We’re excited to introduce Opengrep, an open-source static code analysis engine built to ensure code security testing remains truly open and accessible to everyone. 🚀
Cost / License
- Free
- Open Source (LGPL-2.1)
Platforms
- Mac
- Linux




SonarQube is described as 'Open source quality management platform, dedicated to continuously analyze and measure source code quality, from the portfolio to the method. Static code analysis vailable in the "Community Edition" (free / open source) for:' and is an app in the development category. There are more than 25 alternatives to SonarQube for a variety of platforms, including Windows, Linux, Web-based, SaaS and Mac apps. The best SonarQube alternative is Codacy. It's not free, so if you're looking for a free alternative, you could try Codacy or Shellcheck. Other great apps like SonarQube are Coverity Scan, Flawfinder, SAST Online and Teamscale.
We’re excited to introduce Opengrep, an open-source static code analysis engine built to ensure code security testing remains truly open and accessible to everyone. 🚀




Astrée statically analyzes whether the programming language is used correctly and whether there can be any runtime errors during any execution in any environment. This covers any use of C or C++ that, according to the selected language standard, has undefined behavior or...




Code analysis tool, including breakdown of developer contributions, and a clear breakdown of different types of problems with trends over time.
Kiuwan Application Security is an end-to-end Appsec platform. Monitoring, action plans and seamless integration within unlocalized teams are but a few of the features offered by Kiuwan.
Kiuwan Application Security is the most popular Android alternative to SonarQube.