub features and usability ratings that predict user satisfaction
    8.2
    Test Automation
    Average: 8.7
    8.9
    Has the product been a good partner in doing business?
    Average: 9.1
    8.7
    Quality of Support
    Average: 9.2
    8.0
    Black-Box Scanning
    Average: 8.2
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Seller
    GitHub
    Year Founded
    2008
    HQ Location
    San Francisco, CA
    Twitter
    @github
    2,622,862 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    6,505 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

GitHub is where the world builds software. Millions of individuals, organizations and businesses around the world use GitHub to discover, share, and contribute software. Developers at startups to Fort

Users
  • Software Engineer
  • Senior Software Engineer
Industries
  • Computer Software
  • Information Technology and Services
Market Segment
  • 46% Small-Business
  • 31% Mid-Market
GitHub Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Features
121
Ease of Use
107
Collaboration
101
Team Collaboration
99
Version Control
83
Cons
Learning Curve
37
Complexity
32
Learning Difficulty
31
Difficulty for Beginners
28
Steep Learning Curve
27
GitHub features and usability ratings that predict user satisfaction
8.2
Test Automation
Average: 8.7
8.9
Has the product been a good partner in doing business?
Average: 9.1
8.7
Quality of Support
Average: 9.2
8.0
Black-Box Scanning
Average: 8.2
Seller Details
Seller
GitHub
Year Founded
2008
HQ Location
San Francisco, CA
Twitter
@github
2,622,862 Twitter followers
LinkedIn® Page
www.linkedin.com
6,505 employees on LinkedIn®
(217)4.8 out of 5
2nd Easiest To Use in Static Application Security Testing (SAST) software
Save to My Lists
Entry Level Price:Free
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    The new ways of building software create the necessity to support new vulnerabilities and new remediation workflows. These needs have emerged so abruptly that they have given rise to a young and highl

    Users
    • Software Engineer
    Industries
    • Computer Software
    • Information Technology and Services
    Market Segment
    • 83% Small-Business
    • 12% Mid-Market
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • GitGuardian Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Security
    48
    Alert Notifications
    44
    Vulnerability Detection
    35
    Git Integration
    28
    Ease of Use
    26
    Cons
    False Positives
    18
    Poor Interface
    9
    Inefficient Notifications
    8
    Poor User Interface
    8
    Excessive Notifications
    5
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • GitGuardian features and usability ratings that predict user satisfaction
    8.3
    Test Automation
    Average: 8.7
    8.9
    Has the product been a good partner in doing business?
    Average: 9.1
    9.3
    Quality of Support
    Average: 9.2
    9.0
    Black-Box Scanning
    Average: 8.2
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Year Founded
    2017
    HQ Location
    Paris, ÃŽle-de-France
    Twitter
    @GitGuardian
    6,110 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    160 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

The new ways of building software create the necessity to support new vulnerabilities and new remediation workflows. These needs have emerged so abruptly that they have given rise to a young and highl

Users
  • Software Engineer
Industries
  • Computer Software
  • Information Technology and Services
Market Segment
  • 83% Small-Business
  • 12% Mid-Market
GitGuardian Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Security
48
Alert Notifications
44
Vulnerability Detection
35
Git Integration
28
Ease of Use
26
Cons
False Positives
18
Poor Interface
9
Inefficient Notifications
8
Poor User Interface
8
Excessive Notifications
5
GitGuardian features and usability ratings that predict user satisfaction
8.3
Test Automation
Average: 8.7
8.9
Has the product been a good partner in doing business?
Average: 9.1
9.3
Quality of Support
Average: 9.2
9.0
Black-Box Scanning
Average: 8.2
Seller Details
Year Founded
2017
HQ Location
Paris, ÃŽle-de-France
Twitter
@GitGuardian
6,110 Twitter followers
LinkedIn® Page
www.linkedin.com
160 employees on LinkedIn®

This is how G2 Deals can help you:

  • Easily shop for curated – and trusted – software
  • Own your own software buying journey
  • Discover exclusive deals on software
(76)4.1 out of 5
12th Easiest To Use in Static Application Security Testing (SAST) software
Save to My Lists
Entry Level Price:Free
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    HCL AppScan is a comprehensive suite of market-leading application security testing solutions (SAST, DAST, IAST, SCA, API), available on-premises and on-cloud. These powerful DevSecOps tools pinpoint

