Shellcheck Alternatives
Shellcheck is described as 'A simple tool for finding bugs in shell scripts' and is an app in the development category. There are more than 10 alternatives to Shellcheck for a variety of platforms, including Linux, Windows, Mac, Web-based and BSD apps. The best Shellcheck alternative is SonarQube, which is both free and Open Source. Other great apps like Shellcheck are Cppcheck, Coverity Scan, Flawfinder and PVS-Studio.
- Free • Open Source
- 30 SonarQube alternatives
SonarQube is an open source quality management platform, dedicated to continuously analyze and measure source code quality, from the portfolio to the method. Static code analysis is available in the "Community Edition" (free / open source) for:
License model
- Freemium • Open Source
Country of Origin
Switzerland
Platforms
- Mac
- Windows
- Linux
- Online
SonarQube Features
Cppcheck is an static analysis tool for C/C++ code. Unlike C/C++ compilers and many other analysis tools it does not detect syntax errors in the code. Cppcheck primarily detects the types of bugs that the compilers normally do not detect.
License model
- Free • Open Source
Country of Origin
Sweden
EU
Platforms
- Windows
- Linux
- PortableApps.com
- Eclipse
Coverity Scan Static Analysis allows to find and fix defects in your Java, C/C++ or C# open source project for free.
License model
- Freemium • Proprietary
Country of Origin
United States
Platforms
- Mac
- Windows
- Linux
- Online
- BSD
Coverity Scan Features
Flawfinder examines C/C++ source code and reports possible security weaknesses ("flaws'') sorted by risk level. It's very useful for quickly finding and removing at least some potential security problems before a program is widely released to the public.
License model
- Free • Open Source
Country of Origin
United States
Platforms
- Windows
- Linux
Flawfinder Features
PVS-Studio is a static analyzer that detects errors in source code of C, C++ and C# applications. The PVS-Studio tool is intended for developers of contemporary applications and it integrates into the Visual Studio 2005/2008/2010/2012/2013 environment.
License model
- Paid • Proprietary
Country of Origin
Russia
Platforms
- Windows
- Linux
- MinGW
- Microsoft Visual Studio
- clang
PVS-Studio Features
- 8 Splint alternatives
Splint is a tool for statically checking C programs for security vulnerabilities and coding mistakes. With minimal effort, Splint can be used as a better lint. If additional effort is invested adding annotations to programs, Splint can perform stronger checking than can be done...
License model
- Free • Open Source
Platforms
- Windows
- Linux
DiscontinuedLast version 3.1.2 is from August 2007.
Splint Features
VCG is an automated code security review tool that handles C/C++, Java, C#, VB and PL/SQL. It has a few features that should hopefully make it useful to anyone conducting code security reviews, particularly where time is at a premium:
License model
- Free • Open Source
Platforms
- Windows
VisualCodeGrepper Features
Apache Yetus is a collection of libraries and tools that enable contribution and release processes for software projects.
License model
- Free • Open Source
Country of Origin
United States
Platforms
- Mac
- Linux
Liverpool Data Research Associates (LDRA) is a provider of software analysis, test and requirements traceability tools for the Public and Private sectors and a pioneer in static and dynamic software analysis.
License model
- Paid • Proprietary
Country of Origin
United Kingdom
Platforms
- Windows
- Linux
LDRA Testbed Features
- 30 Qodana alternatives
Qodana is a smart code quality platform by JetBrains best suited for working in teams. It can analyze code written in 60+ languages including Java, JavaScript, TypeScript, PHP, Kotlin, Python, Go, and C#.
License model
- Paid • Proprietary
Country of Origin
Czechia
EU
Platforms
- Visual Studio Code
- Online
- Self-Hosted
Qodana Features
- 28 Semgrep alternatives
Semgrep is a fast, open-source, static analysis tool that excels at expressing code standards — without complicated queries — and surfacing bugs early at editor, commit, and CI time. Precise rules look like the code you’re searching; no more traversing abstract syntax trees or...
License model
- Freemium • Open Source
Country of Origin
United States
Platforms
- Mac
- Windows
- Linux
Semgrep Features
We’re excited to introduce Opengrep, an open-source static code analysis engine built to ensure code security testing remains truly open and accessible to everyone. 🚀
License model
- Free • Open Source
Platforms
- Mac
- Linux
Opengrep Features