---
description: Discover the best Static Application Security Testing (SAST) Tools in Ireland. Compare top Static Application Security Testing (SAST) Tools tools with customer reviews, pricing and free demos.
image: https://gdm-localsites-assets-gfprod.imgix.net/images/software_advice/og_logo-55146305bbe7b450bea05c18e9be9c9a.png
title: Best Static Application Security Testing (SAST) Tools in Ireland - 2026 Reviews, Pricing & Demos
---

Breadcrumb: [Home](/) > [Static Application Security Testing (SAST) Tools](https://www.softwareadvice.ie/directory/4429/sast/software)

# Static Application Security Testing (SAST) Tools

Canonical: https://www.softwareadvice.ie/directory/4429/sast/software

Page: 1 / 3\
Next: [Next page](https://www.softwareadvice.ie/directory/4429/sast/software?page=2)

-----

## Products

1. [Invicti](https://www.softwareadvice.ie/software/174628/netsparker-security-scanner) — 4.7/5 (26 reviews) — Invicti is an application security platform designed to identify, validate and prioritize vulnerabilities in web appl...
2. [GitHub](https://www.softwareadvice.ie/software/397820/github) — 4.8/5 (6206 reviews) — GitHub is a project management and code sharing platform that allows users to share their codes with others and creat...
3. [GitLab](https://www.softwareadvice.ie/software/28004/gitlab) — 4.6/5 (1227 reviews) — GitLab is your intelligent orchestration platform for DevOps. GitLab is a unified platform for the full software deve...
4. [Dynatrace](https://www.softwareadvice.ie/software/234304/dynatrace) — 4.6/5 (86 reviews) — Dynatrace is an AIOps solution designed to help businesses automate multi-cloud processes and streamline collaboratio...
5. [SonarQube](https://www.softwareadvice.ie/software/182719/sonarqube) — 4.5/5 (68 reviews) — SonarQube is an automated code quality and security platform that serves individual developers, small teams, and larg...
6. [Softr](https://www.softwareadvice.ie/software/265124/softr) — 4.7/5 (64 reviews) — Softr is the AI app builder for business operations. Build secure internal tools and portals with databases, workflow...
7. [GitGuardian](https://www.softwareadvice.ie/software/206200/gitguardian) — 4.8/5 (42 reviews) — GitGuardian is a secrets security and machine identity governance platform built for mid-market and enterprise softwa...
8. [Kiuwan](https://www.softwareadvice.ie/software/445953/kiuwan) — 4.4/5 (35 reviews) — Fast, Flexible Code Security\! Kiuwan is a robust, end-to-end application security platform that integrates seamlessly...
9. [Invicti Web + API (formerly Acunetix)](https://www.softwareadvice.ie/software/77622/acunetix) — 4.4/5 (35 reviews) — Acunetix is a cloud-based digital security solution that assist security analysts with data protection, manual testin...
10. [ProScan](https://www.softwareadvice.ie/software/451068/ProScan) — 5.0/5 (33 reviews) — ProScan is a cloud-based assessment platform that helps businesses manage the strengths and motivators of their emplo...
11. [SiteLock](https://www.softwareadvice.ie/software/112461/sitelock) — 3.3/5 (27 reviews) — SiteLock is a cloud-based security platform, which helps accelerate website performance, conversions and protects the...
12. [Snyk](https://www.softwareadvice.ie/software/234874/snyk) — 4.6/5 (21 reviews) — Snyk is an AI security platform that helps software and technology, financial services, retail, telecommunications, a...
13. [Artifactory](https://www.softwareadvice.ie/software/267181/artifactory) — 4.6/5 (19 reviews) — Modern software application development has evolved from deploying products periodically to build them on a daily or ...
14. [Sigrid](https://www.softwareadvice.ie/software/420602/sigrid) — 4.1/5 (16 reviews) — Sigrid is a data-driven intelligence platform that helps users analyze and manage applications' source code. By using...
15. [CodeScan](https://www.softwareadvice.ie/software/220372/codescan) — 4.8/5 (14 reviews) — AutoRABIT is the only complete DevSecOps platform for Salesforce developers. Incorporate static code analysis, data s...
16. [BuildPiper](https://www.softwareadvice.ie/software/254964/buildpiper) — 4.2/5 (13 reviews) — BuildPiper is a microservices and Kubernetes delivery platform. It helps businesses with the entire software delivery...
17. [CodeScene](https://www.softwareadvice.ie/software/349713/codescene) — 4.7/5 (11 reviews) — CodeScene is a code analysis, visualization, and reporting tool. Cross reference contextual factors such as code qual...
18. [DeepSource](https://www.softwareadvice.ie/software/235303/deepsource) — 4.8/5 (10 reviews) — DeepSource is the code health solution, providing organizations with everything they need to build maintainable and s...
19. [Codacy](https://www.softwareadvice.ie/software/188932/codacy) — 4.6/5 (8 reviews) — Codacy is a source code management and automated testing solution that helps businesses streamline processes related ...
20. [Klocwork](https://www.softwareadvice.ie/software/234817/klocwork) — 4.6/5 (8 reviews) — Klocwork is a web-based static application security testing (SAST software designed to help businesses identify and f...
21. [Radware Alteon](https://www.softwareadvice.ie/software/450688/Radware-Alteon) — 4.9/5 (8 reviews) — Alteon is a cloud-based and on-premise application delivery and security platform designed to help businesses of all ...
22. [SpectralOps](https://www.softwareadvice.ie/software/335030/spectralops) — 4.6/5 (7 reviews) — Spectral Enables teams to build and ship software faster while avoiding security mistakes, credential leakage, miscon...
23. [JFrog](https://www.softwareadvice.ie/software/293826/soutronglobal) — 4.6/5 (7 reviews) — JFrog is a software supply chain platform that helps technology, financial services, telecommunications, public secto...
24. [SonarLint](https://www.softwareadvice.ie/software/260922/sonarlint) — 4.7/5 (7 reviews) — SonarQube for IDE, a core component of the Sonar solution, is a free and open-source IDE plugin, that is a developer'...
25. [SonarQube Cloud](https://www.softwareadvice.ie/software/318986/sonarcloud) — 4.3/5 (7 reviews) — SonarCloud is a cloud-based alternative of the SonarQube platform, offering continuous code quality and security anal...