    Users
    No information available
    Industries
    • Information Technology and Services
    • Computer & Network Security
    Market Segment
    • 54% Enterprise
    • 28% Small-Business
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • HCL AppScan Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Ease of Use
    11
    Scanning Efficiency
    11
    Security
    11
    Vulnerability Detection
    10
    Customer Support
    8
    Cons
    Expensive
    7
    Complexity
    5
    Scanning Issues
    4
    Difficult Setup
    3
    Difficulty for Beginners
    3
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • HCL AppScan features and usability ratings that predict user satisfaction
    8.4
    Test Automation
    Average: 8.7
    8.8
    Has the product been a good partner in doing business?
    Average: 9.1
    8.5
    Quality of Support
    Average: 9.2
    8.3
    Black-Box Scanning
    Average: 8.2
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Year Founded
    1999
    HQ Location
    Noida, Uttar Pradesh
    Twitter
    @hcltech
    441,618 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    244,931 employees on LinkedIn®
    Ownership
    NSE - National Stock Exchange of India
Product Description
How are these determined?Information
This description is provided by the seller.

HCL AppScan is a comprehensive suite of market-leading application security testing solutions (SAST, DAST, IAST, SCA, API), available on-premises and on-cloud. These powerful DevSecOps tools pinpoint

Users
No information available
Industries
  • Information Technology and Services
  • Computer & Network Security
Market Segment
  • 54% Enterprise
  • 28% Small-Business
HCL AppScan Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Ease of Use
11
Scanning Efficiency
11
Security
11
Vulnerability Detection
10
Customer Support
8
Cons
Expensive
7
Complexity
5
Scanning Issues
4
Difficult Setup
3
Difficulty for Beginners
3
HCL AppScan features and usability ratings that predict user satisfaction
8.4
Test Automation
Average: 8.7
8.8
Has the product been a good partner in doing business?
Average: 9.1
8.5
Quality of Support
Average: 9.2
8.3
Black-Box Scanning
Average: 8.2
Seller Details
Year Founded
1999
HQ Location
Noida, Uttar Pradesh
Twitter
@hcltech
441,618 Twitter followers
LinkedIn® Page
www.linkedin.com
244,931 employees on LinkedIn®
Ownership
NSE - National Stock Exchange of India
(55)4.7 out of 5
Optimized for quick response
6th Easiest To Use in Static Application Security Testing (SAST) software
Save to My Lists
Entry Level Price:Free
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    Aikido is an application security (AppSec) platform specifically designed for developers who prioritize their coding tasks over managing security alerts. Our innovative solution consolidates nine esse

    Users
    No information available
    Industries
    • Computer Software
    • Information Technology and Services
    Market Segment
    • 78% Small-Business
    • 22% Mid-Market
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • Aikido Security Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Ease of Use
    33
    Security
    28
    Easy Integrations
    26
    Easy Setup
    26
    Features
    25
    Cons
    False Positives
    8
    Limited Features
    8
    Missing Features
    8
    Improvement Needed
    6
    Lack of Information
    6
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • Aikido Security features and usability ratings that predict user satisfaction
    7.3
    Test Automation
    Average: 8.7
    9.6
    Has the product been a good partner in doing business?
    Average: 9.1
    9.6
    Quality of Support
    Average: 9.2
    8.4
    Black-Box Scanning
    Average: 8.2
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Company Website
    Year Founded
    2022
    HQ Location
    Ghent, Belgium
    Twitter
    @AikidoSecurity
    2,501 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    83 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

Aikido is an application security (AppSec) platform specifically designed for developers who prioritize their coding tasks over managing security alerts. Our innovative solution consolidates nine esse

