Software Alternatives & Reviews

Checkmarx

The industry’s most comprehensive AppSec platform, Checkmarx One is fast, accurate, and accelerates your business. subtitle

Top 12 Open-Source Alternatives to Checkmarx

SonarQube Snyk CodeClimate Cppcheck SonarCloud ESLint Sentinel StyleCop OWASP Dependency-Track Semgrep

Summary

The top open-source alternatives to Checkmarx are SonarQube, Snyk, and CodeClimate. One of the criteria for ordering this list is the number of mentions that products have on reliable external sources. You can suggest additional sources through the form here.
  1. SonarQube, a core component of the Sonar solution, is an open source, self-managed tool that systematically helps developers and organizations deliver Clean Code.
    Pricing:
    • Open Source
    • Freemium
    • Free Trial
    • $150.0 / Annually

    #Code Analysis #Code Review #Code Coverage 1 social mentions

  2. 2
    Snyk helps you use open source and stay secure. Continuously find and fix vulnerabilities for npm, Maven, NuGet, RubyGems, PyPI and much more.
    Pricing:
    • Open Source

    #Security #Security Monitoring #Security CI 85 social mentions

  3. Code Climate provides automated code review for your apps, letting you fix quality and security issues before they hit production. We check every commit, branch and pull request for changes in quality and potential vulnerabilities.
    Pricing:
    • Open Source

    #Code Coverage #Code Quality #Code Analysis 11 social mentions

  4. Cppcheck is an analysis tool for C/C++ code. It detects the types of bugs that the compilers normally fail to detect. The goal is no false positives. CppCheckDownload cppcheck for free.
    Pricing:
    • Open Source

    #Code Analysis #Code Coverage #Code Review 10 social mentions

  5. Enhance your workflow with continuous code quality, SonarCloud automatically analyzes and decorates pull requests on GitHub, Bitbucket, Azure DevOps and GitLab on major languages.
    Pricing:
    • Open Source
    • Freemium
    • Free Trial
    • €10.0 / Monthly (100,000 Lines of Code)

    #Developer Tools #DevOps Tools #SAST 12 social mentions

  6. 6
    The fully pluggable JavaScript code quality tool
    Pricing:
    • Open Source

    #Code Coverage #Developer Tools #Code Quality 229 social mentions

  7. An framework agnostic authentication & authorization library for ≥PHP 5.4.
    Pricing:
    • Open Source

    #Web Application Security #Security & Privacy #Code Collaboration 1 social mentions

  8. Analyzes C# source code to enforce a set of style and consistency rules. - StyleCop/StyleCop
    Pricing:
    • Open Source

    #Code Analysis #Code Coverage #Code Review

  9. OWASP Dependency-Track is an intelligent Software Composition Analysis (SCA) platform that allows...
    Pricing:
    • Open Source

    #Security #Code Analysis #Security & Privacy 19 social mentions

  10. 10
    Semgrep is a fast, open-source, static analysis tool for finding bugs and enforcing code standards at editor, commit, and CI time.
    Pricing:
    • Open Source

    #Code Analysis #Code Coverage #Code Quality 7 social mentions

  11. Findbugs is a tool that looks for bugs in Java code. Findbugs finds the bugs by analyzing computer software without actually executing programs. Using this software allows for easy debugging and repairing broken script. Read more about FindBugs.
    Pricing:
    • Open Source

    #Code Coverage #Code Analysis #Code Quality 3 social mentions

  12. 12
    Originally founded as a project to simplify sharing code, GitHub has grown into an application used by over a million people to store over two million code repositories, making GitHub the largest code host in the world.
    Pricing:
    • Open Source

    #Code Collaboration #Git #Version Control 2039 social mentions

Suggest an alternative
If you think we've missed something, please suggest an alternative to Checkmarx.
Please use the Feedback button if you think any of the listed products shouldn't be regarded as open-source.

Generic Checkmarx discussion

Log in or Post with