-----

Page: 1 / 3\
Next: [Next page](https://www.softwareadvice.ie/directory/4429/sast/software?page=2)

## Related Categories

- [Vulnerability Scanner Software](https://www.softwareadvice.ie/directory/4415/vulnerability-scanner/software)
- [App Development Software](https://www.softwareadvice.ie/directory/4499/app-development/software)
- [Cloud Security Software](https://www.softwareadvice.ie/directory/4329/cloud-security/software)
- [Source Code Management Software](https://www.softwareadvice.ie/directory/4322/source-code-management/software)
- [Vulnerability Management Software](https://www.softwareadvice.ie/directory/4286/vulnerability-management/software)

## Links

- [View on SoftwareAdvice](https://www.softwareadvice.ie/directory/4429/sast/software)
- [All Categories](https://www.softwareadvice.ie/directory)

## This page is available in the following languages

| Locale | URL |
| de | <https://www.softwareadvice.de/directory/4429/sast/software> |
| en | <https://www.softwareadvice.com/sast/> |
| en-AU | <https://www.softwareadvice.com.au/directory/4429/sast/software> |
| en-GB | <https://www.softwareadvice.co.uk/directory/4429/sast/software> |
| en-IE | <https://www.softwareadvice.ie/directory/4429/sast/software> |
| en-NZ | <https://www.softwareadvice.co.nz/directory/4429/sast/software> |
| fr | <https://www.softwareadvice.fr/directory/4429/sast/software> |

-----

## Structured Data

<script type="application/ld+json">
  {"@context":"https://schema.org","@graph":[{"name":"SoftwareAdvice Ireland","address":{"@type":"PostalAddress","addressLocality":"Dublin","addressRegion":"D","postalCode":"D02 NP94","streetAddress":"2 Park Place, 3rd Floor, Hatch St Dublin, D02 NP94 Ireland"},"description":"We've helped more than 500000 buyers to find the right software.","email":"info@softwareadvice.ie","url":"https://www.softwareadvice.ie/","logo":"https://dm-localsites-assets-prod.imgix.net/images/software_advice/logo-white-d2cfd05bdd863947d19a4d1b9567dde8.svg","@id":"https://www.softwareadvice.ie/#organization","@type":"Organization","parentOrganization":"G2.com, Inc.","sameAs":[]},{"name":"SoftwareAdvice Ireland","url":"https://www.softwareadvice.ie/","@id":"https://www.softwareadvice.ie/#website","@type":"WebSite","publisher":{"@id":"https://www.softwareadvice.ie/#organization"},"potentialAction":{"query":"required","target":"https://www.softwareadvice.ie/search/?q={search_term_string}","@type":"SearchAction","query-input":"required name=search_term_string"}},{"name":"Static Application Security Testing (SAST) Tools","description":"Discover the best Static Application Security Testing (SAST) Tools in Ireland. Compare top Static Application Security Testing (SAST) Tools tools with customer reviews, pricing and free demos.","url":"https://www.softwareadvice.ie/directory/4429/sast/software","about":{"@id":"https://www.softwareadvice.ie/directory/4429/sast/software#itemlist"},"breadcrumb":{"@id":"https://www.softwareadvice.ie/directory/4429/sast/software#breadcrumblist"},"@id":"https://www.softwareadvice.ie/directory/4429/sast/software#webpage","@type":["WebPage","CollectionPage"],"mainEntity":{"@id":"https://www.softwareadvice.ie/directory/4429/sast/software#itemlist"},"publisher":{"@id":"https://www.softwareadvice.ie/#organization"},"inLanguage":"en-IE","isPartOf":{"@id":"https://www.softwareadvice.ie/#website"}},{"@id":"https://www.softwareadvice.ie/directory/4429/sast/software#breadcrumblist","@type":"BreadcrumbList","itemListElement":[{"name":"Home","position":1,"item":"/","@type":"ListItem"},{"name":"Static Application Security Testing (SAST) Tools","position":2,"item":"https://www.softwareadvice.ie/directory/4429/sast/software","@type":"ListItem"}]}]}
</script><script type="application/ld+json">
  {"name":"Best Static Application Security Testing (SAST) Tools in Ireland - 2026 Reviews, Pricing &amp; Demos","@context":"https://schema.org","@id":"https://www.softwareadvice.ie/directory/4429/sast/software#itemlist","@type":"ItemList","itemListElement":[{"name":"Invicti","position":1,"description":"Invicti is an application security platform designed to identify, validate and prioritize vulnerabilities in web applications and APIs. It incorporates Application Security Posture Management capabilities to support security operations across large application portfolios. The platform is used by organizations in sectors such as government, IT, telecommunications, financial services and healthcare to help maintain compliance standards and manage security at scale.\n\nThe platform includes Dynamic Application Security Testing, Static Application Security Testing, Software Composition Analysis, container security scanning and API security testing. Its scanning engine validates detected vulnerabilities to confirm they are exploitable. It identifies websites, applications, APIs and hidden assets within an organization and prioritizes high-risk applications for testing. The Application Security Posture Management feature consolidates findings from various security tools, providing a centralized view for vulnerability management and risk assessment.\n\nInvicti offers AI-powered remediation guidance, identifying the exact code locations of vulnerabilities and providing detailed resolution steps for developers. It supports integration with various development and security tools through a REST API and is compatible with CI/CD pipelines and DevOps workflows. The platform includes flexible deployment options and role-based access control to manage security across extensive application environments while maintaining accuracy and performance.","image":"https://gdm-catalog-fmapi-prod.imgix.net/ProductLogo/d386ac3d-34c6-4fa7-a326-728dc8167276.png","url":"https://www.softwareadvice.ie/software/174628/netsparker-security-scanner","@type":"ListItem"},{"name":"GitHub","position":2,"description":"GitHub is a project management and code sharing platform that allows users to share their codes with others and create/iterate using collective intelligence. The software can be used for different kinds of coding assignments including personal, open-source and business codes. It is available both on-premise and via cloud-based deployment.