Cppcheck Alternatives
Cppcheck is described as 'static analysis tool for C/C++ code. Unlike C/C++ compilers and many other analysis tools it does not detect syntax errors in the code. Cppcheck primarily detects the types of bugs that the compilers normally do not detect' and is an app in the development category. There are more than 10 alternatives to Cppcheck for a variety of platforms, including Windows, Linux, Mac, Web-based and BSD apps. The best Cppcheck alternative is SonarQube, which is both free and Open Source. Other great apps like Cppcheck are Shellcheck, PVS-Studio, Coverity Scan and Flawfinder.
SonarQube
Is this is a good alternative?YesNo- Freemium • Open Source
27 SonarQube alternatives- Mac
- Windows
- Linux
- Online
SonarQube is an open source quality management platform, dedicated to continuously analyze and measure source code quality, from the portfolio to the method. Static code analysis is available in the "Community Edition" (free / open source) for:
- - SonarQube is the most popular Web-based, Windows, Mac & Linux alternative to Cppcheck.
- - SonarQube is the most popular Open Source & free alternative to Cppcheck.
SonarQube Features
Shellcheck
Is this is a good alternative?YesNo- Free • Open Source
16 Shellcheck alternatives- Online
- Visual Studio Code
- Vim
- Sublime Text
- GNU Emacs
- Atom
A simple tool for finding bugs in shell scripts.
Shellcheck Features
PVS-Studio
Is this is a good alternative?YesNo- Paid • Proprietary
11 PVS-Studio alternatives- Windows
- Linux
- MinGW
- Microsoft Visual Studio
- clang
PVS-Studio is a static analyzer that detects errors in source code of C, C++ and C# applications. The PVS-Studio tool is intended for developers of contemporary applications and it integrates into the Visual Studio 2005/2008/2010/2012/2013 environment.
- - PVS-Studio is the most popular commercial alternative to Cppcheck.
PVS-Studio Features
Coverity Scan
Is this is a good alternative?YesNo- Freemium • Proprietary
16 Coverity Scan alternatives- Mac
- Windows
- Linux
- Online
- BSD
Coverity Scan Static Analysis allows to find and fix defects in your Java, C/C++ or C# open source project for free.
Coverity Scan Features
Flawfinder
Is this is a good alternative?YesNo- Free • Open Source
11 Flawfinder alternatives- Windows
- Linux
Flawfinder examines C/C++ source code and reports possible security weaknesses ("flaws'') sorted by risk level. It's very useful for quickly finding and removing at least some potential security problems before a program is widely released to the public.
Flawfinder Features
Splint is a tool for statically checking C programs for security vulnerabilities and coding mistakes. With minimal effort, Splint can be used as a better lint. If additional effort is invested adding annotations to programs, Splint can perform stronger checking than can be done...
Splint Features
DiscontinuedLast version 3.1.2 is from August 2007.
PC-lint
Is this is a good alternative?YesNo- Paid • Proprietary
5 PC-lint alternatives- Mac
- Windows
- Linux
Gimpel Software PC-lint Plus, Flexible Static Analysis for C and C++ including MISRA Support
PC-lint Features
EDoC++ is a C++ source analysis tool designed to identify problems associated with the use of exceptions in C++ code. Additionally EDoC++ can be used to generate detailed documentation
EDoC++ Features
Clang Static Analyzer
Is this is a good alternative?YesNo- Free • Open Source
10 Clang Static Analyzer alternatives- Mac
- Xcode
The Clang Static Analyzer is a source code analysis tool that finds bugs in C, C++, and Objective-C programs.
Clang Static Analyzer Features
Apache Yetus is a collection of libraries and tools that enable contribution and release processes for software projects.[2] Portions are used by a wide variety of Apache projects, including Apache Hadoop and Apache HBase.[3]
Semgrep
Is this is a good alternative?YesNo- Freemium • Open Source
27 Semgrep alternatives- Mac
- Windows
- Linux
Semgrep is a fast, open-source, static analysis tool that excels at expressing code standards — without complicated queries — and surfacing bugs early at editor, commit, and CI time. Precise rules look like the code you’re searching; no more traversing abstract syntax trees or...
Semgrep Features
VisualCodeGrepper
Is this is a good alternative?YesNo15 VisualCodeGrepper alternatives- Free • Open Source
- Windows
VCG is an automated code security review tool that handles C/C++, Java, C#, VB and PL/SQL. It has a few features that should hopefully make it useful to anyone conducting code security reviews, particularly where time is at a premium: