
Clang Static Analyzer
Cppcheck
lgtm.com
VisualCodeGrepper
Parasoft C/C++test
Coverity Scan
Flawfinder
LDRA Testbed
Landscape (Python)
Codacy
CodeClimate
Source Insight
SonarQube
CodeFactor.io
Source-Navigator NG
Scrutinizer
Clang Static Analyzer
Landscape (Python)No Landscape (Python) videos yet. You could help us improve this page by suggesting one.
Based on our record, Clang Static Analyzer seems to be more popular. It has been mentiond 8 times since March 2021. We are tracking product recommendations and mentions on various public social media platforms and blogs. They can help you identify which product is more popular and what people think of it.
Wondering how many of these memory errors would be caught by running the Clang Static Analyzer (or similar) on them. https://clang-analyzer.llvm.org Alternatively, testing these projects with Asan enabled: https://clang.llvm.org/docs/AddressSanitizer.html. - Source: Hacker News / 6 months ago
Clang has a similar tool, the Clang Static Analyzer: https://clang-analyzer.llvm.org/. - Source: Hacker News / over 2 years ago
Continuous Integration and Continuous Deployment [CI/CD] pipelines play a crucial role in enforcing code quality, especially when working with memory-unsafe languages. By integrating automated dynamic analysis tools like Valgrind or AddressSanitizer, static analysis tools like Clang Static Analyzer or cppcheck, and manual code review processes, developers can identify and mitigate many memory-related... - Source: dev.to / over 2 years ago
No one static analyzer catches everything. It's best to run multiple. Popular ones are cppcheck, clang-analyzer, GCC static analyzer in GCC 10+, flawfinder, lizard. Source: over 3 years ago
With "cross translation units" (CTU) analysis a static analyzer could derive a constraint on `some_function` return value and check this against the array size to detect a possible bug. The Clang static analyzer [1], used through CodeChecker (CC) [2], do support CTU (enabled with `--ctu`). I'm very happy with the result on the code I'm working on. Of course this is not magic, and it's important to understand the... - Source: Hacker News / over 3 years ago
Cppcheck - Cppcheck is an analysis tool for C/C++ code. It detects the types of bugs that the compilers normally fail to detect. The goal is no false positives. CppCheckDownload cppcheck for free.
Codacy - Automatically reviews code style, security, duplication, complexity, and coverage on every change while tracking code quality throughout your sprints.
lgtm.com - lgtm.com is a platform for code analytics.
CodeClimate - Code Climate provides automated code review for your apps, letting you fix quality and security issues before they hit production. We check every commit, branch and pull request for changes in quality and potential vulnerabilities.
VisualCodeGrepper - VCG is an automated code security review tool that handles C/C++, Java, C#, VB and PL/SQL.
Source Insight - Source Insight is a programming editor & code browser with built-in live analysis for C/C++, C#, Java, and more; helping you understand large projects.