\n\n\nUsers can save all versions of their code and collaborate with other users by inviting them or tagging them with @mentions. Developers can join communities wherein they can follow open-source projects, leverage already-created codes for experiments, make suggestions and contribute to a project. All the contributions in open-source projects are recorded in developers’ profiles.\n\n\nBusinesses of all sizes use GitHub as an integrated tool for code development.","image":"https://gdm-catalog-fmapi-prod.imgix.net/ProductLogo/d0cfa614-0cde-454f-b5f0-aed4c83f6a76.png","url":"https://www.softwareadvice.ie/software/397820/github","@type":"ListItem"},{"name":"GitLab","position":3,"description":"GitLab is your intelligent orchestration platform for DevOps. \n\nGitLab is a unified platform for the full software development lifecycle, consolidating planning, source code management, CI/CD, security, and deployment in a single application. Teams eliminate context switching and manual handoffs, maintaining continuous flow from idea to production.\n\nBuilt-in CI/CD includes code testing, artifact management, environment management, and feature flags. Security runs continuously throughout development: SAST, DAST, dependency scanning, secret detection, container scanning, and IaC scanning.\n\nGitLab Duo Agent Platform brings team-level agentic AI to the entire lifecycle: code generation, automated code review, issue-to-merge-request flows, pipeline remediation, and vulnerability triage. Multiple agents work in parallel while developers steer.\n\nGitLab supports flexible deployment: SaaS, self-managed, dedicated single-tenant, and FedRAMP-compliant environments for government.\n\nContact us to learn more today.","image":"https://gdm-catalog-fmapi-prod.imgix.net/ProductLogo/0a4c64d3-570d-43a0-9ab9-725c546efdf4.png","url":"https://www.softwareadvice.ie/software/28004/gitlab","@type":"ListItem"},{"name":"Dynatrace","position":4,"description":"Dynatrace is an AIOps solution designed to help businesses automate multi-cloud processes and streamline collaboration across multiple teams through purpose-built use cases. Its filtering capabilities enable supervisors to search for specific entities according to requirements.\n\nThe system offers built-in support for several technologies such as OneAgent, ActiveMQ, Amazon Connect, Android Webkit, Ansible Tower, Azure Application Gateway and more. Dynatrace allows administrators to configure access permissions for staff members and track processes across web and mobile application tiers. Additionally, it helps businesses drill down into analyzed components and gain visibility into dependency details, user experience insights and performance metrics. \n\nDynatrace provides open API, which helps businesses integrate the platform with various third-party systems such as Slack, ServiceNow, GitHub and Google Analytics, among others. The product is available on annual subscriptions and support is extended via live chat, documentation, forums, phone, email and other online measures.","image":"https://gdm-catalog-fmapi-prod.imgix.net/ProductLogo/68183a9d-ab05-4850-890c-50d319013242.png","url":"https://www.softwareadvice.ie/software/234304/dynatrace","@type":"ListItem"},{"name":"SonarQube","position":5,"description":"SonarQube is an automated code quality and security platform that serves individual developers, small teams, and large enterprises across financial services, healthcare, government, and other industries. It continuously analyzes source code to detect bugs, security vulnerabilities, code smells, and architecture issues across 40+ programming languages and Infrastructure as Code platforms.\n\nThe software can be deployed cloud-based via SonarQube Cloud, or self-managed on-premises or in a private cloud for organizations with strict data policies. Docker and Kubernetes deployments are also supported.\n\nCore features include static application security testing with a library covering over 7,000 issue types, pull request analysis with Quality Gates that block non-compliant code from merging, secrets detection, test coverage tracking, and compliance reporting for standards including OWASP, PCI DSS, NIST SSDF, and MISRA C++:2023. Customizable dashboards and portfolio views help engineering managers monitor code health at scale. Native integrations connect with GitHub, GitLab, Azure DevOps, Jenkins, and major IDEs.\n\nAI-generated code can be automatically detected and reviewed using dedicated analysis rules, and a Remediation Agent can open verified-fix pull requests automatically.\n\nSupport is available through documentation and a knowledge base.","image":"https://images.g2crowd.com/uploads/product/image/a4dc620644f85fd7e4f00b0a2267d09c/sonarqube.png","url":"https://www.softwareadvice.ie/software/182719/sonarqube","@type":"ListItem"},{"name":"Softr","position":6,"description":"Softr is the AI app builder for business operations. Build secure internal tools and portals with databases, workflow automation, and integrations included. Access control, granular permissions, and hosting are built in, so non-technical teams can launch, maintain, and change their own tools without relying on developers.