Users
No information available
Industries
  • Computer Software
  • Information Technology and Services
Market Segment
  • 78% Small-Business
  • 22% Mid-Market
Aikido Security Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Ease of Use
33
Security
28
Easy Integrations
26
Easy Setup
26
Features
25
Cons
False Positives
8
Limited Features
8
Missing Features
8
Improvement Needed
6
Lack of Information
6
Aikido Security features and usability ratings that predict user satisfaction
7.3
Test Automation
Average: 8.7
9.6
Has the product been a good partner in doing business?
Average: 9.1
9.6
Quality of Support
Average: 9.2
8.4
Black-Box Scanning
Average: 8.2
Seller Details
Company Website
Year Founded
2022
HQ Location
Ghent, Belgium
Twitter
@AikidoSecurity
2,501 Twitter followers
LinkedIn® Page
www.linkedin.com
83 employees on LinkedIn®
(50)4.8 out of 5
4th Easiest To Use in Static Application Security Testing (SAST) software
Save to My Lists
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    Security should be an integral part of the software development process, not an afterthought. Founded by Neatsun Ziv and Lion Arzi, two former Check Point executives, OX is the first and only Active A

    Users
    • Security Engineer
    Industries
    • Financial Services
    • Information Technology and Services
    Market Segment
    • 64% Mid-Market
    • 26% Enterprise
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • OX Security Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Features
    27
    Ease of Use
    24
    Customer Support
    22
    Integration Support
    22
    Security
    22
    Cons
    Missing Features
    9
    Integration Issues
    7
    Limited Features
    6
    Complexity
    5
    Inadequate Reporting
    5
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • OX Security features and usability ratings that predict user satisfaction
    7.4
    Test Automation
    Average: 8.7
    9.7
    Has the product been a good partner in doing business?
    Average: 9.1
    9.6
    Quality of Support
    Average: 9.2
    7.8
    Black-Box Scanning
    Average: 8.2
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Year Founded
    2021
    HQ Location
    New York, USA
    LinkedIn® Page
    www.linkedin.com
    164 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

Security should be an integral part of the software development process, not an afterthought. Founded by Neatsun Ziv and Lion Arzi, two former Check Point executives, OX is the first and only Active A

Users
  • Security Engineer
Industries
  • Financial Services
  • Information Technology and Services
Market Segment
  • 64% Mid-Market
  • 26% Enterprise
OX Security Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Features
27
Ease of Use
24
Customer Support
22
Integration Support
22
Security
22
Cons
Missing Features
9
Integration Issues
7
Limited Features
6
Complexity
5
Inadequate Reporting
5
OX Security features and usability ratings that predict user satisfaction
7.4
Test Automation
Average: 8.7
9.7
Has the product been a good partner in doing business?
Average: 9.1
9.6
Quality of Support
Average: 9.2
7.8
Black-Box Scanning
Average: 8.2
Seller Details
Year Founded
2021
HQ Location
New York, USA
LinkedIn® Page
www.linkedin.com
164 employees on LinkedIn®
(36)4.7 out of 5
Optimized for quick response
5th Easiest To Use in Static Application Security Testing (SAST) software
Save to My Lists
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    Jit is redefining application security by introducing the first Agentic AppSec Platform, seamlessly blending human expertise with AI-driven automation. Designed for modern development teams, Jit empow

    Users
    No information available
    Industries
    • Computer Software
    • Financial Services
    Market Segment
    • 53% Mid-Market
    • 36% Small-Business
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • Jit Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Ease of Use
    19
    Security
    18
    Integration Support
    15
    Customer Support
    14
    Features
    13
    Cons
    Poor User Interface
    6
    Integration Issues
    4
    Limited Cloud Integration
    4
    Limited Features
    4
    Complexity
    3
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • Jit features and usability ratings that predict user satisfaction
    8.8
    Test Automation
    Average: 8.7
    9.7
    Has the product been a good partner in doing business?
    Average: 9.1
    9.5
    Quality of Support
    Average: 9.2
    8.4
    Black-Box Scanning
    Average: 8.2
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Seller
    jit
    Company Website
    Year Founded
    2021
    HQ Location
    Boston, MA
    Twitter
    @jit_io
    518 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    113 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

Jit is redefining application security by introducing the first Agentic AppSec Platform, seamlessly blending human expertise with AI-driven automation. Designed for modern development teams, Jit empow

