Software Alternatives, Accelerators & Startups

Codecov VS Checkmarx

Compare Codecov VS Checkmarx and see what are their differences

Codecov logo Codecov

Develop healthier code using Codecov's leading, dedicated code coverage solution. Try it free

Checkmarx logo Checkmarx

The industry’s most comprehensive AppSec platform, Checkmarx One is fast, accurate, and accelerates your business.
  • Codecov Landing page
    Landing page //
    2023-10-07
  • Checkmarx Landing page
    Landing page //
    2022-07-29

Codecov videos

Bring Codecov data to your next code review Sourcegraph Codecov extension

More videos:

  • Review - Codecov and CircleCI Orbs: Making Code Coverage Easy
  • Review - C++ Weekly - Ep 90 - Using Codecov and Project Badges

Checkmarx videos

Viewing results and understanding security issues via Checkmarx online scanner

More videos:

  • Demo - Checkmarx CxSAST Demonstration
  • Review - Meetups at Checkmarx: An Introduction to API Security
  • Review - Source code review with Checkmarx
  • Review - Checkmarx Results Review

Category Popularity

0-100% (relative to Codecov and Checkmarx)
Code Coverage
100 100%
0% 0
Code Analysis
15 15%
85% 85
Code Review
0 0%
100% 100
Code Quality
100 100%
0% 0

User comments

Share your experience with using Codecov and Checkmarx. For example, how are they different and which one is better?
Log in or Post with

Reviews

These are some of the external sources and on-site user reviews we've used to compare Codecov and Checkmarx

Codecov Reviews

11 Interesting Tools for Auditing and Managing Code Quality
Codecov is a comprehensive tool for managing code base as well as builds with a single utility. It analyses the pushed code, performs required checks, and auto-merges them if needed. Some of the more features listed below.
Source: geekflare.com

Checkmarx Reviews

Ten Best SonarQube alternatives in 2021
CheckMarx has been used to test the programs to rectify vulnerability in the code and try the security lapses. Checkmarx is the software program exposure Platform for the enterprise. It has an impressive Codebashing characteristic that has the threshold over SonarQube. The software tracking-reporting function is good too. The "delta-experiment" function is it's far genuinely...
Source: duecode.io

Social recommendations and mentions

Based on our record, Codecov should be more popular than Checkmarx. It has been mentiond 18 times since March 2021. We are tracking product recommendations and mentions on various public social media platforms and blogs. They can help you identify which product is more popular and what people think of it.

Codecov mentions (18)

  • To Review or Not to Review: The Debate on Mandatory Code Reviews
    If you're actively testing your codebase, which I hope you are, consider integrating a code coverage automatic checker such as codecov. This tool can alert if the coverage drops below a threshold. While I've had positive experiences with such tools, it's worth mentioning that the adoption process may pose some challenges. - Source: dev.to / 21 days ago
  • DevOps CI/CD Quick Start Guide with GitHub Actions 🛠️🐙⚡️
    The code coverage is printed out in the Coverage Report step but it is useful to track code coverage over time and have a repository badge which shows the current coverage percentage. There are many different code coverage and testing applications but we will use CodeCov. - Source: dev.to / 7 months ago
  • Build an Open Source Project: Behind the Scenes
    Usually, you can't build a product without using various tools. Some of them can be free, and some of them can be commercial. The great benefit of working on Open Source projects is that a lot of companies with commercial products have special offers for non-commercial development. In the case of the "xq" utility, which is written in Go, I use GoLand IDE by JetBrains. I paid for it for several months but later... - Source: dev.to / 11 months ago
  • CI CD strategies for UI apps and deployed services
    This YAML file details the CI implementation, including combined code coverage with CodeCov. For a simpler example without Cypress parallelization and code coverage, check the Github Actions YAML file of this template. The ideas presented here can be applied to any front-end application. - Source: dev.to / 12 months ago
  • Almost 1000 applications this year, still no job.
    High unit-test coverage, and automated coverage reports on your repo by something like Codecov. Source: about 1 year ago
View more

Checkmarx mentions (2)

  • A Guide to DevSecOps with API Gateway
    Automate security testing: Use tools such as OWASP ZAP, SonarQube, or Checkmarx to automate security testing. This will help you identify security issues early in the development process and reduce the risk of vulnerabilities being introduced into your code. - Source: dev.to / about 1 year ago
  • 11 Top DevSecOps Tools
    Application Security (AppSec) is the forte of Checkmarx, which is an award-winning AppSec Testing tool that integrates security policies into the DevOps workflow and ensures security across the application lifecycle. Checkmarx scans all your code and provides actionable insights for critical vulnerabilities. Checkmarx also offers developer-friendly AppSec training that makes the transition to DevSecOps more... - Source: dev.to / over 2 years ago

What are some alternatives?

When comparing Codecov and Checkmarx, you can also consider the following products

SonarQube - SonarQube, a core component of the Sonar solution, is an open source, self-managed tool that systematically helps developers and organizations deliver Clean Code.

CodeClimate - Code Climate provides automated code review for your apps, letting you fix quality and security issues before they hit production. We check every commit, branch and pull request for changes in quality and potential vulnerabilities.

Coverity Scan - Find and fix defects in your Java, C/C++ or C# open source project for free

Codacy - Automatically reviews code style, security, duplication, complexity, and coverage on every change while tracking code quality throughout your sprints.

Veracode - Veracode's application security software products are simpler and more scalable to increase the resiliency of your application infrastructure.

Coveralls - Coveralls is a code coverage history and tracking tool that tests coverage reports and statistics for engineering teams.