\n\nDescribe what you need, and the AI Co-Builder creates a working app with the database, pages, user groups, and navigation already connected. Prompt to make changes, edit visually, or switch between the two at any time. \n\nStore data in Softr Databases, a native relational database with linked records, rollups, and formulas. Or sync in real time with 20+ sources, including Airtable, HubSpot, Notion, Google Sheets, Supabase, PostgreSQL, and Salesforce, so apps fit your existing stack.\n\nSoftr Workflows automates processes with no third-party tools required. Trigger a workflow from a button click, a form submission, a schedule, a webhook, or a record change. Add conditions, loops, branches, and AI steps, and connect to Gmail, Calendly, or any external API. \n\nBusiness teams use Softr to replace spreadsheets, manual processes, and rigid legacy systems with custom client portals, CRMs, intranets, project trackers, inventory systems, and ERPs. Over 1 million teams, including Netflix, Google, Stripe, UPS, and Clay, use Softr to build and run business operations apps. \n\nSoftr is SOC 2 Type II and GDPR compliant, with data hosted in Germany. Email and chat support is available on all plans, along with help docs, tutorials, templates, and an active community. Business plans add personalized onboarding and priority live chat, and Enterprise customers get a dedicated Customer Success Manager and a private Slack channel.","image":"https://images.g2crowd.com/uploads/product/image/f607bfab4e770689c0b9852e855e6b08/softr.jpg","url":"https://www.softwareadvice.ie/software/265124/softr","@type":"ListItem"},{"name":"GitGuardian","position":7,"description":"GitGuardian is a secrets security and machine identity governance platform built for mid-market and enterprise software development teams. GitGuardian works across industries where code security is critical, including finance, healthcare, and technology. The software is deployed via the cloud and integrates with source code repositories, CI/CD pipelines, and developer workflows. Core features include automated secrets detection, which scans code for exposed credentials and API keys, and machine identity governance tools that help teams manage and audit non-human access across systems. GitGuardian also provides policy enforcement capabilities, allowing organizations to set rules around how secrets are handled and remediated. Developers and security teams can use incident dashboards to track and resolve detected issues. Support is available through email, a knowledge base, and live chat, giving teams multiple ways to get help when needed.","image":"https://images.g2crowd.com/uploads/product/image/b4dbb3d6174b12fa93d943d30ed8f232/gitguardian.png","url":"https://www.softwareadvice.ie/software/206200/gitguardian","@type":"ListItem"},{"name":"Kiuwan","position":8,"description":"Fast, Flexible Code Security!\n\nKiuwan is a robust, end-to-end application security platform that integrates seamlessly into your development process. \n\nOur toolset includes Static Application Security Testing (SAST), Software Composition Analysis (SCA), Software Governance and Code Quality, empowering your team to quickly identify and remediate vulnerabilities.\n\nTop features:\n✅ Extensive language support: Over 30 programming languages.\n✅ Detailed action plans: Prioritize remediation with tailored action plans.\n✅ Code Security: Seamless Static Application Security Testing (SAST) integration.\n✅ Insights: On-demand or continuous scanning Software Composition Analysis (SCA) to help reduce third-party threats.\n✅ One-click Software Bill of Materials (SBOM) generation.\n\n\nCode Smarter. Secure Faster. Ship Sooner","image":"https://gdm-catalog-fmapi-prod.imgix.net/ProductLogo/a8dcb3c0-541d-479f-a555-bed59bc42274.png","url":"https://www.softwareadvice.ie/software/445953/kiuwan","@type":"ListItem"},{"name":"Invicti Web + API (formerly Acunetix)","position":9,"description":"Acunetix is a cloud-based digital security solution that assist security analysts with data protection, manual testing and compliance reporting. It is primarily designed to scan websites and identify vulnerabilities that can compromise networks.\n\nKey features include site crawling, analysis, threat detection, SQL injection testing, network scanning and testing. Its vulnerability scanner crawls through open-source software and custom-built applications using black box and grey box techniques. With its network security module, users can test routers, firewalls and switches and detect misconfigurations.