Users
No information available
Industries
  • Computer Software
  • Financial Services
Market Segment
  • 53% Mid-Market
  • 36% Small-Business
Jit Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Ease of Use
19
Security
18
Integration Support
15
Customer Support
14
Features
13
Cons
Poor User Interface
6
Integration Issues
4
Limited Cloud Integration
4
Limited Features
4
Complexity
3
Jit features and usability ratings that predict user satisfaction
8.8
Test Automation
Average: 8.7
9.7
Has the product been a good partner in doing business?
Average: 9.1
9.5
Quality of Support
Average: 9.2
8.4
Black-Box Scanning
Average: 8.2
Seller Details
Seller
jit
Company Website
Year Founded
2021
HQ Location
Boston, MA
Twitter
@jit_io
518 Twitter followers
LinkedIn® Page
www.linkedin.com
113 employees on LinkedIn®
(117)4.4 out of 5
13th Easiest To Use in Static Application Security Testing (SAST) software
Save to My Lists
Entry Level Price:Free
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    SonarQube helps developers continuously improve the quality and security of both AI-generated and human-written code. It addresses key areas including: - Code Quality: Ensuring all code meets high st

    Users
    • Software Engineer
    Industries
    • Computer Software
    • Information Technology and Services
    Market Segment
    • 44% Enterprise
    • 38% Mid-Market
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • SonarQube Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Code Quality
    17
    Features
    15
    Ease of Use
    12
    Integrations
    10
    Issue Identification
    10
    Cons
    Limited Features
    10
    Complex Configuration
    6
    Complex Setup
    6
    Expensive
    6
    Missing Features
    6
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • SonarQube features and usability ratings that predict user satisfaction
    5.9
    Test Automation
    Average: 8.7
    8.4
    Has the product been a good partner in doing business?
    Average: 9.1
    8.3
    Quality of Support
    Average: 9.2
    7.1
    Black-Box Scanning
    Average: 8.2
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Company Website
    Year Founded
    2008
    HQ Location
    Geneva, Switzerland
    Twitter
    @SonarSource
    10,238 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    781 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

SonarQube helps developers continuously improve the quality and security of both AI-generated and human-written code. It addresses key areas including: - Code Quality: Ensuring all code meets high st

Users
  • Software Engineer
Industries
  • Computer Software
  • Information Technology and Services
Market Segment
  • 44% Enterprise
  • 38% Mid-Market
SonarQube Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Code Quality
17
Features
15
Ease of Use
12
Integrations
10
Issue Identification
10
Cons
Limited Features
10
Complex Configuration
6
Complex Setup
6
Expensive
6
Missing Features
6
SonarQube features and usability ratings that predict user satisfaction
5.9
Test Automation
Average: 8.7
8.4
Has the product been a good partner in doing business?
Average: 9.1
8.3
Quality of Support
Average: 9.2
7.1
Black-Box Scanning
Average: 8.2
Seller Details
Company Website
Year Founded
2008
HQ Location
Geneva, Switzerland
Twitter
@SonarSource
10,238 Twitter followers
LinkedIn® Page
www.linkedin.com
781 employees on LinkedIn®
(833)4.5 out of 5
Optimized for quick response
8th Easiest To Use in Static Application Security Testing (SAST) software
View top Consulting Services for GitLab
Save to My Lists
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    GitLab is the most comprehensive AI-Powered DevSecOps platform that enables software innovation by empowering development, security, and operations teams to build better software, faster. With GitLab

    Users
    • Software Engineer
    • Senior Software Engineer
    Industries
    • Computer Software
    • Information Technology and Services
    Market Segment
    • 37% Small-Business
    • 37% Mid-Market
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • GitLab Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Ease of Use
    40
    Features
    38
    Repository Management
    28
    Deployment
    25
    Collaboration
    24
    Cons
    Missing Features
    13
    Limited Features
    12
    Complexity
    11
    Poor User Interface
    10
    Complex Navigation
    7
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • GitLab features and usability ratings that predict user satisfaction
    8.9
    Test Automation
    Average: 8.7
    8.8
    Has the product been a good partner in doing business?
    Average: 9.1
    8.5
    Quality of Support
    Average: 9.2
    8.6
    Black-Box Scanning
    Average: 8.2
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Company Website
    Year Founded
    2014
    HQ Location
    San Francisco, California
    Twitter
    @gitlab
    167,366 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    2,957 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

