We’re excited to introduce Opengrep, an open-source static code analysis engine built to ensure code security testing remains truly open and accessible to everyone. 🚀
Cost / License
- Free
- Open Source (LGPL-2.1)
Platforms
- Mac
- Linux




CodeSonar is described as 'Improve quality, reduce risk, and ship with confidence. GrammaTech's static analysis SAST tool as part of your secure SDLC identifies bugs that can result in system crashes, unexpected behavior, and security breaches' and is an website in the development category. There are more than 10 alternatives to CodeSonar, not only websites but also apps for a variety of platforms, including Windows, Linux, Mac and Self-Hosted apps. The best CodeSonar alternative is SonarQube, which is both free and Open Source. Other great sites and apps similar to CodeSonar are Codacy, SlowQL, SQuORE and Code Climate.
We’re excited to introduce Opengrep, an open-source static code analysis engine built to ensure code security testing remains truly open and accessible to everyone. 🚀




Kiuwan Application Security is an end-to-end Appsec platform. Monitoring, action plans and seamless integration within unlocalized teams are but a few of the features offered by Kiuwan.
DefenseCode ThunderScan® is a SAST (Static Application Security Testing, WhiteBox Testing) solution for performing deep and extensive security analysis of application source code.

Qodana is a smart code quality platform by JetBrains best suited for working in teams. It can analyze code written in 60+ languages including Java, JavaScript, TypeScript, PHP, Kotlin, Python, Go, and C#.