\n\nAcunetix comes with an application programming interface (API) that enables firms to integrate it with their workflows and processes. It if offered on a one-time subscription basis and support is provided via phone and email.","image":"https://images.g2crowd.com/uploads/product/image/6a3238e4d612493df71f3d4551d4b90b/invicti-web-api-formerly-acunetix.png","url":"https://www.softwareadvice.ie/software/77622/acunetix","@type":"ListItem"},{"name":"ProScan","position":10,"description":"ProScan is a cloud-based assessment platform that helps businesses manage the strengths and motivators of their employees by conducting surveys that identify individual traits and preferences.\n\n ProScan enables managers to align tasks with each employee's natural abilities, manage stress and optimize performance and retention. The platform helps businesses administer surveys, review reports and coach employees on their strengths and growth opportunities.","image":"https://gdm-catalog-fmapi-prod.imgix.net/ProductLogo/b8e48a2d-0f4c-4114-83ec-079f86532337.png","url":"https://www.softwareadvice.ie/software/451068/ProScan","@type":"ListItem"},{"name":"SiteLock","position":11,"description":"SiteLock is a cloud-based security platform, which helps accelerate website performance, conversions and protects the online business against hackers. Designed for all industries, the platform provides solutions for vulnerability management, database protection and compliance maintenance across all applications.\n\n\nKey features of SiteLock include search engine monitoring and spam blacklists, detecting malware and automatically initiating the removal process, protection of the WordPress database and vulnerability patching of core client management systems.\n\n\nSiteLock’s TrueCode (SAST), static application security testing module, helps find common vulnerabilities in all applications with in-depth analysis. Its TrueShield Web Application Firewall (WAF) filters out malicious traffic and prevents attacks. The software offers compatibility with any hosting environment and maintains compliance with Payment Card Industry (PCI) data security standards.\n\n\nSiteLock allows application programming interface (API) integration and comes with an iOS mobile application. It is available on a monthly subscription and extends 24/7 customer support via phone, email, chat.","image":"https://gdm-catalog-fmapi-prod.imgix.net/ProductLogo/6dc6f5dd-7237-4f5c-a5cf-b4098df41023.png","url":"https://www.softwareadvice.ie/software/112461/sitelock","@type":"ListItem"},{"name":"Snyk","position":12,"description":"Snyk is an AI security platform that helps software and technology, financial services, retail, telecommunications, and healthcare businesses find and fix security vulnerabilities in their code, open-source dependencies, containers, and cloud infrastructure. Snyk is available as a cloud-based solution, making it accessible directly through a web browser without additional installation. Core features include automated vulnerability scanning, license compliance checks, and infrastructure-as-code security testing. Developers can identify risks early in the development process and apply suggested fixes without leaving their existing tools and workflows. Teams working with containers and Kubernetes environments can also monitor and address security issues specific to those setups. Snyk serves small, midsize, and large organizations looking to build security into their development pipelines. Support is available through a knowledge base, community forums, email, and live chat, giving users multiple ways to get help based on their needs.","image":"https://images.g2crowd.com/uploads/product/image/630875599869fc792265ba9508dc29e9/snyk.png","url":"https://www.softwareadvice.ie/software/234874/snyk","@type":"ListItem"},{"name":"Artifactory","position":13,"description":"Modern software application development has evolved from deploying products periodically to build them on a daily or hourly basis using CI servers. Developers and DevOps teams need to support the continual flow of code from the individual developer’s machine to the organization’s production environment.\n\nThese applications are typically assembled using a blend of open source, proprietary, and third party software, with dependencies on many shared libraries and packages. Software dependencies have their own set of dependencies, resulting in long chains of dependencies and an explosion of binaries to keep track of. To make things worse, this web of interconnected software has to flow through different software development platforms and tools, which can bog down the workflow of your software releases. Developers need to trust these shared components, and DevOps leaders need a central access and management point for component usage in your software development lifecycle.