GitLab is the most comprehensive AI-Powered DevSecOps platform that enables software innovation by empowering development, security, and operations teams to build better software, faster. With GitLab

Users
  • Software Engineer
  • Senior Software Engineer
Industries
  • Computer Software
  • Information Technology and Services
Market Segment
  • 37% Small-Business
  • 37% Mid-Market
GitLab Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Ease of Use
40
Features
38
Repository Management
28
Deployment
25
Collaboration
24
Cons
Missing Features
13
Limited Features
12
Complexity
11
Poor User Interface
10
Complex Navigation
7
GitLab features and usability ratings that predict user satisfaction
8.9
Test Automation
Average: 8.7
8.8
Has the product been a good partner in doing business?
Average: 9.1
8.5
Quality of Support
Average: 9.2
8.6
Black-Box Scanning
Average: 8.2
Seller Details
Company Website
Year Founded
2014
HQ Location
San Francisco, California
Twitter
@gitlab
167,366 Twitter followers
LinkedIn® Page
www.linkedin.com
2,957 employees on LinkedIn®
(60)4.6 out of 5
Optimized for quick response
3rd Easiest To Use in Static Application Security Testing (SAST) software
View top Consulting Services for Invicti (formerly Netsparker)
Save to My Lists
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    Invicti is an automated application and API security testing solution that allows enterprise organizations to secure thousands of websites, web apps, and APIs and dramatically reduce the risk of attac

    Users
    No information available
    Industries
    • Information Technology and Services
    • Financial Services
    Market Segment
    • 50% Enterprise
    • 25% Mid-Market
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • Invicti (formerly Netsparker) Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Vulnerability Detection
    5
    Vulnerability Identification
    5
    Customer Support
    4
    Ease of Use
    4
    Scanning Technology
    4
    Cons
    Slow Performance
    2
    API Issues
    1
    Difficult Upgrades
    1
    Inadequate Testing
    1
    Limited Testing Capabilities
    1
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • Invicti (formerly Netsparker) features and usability ratings that predict user satisfaction
    0.0
    No information available
    9.7
    Has the product been a good partner in doing business?
    Average: 9.1
    9.1
    Quality of Support
    Average: 9.2
    0.0
    No information available
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Company Website
    Year Founded
    2018
    HQ Location
    Austin, Texas
    Twitter
    @InvictiSecurity
    2,541 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    313 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

Invicti is an automated application and API security testing solution that allows enterprise organizations to secure thousands of websites, web apps, and APIs and dramatically reduce the risk of attac

Users
No information available
Industries
  • Information Technology and Services
  • Financial Services
Market Segment
  • 50% Enterprise
  • 25% Mid-Market
Invicti (formerly Netsparker) Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Vulnerability Detection
5
Vulnerability Identification
5
Customer Support
4
Ease of Use
4
Scanning Technology
4
Cons
Slow Performance
2
API Issues
1
Difficult Upgrades
1
Inadequate Testing
1
Limited Testing Capabilities
1
Invicti (formerly Netsparker) features and usability ratings that predict user satisfaction
0.0
No information available
9.7
Has the product been a good partner in doing business?
Average: 9.1
9.1
Quality of Support
Average: 9.2
0.0
No information available
Seller Details
Company Website
Year Founded
2018
HQ Location
Austin, Texas
Twitter
@InvictiSecurity
2,541 Twitter followers
LinkedIn® Page
www.linkedin.com
313 employees on LinkedIn®
(122)4.5 out of 5
7th Easiest To Use in Static Application Security Testing (SAST) software
View top Consulting Services for Snyk
Save to My Lists
Entry Level Price:Free
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    Snyk (pronounced sneak) is a developer security platform for securing custom code, open source dependencies, containers, and cloud infrastructure all from a single platform. Snyk’s developer securit

