All categories

Static Application Security Testing (SAST)

https://www.capterra.com/sast-software/
Launch brief →
57 products2 pages scraped of 258 in category2 sponsored0 shortlisted
#ProductRatingReviewsRecEase / Svc / Feat / ValueDescription
2655-5.0 / 4.8 / 4.4 / 4.7Static Application Security Testing platform that empowers developers to create secure applications by providing continuous security. Learn more about GuardRails
274.85-4.6 / 5.0 / 4.6 / 5.0Jsmon is a SAST platform that detects vulnerabilities and uncovers hidden API endpoints in code. Learn more about Jsmon
2854-4.8 / 4.7 / 5.0 / 4.7A web security software application that provides English-language vulnerability assessments and other online safeguarding measures. Learn more about OWASP ZAP
2944-3.8 / 3.3 / 4.0 / 3.3Pair Sonatype Lift with your favorite SAST tool to find and fix performance, reliability, and style issues deep in your code. Learn more about Sonatype Lifecycle
304.73-4.0 / 5.0 / 4.3 / 4.0OX Security provides full visibility and end-to-end traceability over your entire software supply chain from code to cloud. Learn more about OX Security
314.33-4.7 / 5.0 / 4.0 / 4.0Apiiro helps organizations secure their Software Development Lifecycle (SDLC). Learn more about Apiiro
3252-5.0 / 5.0 / 4.5 / 5.0DoveRunner is a mobile app security software that protects digital assets from threats and piracy through content protection features. Learn more about DoveRunner
3352-4.5 / 5.0 / 5.0 / 5.0SAST solution that helps developers scan and analyze vulnerabilities across code libraries in real-time, ensuring application security. Learn more about Qwiet AI
3452-5.0 / 5.0 / 5.0 / 5.0Trusys AI is an enterprise AI assurance platform that enables Responsible AI through integrated risk management. Learn more about TRU PULSE
3552-4.0 / 4.0 / 4.5 / 4.0Fortify is an application security platform that protects applications from breaches, malware, and malicious insiders. Learn more about OpenText Application Security Aviator
3651-5.0 / 4.0 / 5.0 / 5.0Holistic Security For Your CI/CD Pipeline. Prevent software supply chain attacks and vulnerabilities, from commit to release. Learn more about Argon
3751-1.0 / 0.0 / 4.0 / 0.0IDA Pro is a powerful disassembler and a versatile debugger. Learn more about IDA Pro
3851-5.0 / 5.0 / 4.0 / 5.0Jit's platform is the easiest way to secure your code and cloud, providing full application and cloud security coverage in minutes. Learn more about Jit
3941-5.0 / 4.0 / 4.0 / 4.0SaaS-based tool that helps businesses secure application development pipelines via vulnerability scanning, automated testing, and more. Learn more about Conviso
4041-4.0 / 4.0 / 5.0 / 5.0CodeSonar is a static analysis tool that detects security vulnerabilities and quality issues in source code. Learn more about CodeSonar
4141-5.0 / 5.0 / 4.0 / 4.0Veracode is a cybersecurity tool that helps businesses identify & remediate vulnerabilities across the software development lifecycle. Learn more about Veracode
4200-– / – / – / –npmscan secures Node.js projects from supply chain attacks by detecting malware and vulnerabilities in npm packages. Learn more about npmscan
4300-– / – / – / –Advanced fuzzing solution that combines guided fuzzing with symbolic execution, a patented technology from CMU. Learn more about Mayhem
4400-– / – / – / –ZeroPath is an application security testing platform that uses AI to detect vulnerabilities while reducing false positives. Learn more about ZeroPath
4500-– / – / – / –Your code, always better. Automate source code remediation and migration, freeing your developers to deliver more value all the time. Learn more about Moderne
4600-– / – / – / –Static code analysis tool that helps developers check standard compliance, security vulnerabilities, and code quality issues. Learn more about Axivion
4700-– / – / – / –Real-time application security solution that assists businesses with runtime threat modeling and lifecycle management. Learn more about Heeler
4800-– / – / – / –CodeRisk is a real-time static application security testing tool for VS Code that detects vulnerabilities as users code. Learn more about CodeRisk
4900-– / – / – / –Coco is an embedded device code coverage analysis software that enables developers to assess how much of their code is being tested. Learn more about Coco
5000-– / – / – / –Cloud-based vulnerability management platform to detect, monitor, and remediate risks across enterprises' external attack surfaces. Learn more about Ostorlab