Software Alternatives & Reviews

Black Duck

Organizations worldwide use Black Duck Software's open source management and security solutions to ensure security in their applications and containers.‎About · ‎We're Hiring!

Top 12 Open-Source Alternatives to Black Duck

SonarQube Snyk OWASP Dependency-Track FOSSA Labs64 NetLicensing StyleCop pyup.io GitGuardian SonarCloud

Summary

The top open-source alternatives to Black Duck are SonarQube, Snyk, and OWASP Dependency-Track. One of the criteria for ordering this list is the number of mentions that products have on reliable external sources. You can suggest additional sources through the form here.
  1. SonarQube, a core component of the Sonar solution, is an open source, self-managed tool that systematically helps developers and organizations deliver Clean Code.
    Pricing:
    • Open Source
    • Freemium
    • Free Trial
    • $150.0 / Annually

    #Code Analysis #Code Review #Code Coverage 1 social mentions

  2. 2
    Snyk helps you use open source and stay secure. Continuously find and fix vulnerabilities for npm, Maven, NuGet, RubyGems, PyPI and much more.
    Pricing:
    • Open Source

    #Security #Security Monitoring #Security CI 85 social mentions

  3. OWASP Dependency-Track is an intelligent Software Composition Analysis (SCA) platform that allows...
    Pricing:
    • Open Source

    #Security #Code Analysis #Security & Privacy 19 social mentions

  4. 4
    Open source license compliance and dependency analysis
    Pricing:
    • Open Source

    #Security #Code Analysis #Web Application Security 7 social mentions

  5. Monetize your digital products and services
    Pricing:
    • Open Source
    • Freemium
    • Free Trial
    • €60.0 / Monthly (Basic Plan)

    #License Management #Threat Detection And Prevention #Monitoring Tools 11 social mentions

  6. 6
    Watching your Node.js dependencies
    Pricing:
    • Open Source

    #License Management #Security & Privacy #OS & Utilities

  7. Analyzes C# source code to enforce a set of style and consistency rules. - StyleCop/StyleCop
    Pricing:
    • Open Source

    #Code Analysis #Code Coverage #Code Review

  8. Helps you to keep your dependencies updated and secure.
    Pricing:
    • Open Source

    #License Management #OS & Utilities #Security & Privacy 2 social mentions

  9. Detect secrets in source code, public and private!
    Pricing:
    • Open Source

    #Security & Privacy #Chrome Extensions #Security 2 social mentions

  10. Enhance your workflow with continuous code quality, SonarCloud automatically analyzes and decorates pull requests on GitHub, Bitbucket, Azure DevOps and GitLab on major languages.
    Pricing:
    • Open Source
    • Freemium
    • Free Trial
    • €10.0 / Monthly (100,000 Lines of Code)

    #Developer Tools #DevOps Tools #SAST 12 social mentions

  11. 11
    The fully pluggable JavaScript code quality tool
    Pricing:
    • Open Source

    #Code Coverage #Developer Tools #Code Quality 229 social mentions

  12. Findbugs is a tool that looks for bugs in Java code. Findbugs finds the bugs by analyzing computer software without actually executing programs. Using this software allows for easy debugging and repairing broken script. Read more about FindBugs.
    Pricing:
    • Open Source

    #Code Coverage #Code Analysis #Code Quality 3 social mentions

Suggest an alternative
If you think we've missed something, please suggest an alternative to Black Duck.
Please use the Feedback button if you think any of the listed products shouldn't be regarded as open-source.

Black Duck discussion

Log in or Post with