    Users
    • Software Engineer
    Industries
    • Computer Software
    • Information Technology and Services
    Market Segment
    • 42% Mid-Market
    • 38% Small-Business
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • Snyk Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Easy Integrations
    5
    Integration Support
    4
    Integrations
    3
    Version Control
    3
    Ease of Use
    2
    Cons
    False Positives
    3
    Complex Configuration
    2
    Poor Customer Support
    2
    Poor Support Services
    2
    Pricing Issues
    2
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • Snyk features and usability ratings that predict user satisfaction
    7.9
    Test Automation
    Average: 8.7
    8.8
    Has the product been a good partner in doing business?
    Average: 9.1
    8.6
    Quality of Support
    Average: 9.2
    6.4
    Black-Box Scanning
    Average: 8.2
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Seller
    Snyk
    HQ Location
    Boston, Massachusetts
    Twitter
    @snyksec
    19,733 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    1,331 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

Snyk (pronounced sneak) is a developer security platform for securing custom code, open source dependencies, containers, and cloud infrastructure all from a single platform. Snyk’s developer securit

Users
  • Software Engineer
Industries
  • Computer Software
  • Information Technology and Services
Market Segment
  • 42% Mid-Market
  • 38% Small-Business
Snyk Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Easy Integrations
5
Integration Support
4
Integrations
3
Version Control
3
Ease of Use
2
Cons
False Positives
3
Complex Configuration
2
Poor Customer Support
2
Poor Support Services
2
Pricing Issues
2
Snyk features and usability ratings that predict user satisfaction
7.9
Test Automation
Average: 8.7
8.8
Has the product been a good partner in doing business?
Average: 9.1
8.6
Quality of Support
Average: 9.2
6.4
Black-Box Scanning
Average: 8.2
Seller Details
Seller
Snyk
HQ Location
Boston, Massachusetts
Twitter
@snyksec
19,733 Twitter followers
LinkedIn® Page
www.linkedin.com
1,331 employees on LinkedIn®
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    Checkmarx is constantly pushing the boundaries of Application Security (AppSec) Testing to make security seamless and simple for the world’s developers while giving CISOs the confidence and control th

    Users
    No information available
    Industries
    • Information Technology and Services
    • Computer Software
    Market Segment
    • 57% Enterprise
    • 26% Mid-Market
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • Checkmarx Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Ease of Use
    2
    Features
    2
    User Interface
    2
    CD Integration
    1
    CI
    1
    Cons
    Difficult Customization
    1
    Expensive
    1
    Poor Customer Support
    1
    Poor Navigation
    1
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • Checkmarx features and usability ratings that predict user satisfaction
    8.3
    Test Automation
    Average: 8.7
    8.3
    Has the product been a good partner in doing business?
    Average: 9.1
    8.3
    Quality of Support
    Average: 9.2
    5.6
    Black-Box Scanning
    Average: 8.2
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Year Founded
    2006
    HQ Location
    Paramus, NJ
    Twitter
    @Checkmarx
    7,170 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    908 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

Checkmarx is constantly pushing the boundaries of Application Security (AppSec) Testing to make security seamless and simple for the world’s developers while giving CISOs the confidence and control th

Users
No information available
Industries
  • Information Technology and Services
  • Computer Software
Market Segment
  • 57% Enterprise
  • 26% Mid-Market
Checkmarx Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Ease of Use
2
Features
2
User Interface
2
CD Integration
1
CI
1
Cons
Difficult Customization
1
Expensive
1
Poor Customer Support
1
Poor Navigation
1
Checkmarx features and usability ratings that predict user satisfaction
8.3
Test Automation
Average: 8.7
8.3
Has the product been a good partner in doing business?
Average: 9.1
8.3
Quality of Support
Average: 9.2
5.6
Black-Box Scanning
Average: 8.2
Seller Details
Year Founded
2006
HQ Location
Paramus, NJ
Twitter
@Checkmarx
7,170 Twitter followers
LinkedIn® Page
www.linkedin.com
908 employees on LinkedIn®
(56)4.2 out of 5
15th Easiest To Use in Static Application Security Testing (SAST) software
Save to My Lists
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    Coverity® is a fast, accurate, and highly scalable static analysis (SAST) solution that helps development and security teams address security and quality defects early in the software development life

