Coverity Scan Alternatives

Coverity Scan is described as 'Static Analysis allows to find and fix defects in your Java, C/C++ or C# open source project for free' and is an app in the development category. There are more than 10 alternatives to Coverity Scan for a variety of platforms, including Linux, Windows, Mac, Web-based and Visual Studio Code apps. The best Coverity Scan alternative is SonarQube, which is both free and Open Source. Other great apps like Coverity Scan are Shellcheck, Cppcheck, Axivion Suite and PVS-Studio.

Copy a direct link to this comment to your clipboard
Coverity Scan alternatives page was last updated

Alternatives list

  1. SonarQube icon
     27 likes
    Copy a direct link to this comment to your clipboard

    SonarQube is an open source quality management platform, dedicated to continuously analyze and measure source code quality, from the portfolio to the method. Static code analysis is available in the "Community Edition" (free / open source) for:

    28 SonarQube alternatives

    Cost / License

    • Freemium (Subscription)
    • Open Source

    Platforms

    • Mac
    • Windows
    • Linux
    • Online
     
    • SonarQube is the most popular Web-based, Windows, Mac & Linux alternative to Coverity Scan.

    • SonarQube is the most popular Open Source & free alternative to Coverity Scan.

    • SonarQube is Freemium and Open SourceCoverity Scan is Freemium and Proprietary
  2. Shellcheck icon
     5 likes
    Copy a direct link to this comment to your clipboard

    A simple tool for finding bugs in shell scripts.

    Cost / License

    • Free
    • Open Source

    Platforms

    • Online
    • Visual Studio Code
    • Vim
    • Sublime Text
    • GNU Emacs
    • Atom
     
  3. Cppcheck icon
     23 likes
    Copy a direct link to this comment to your clipboard

    Cppcheck is an static analysis tool for C/C++ code. Unlike C/C++ compilers and many other analysis tools it does not detect syntax errors in the code. Cppcheck primarily detects the types of bugs that the compilers normally do not detect.

    17 Cppcheck alternatives

    Cost / License

    • Free
    • Open Source

    Platforms

    • Windows
    • Linux
    • PortableApps.com
    • Eclipse
     
  4. Copy a direct link to this comment to your clipboard

    Axivion Suite includes static code analysis, architecture analysis and tools to identify technical debt to keep sw projects maintainable.

    Cost / License

    • Pay once or Subscription
    • Proprietary

    Platforms

    • Mac
    • Windows
    • Linux
     
    • Axivion Suite is the most popular commercial alternative to Coverity Scan.

    • Axivion Suite is Paid and ProprietaryCoverity Scan is Freemium and Proprietary
  5. PVS-Studio icon
     17 likes
    Copy a direct link to this comment to your clipboard

    PVS-Studio is a static analyzer that detects errors in source code of C, C++ and C# applications. The PVS-Studio tool is intended for developers of contemporary applications and it integrates into the Visual Studio 2005/2008/2010/2012/2013 environment.

    Cost / License

    • Subscription
    • Proprietary

    Platforms

    • Windows
    • Linux
    • MinGW
    • Microsoft Visual Studio
    • clang
     
  6. Flawfinder icon
     3 likes
    Copy a direct link to this comment to your clipboard

    Flawfinder examines C/C++ source code and reports possible security weaknesses ("flaws'') sorted by risk level. It's very useful for quickly finding and removing at least some potential security problems before a program is widely released to the public.

    Cost / License

    • Free
    • Open Source

    Platforms

    • Windows
    • Linux
     
  7.  2 likes
    Copy a direct link to this comment to your clipboard

    Splint is a tool for statically checking C programs for security vulnerabilities and coding mistakes. With minimal effort, Splint can be used as a better lint. If additional effort is invested adding annotations to programs, Splint can perform stronger checking than can be done...

    Cost / License

    • Free
    • Open Source

    Alerts

    • Discontinued

    Platforms

    • Windows
    • Linux
     
  8. Copy a direct link to this comment to your clipboard

    The Clang Static Analyzer is a source code analysis tool that finds bugs in C, C++, and Objective-C programs.

    Cost / License

    • Free
    • Open Source

    Platforms

    • Mac
    • Xcode
     
  9. Infer icon
     Like
    Copy a direct link to this comment to your clipboard

    Facebook Infer is a static analysis tool - if you give Infer some Objective-C, Java, or C code, it produces a list of potential bugs.

    Cost / License

    • Free
    • Open Source

    Platforms

    • Linux
     
  10.  Like
    Copy a direct link to this comment to your clipboard

    EDoC++ is a C++ source analysis tool designed to identify problems associated with the use of exceptions in C++ code. Additionally EDoC++ can be used to generate detailed documentation

    Cost / License

    • Free
    • Open Source

    Platforms

    • Windows
     
  11. Copy a direct link to this comment to your clipboard

    Parasoft’s C/C++test is the fully-integrated software testing solution for embedded safety-critical industries. Its automated software testing capabilities are also made for today’s high-velocity Agile DevOps environments.

    Cost / License

    • Pay once
    • Proprietary

    Platforms

    • Windows
    • Linux
     
  12. Semgrep icon
     Like
    Copy a direct link to this comment to your clipboard

    Semgrep is a fast, open-source, static analysis tool that excels at expressing code standards — without complicated queries — and surfacing bugs early at editor, commit, and CI time. Precise rules look like the code you’re searching; no more traversing abstract syntax trees or...

    Cost / License

    • Freemium (Subscription)
    • Open Source

    Platforms

    • Mac
    • Windows
    • Linux
     
12 of 17 Coverity Scan alternatives