    Users
    • Software Engineer
    Industries
    • Computer Software
    • Information Technology and Services
    Market Segment
    • 64% Enterprise
    • 27% Mid-Market
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • Coverity Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Accuracy
    1
    Vulnerability Detection
    1
    Cons
    Limited Features
    1
    Missing Features
    1
    Poor Customer Support
    1
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • Coverity features and usability ratings that predict user satisfaction
    8.5
    Test Automation
    Average: 8.7
    8.1
    Has the product been a good partner in doing business?
    Average: 9.1
    8.6
    Quality of Support
    Average: 9.2
    8.8
    Black-Box Scanning
    Average: 8.2
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Seller
    Synopsys
    Year Founded
    1986
    HQ Location
    Mountain View, CA
    Twitter
    @synopsys
    23,077 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    19,821 employees on LinkedIn®
    Ownership
    NASDAQ:SNPS
Product Description
How are these determined?Information
This description is provided by the seller.

Coverity® is a fast, accurate, and highly scalable static analysis (SAST) solution that helps development and security teams address security and quality defects early in the software development life

Users
  • Software Engineer
Industries
  • Computer Software
  • Information Technology and Services
Market Segment
  • 64% Enterprise
  • 27% Mid-Market
Coverity Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Accuracy
1
Vulnerability Detection
1
Cons
Limited Features
1
Missing Features
1
Poor Customer Support
1
Coverity features and usability ratings that predict user satisfaction
8.5
Test Automation
Average: 8.7
8.1
Has the product been a good partner in doing business?
Average: 9.1
8.6
Quality of Support
Average: 9.2
8.8
Black-Box Scanning
Average: 8.2
Seller Details
Seller
Synopsys
Year Founded
1986
HQ Location
Mountain View, CA
Twitter
@synopsys
23,077 Twitter followers
LinkedIn® Page
www.linkedin.com
19,821 employees on LinkedIn®
Ownership
NASDAQ:SNPS
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    Fortify Static Code Analyzer is designed to identify security vulnerabilities in the user's source code early in the software development lifecycle and provides best practices so developers can code m

    Users
    No information available
    Industries
    • Banking
    • Financial Services
    Market Segment
    • 50% Enterprise
    • 29% Small-Business
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • OpenText Fortify Static Code Analyzer Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Easy Integrations
    1
    Integrations
    1
    Integration Support
    1
    Cons
    False Positives
    1
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • OpenText Fortify Static Code Analyzer features and usability ratings that predict user satisfaction
    8.7
    Test Automation
    Average: 8.7
    8.5
    Has the product been a good partner in doing business?
    Average: 9.1
    8.7
    Quality of Support
    Average: 9.2
    7.0
    Black-Box Scanning
    Average: 8.2
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Seller
    OpenText
    Year Founded
    1991
    HQ Location
    Waterloo, ON
    Twitter
    @OpenText
    21,700 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    22,403 employees on LinkedIn®
    Ownership
    NASDAQ:OTEX
Product Description
How are these determined?Information
This description is provided by the seller.

Fortify Static Code Analyzer is designed to identify security vulnerabilities in the user's source code early in the software development lifecycle and provides best practices so developers can code m

Users
No information available
Industries
  • Banking
  • Financial Services
Market Segment
  • 50% Enterprise
  • 29% Small-Business
OpenText Fortify Static Code Analyzer Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Easy Integrations
1
Integrations
1
Integration Support
1
Cons
False Positives
1
OpenText Fortify Static Code Analyzer features and usability ratings that predict user satisfaction
8.7
Test Automation
Average: 8.7
8.5
Has the product been a good partner in doing business?
Average: 9.1
8.7
Quality of Support
Average: 9.2
7.0
Black-Box Scanning
Average: 8.2
Seller Details
Seller
OpenText
Year Founded
1991
HQ Location
Waterloo, ON
Twitter
@OpenText
21,700 Twitter followers
LinkedIn® Page
www.linkedin.com
22,403 employees on LinkedIn®
Ownership
NASDAQ:OTEX
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    Veracode helps companies that innovate through software deliver secure code on time. Unlike on-premise solutions that are hard to scale and focused on finding rather than fixing, Veracode comprises a

    Users
    No information available
    Industries
    • Information Technology and Services
    Market Segment
    • 75% Enterprise
    • 29% Mid-Market
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • Veracode Application Security Platform Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Security
    2
    Vulnerability Detection
    2
    Accuracy of Findings
    1
    Code Review
    1
    Comprehensive Solutions
    1
    Cons
    Expensive
    2
    Licensing Issues
    2
    Pricing Issues
    2
    Complexity
    1
    Cost Issues
    1
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • Veracode Application Security Platform features and usability ratings that predict user satisfaction
    9.2
    Test Automation
    Average: 8.7
    7.9
    Has the product been a good partner in doing business?
    Average: 9.1
    8.0
    Quality of Support
    Average: 9.2
    8.3
    Black-Box Scanning
    Average: 8.2
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Seller
    VERACODE
    Year Founded
    2006
    HQ Location
    Burlington, MA
    Twitter
    @Veracode
    22,304 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    579 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

Veracode helps companies that innovate through software deliver secure code on time. Unlike on-premise solutions that are hard to scale and focused on finding rather than fixing, Veracode comprises a

Users
No information available
Industries
  • Information Technology and Services
Market Segment
  • 75% Enterprise
  • 29% Mid-Market
Veracode Application Security Platform Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Security
2
Vulnerability Detection
2
Accuracy of Findings
1
Code Review
1
Comprehensive Solutions
1
Cons
Expensive
2
Licensing Issues
2
Pricing Issues
2
Complexity
1
Cost Issues
1
Veracode Application Security Platform features and usability ratings that predict user satisfaction
9.2
Test Automation
Average: 8.7
7.9
Has the product been a good partner in doing business?
Average: 9.1
8.0
Quality of Support
Average: 9.2
8.3
Black-Box Scanning
Average: 8.2
Seller Details
Seller
VERACODE
Year Founded
2006
HQ Location
Burlington, MA
Twitter
@Veracode
22,304 Twitter followers
LinkedIn® Page
www.linkedin.com
579 employees on LinkedIn®
(31)4.6 out of 5
View top Consulting Services for Semgrep
Save to My Lists
Entry Level Price:$40.00
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    Semgrep is a highly customizable application security platform built for security engineers and developers. Semgrep scans first and third-party code to find security issues unique to an organization,

    Users
    No information available
    Industries
    • Computer Software
    • Information Technology and Services
    Market Segment
    • 58% Mid-Market
    • 29% Enterprise
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • Semgrep Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Custom Rules
    4
    Features
    3
    Vulnerability Detection
    3
    Accuracy of Findings
    2
    Automated Scanning
    2
    Cons
    False Positives
    2
    Scanning Issues
    2
    Bug Issues
    1
    Dependency Issues
    1
    Difficulty
    1
  • User Satisfaction
    Expand/Collapse User Satisfaction
  • Semgrep features and usability ratings that predict user satisfaction
    9.2
    Test Automation
    Average: 8.7
    9.5
    Has the product been a good partner in doing business?
    Average: 9.1
    9.2
    Quality of Support
    Average: 9.2
    7.0
    Black-Box Scanning
    Average: 8.2
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Seller
    Semgrep
    Year Founded
    2017
    HQ Location
    San Francisco, US
    Twitter
    @semgrep
    3,778 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    191 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

Semgrep is a highly customizable application security platform built for security engineers and developers. Semgrep scans first and third-party code to find security issues unique to an organization,

Users
No information available
Industries
  • Computer Software
  • Information Technology and Services
Market Segment
  • 58% Mid-Market
  • 29% Enterprise
Semgrep Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Custom Rules
4
Features
3
Vulnerability Detection
3
Accuracy of Findings
2
Automated Scanning
2
Cons
False Positives
2
Scanning Issues
2
Bug Issues
1
Dependency Issues
1
Difficulty
1
Semgrep features and usability ratings that predict user satisfaction
9.2
Test Automation
Average: 8.7
9.5
Has the product been a good partner in doing business?
Average: 9.1
9.2
Quality of Support
Average: 9.2
7.0
Black-Box Scanning
Average: 8.2
Seller Details
Seller
Semgrep
Year Founded
2017
HQ Location
San Francisco, US
Twitter
@semgrep
3,778 Twitter followers
LinkedIn® Page
www.linkedin.com
191 employees on LinkedIn®