\n\nJFrog Artifactory is repository management software that gives you a single source of truth for sourcing, storing, sharing, and deploying software components. Artifactory bridges the gap between the development teams’ desktops and the organization’s servers, load balancers and databases hosted on production systems. \n\nArtifactory provides stable and reliable access to repositories that store a large number of common artifacts and binaries across different environments. These assets are securely stored and access is controlled based on fine grained permissions and role-based access control. Actions done to a repository can be traced back to a user. To simply access and address performance and availability issues, repositories and binaries can be locally cached.\n\nArtifactory supports 30+ package types (such as Maven, Git, npm, NuGet, PyPI, PHP, Golang, and more), artifacts, and their corresponding metadata. Artifactory is also used as a full-featured Kubernetes registry, serving as your Docker container registry and your Helm Chart repository. Artifactory easily integrates with all major DevOps tools and CI/CD platforms.","image":"https://gdm-catalog-fmapi-prod.imgix.net/ProductLogo/2f492671-8e3d-4523-9fdf-2fd3b4ec5487.png","url":"https://www.softwareadvice.ie/software/267181/artifactory","@type":"ListItem"},{"name":"Sigrid","position":14,"description":"Sigrid is a data-driven intelligence platform that helps users analyze and manage applications' source code. By using advanced analysis techniques, it provides users with objective insights into the software's technical and business aspects including risks, costs, and opportunities on multiple software quality aspects.\n\nThe platform consists of various features that include code quality analysis, architectural assessment, security and performance assessments, and risk management. Sigrid's code quality analysis examines codebases to help users identify weaknesses and defects in the code, allowing developers and teams to easily prioritize which areas to address first and improve overall quality and maintainability.\n\nSigrid enables users to measure, evaluate, and monitor the entire software landscape health at every stage of its life cycle – whether buying, building, or operating. The architectural assessment feature analyzes the structure and design of the application, identifying technical risks and areas where the architecture may not align with business objectives.","image":"https://gdm-catalog-fmapi-prod.imgix.net/ProductLogo/7fbb591b-986a-4cbd-812b-c8ee8870d591.png","url":"https://www.softwareadvice.ie/software/420602/sigrid","@type":"ListItem"},{"name":"CodeScan","position":15,"description":"AutoRABIT is the only complete DevSecOps platform for Salesforce developers. Incorporate static code analysis, data security, and CI/CD capabilities to increase the security, release velocity, and quality of your Salesforce code deployments. \n\nCodeScan allows staff members to manage technical debt by detecting code vulnerabilities, issues and bugs in real-time. It lets IT professionals run multiple scans in compliance with open web application security project (OWASP), SysAdmin, audit, network, and security (SANS), and common weakness enumeration (CWE) standards and regulations. Additionally, managers can conduct branch analysis and generate weekly reports to gain insights into overall code performance.\n\nCodeScan comes with an application programming interface(API), which allows businesses to integrate the platform with several third-party solutions, including Github, Salesforce, and Bitbucket. Pricing is available on request and support is extended via live chat, email, FAQs, phone and other online measures.","image":"https://gdm-catalog-fmapi-prod.imgix.net/ProductLogo/27625740-314b-462c-a10a-0d1f1f138f0c.png","url":"https://www.softwareadvice.ie/software/220372/codescan","@type":"ListItem"},{"name":"BuildPiper","position":16,"description":"BuildPiper is a microservices and Kubernetes delivery platform. It helps businesses with the entire software delivery process, starting right from the developer's workstation to the final product release.\n\nWith BuildPiper, organizations can manage the underlying process of their new product release or updates. It's a nocode\\lowcode platform where any developer or a DevOps engineer with beginner-level knowledge can easily manage and execute the releases and updates of the product. The platform improves productivity by ensuring developers' time is spent on important tasks.\n\n BuildPiper enables automation for specific tasks and includes various functionalities to facilitate rollback of updates, types of deployments with incremental models and more.","image":"https://gdm-catalog-fmapi-prod.imgix.net/ProductLogo/0420462b-3ca2-44f2-a95a-d2d68f7584ed.png","url":"https://www.softwareadvice.ie/software/254964/buildpiper","@type":"ListItem"},{"name":"CodeScene","position":17,"description":"CodeScene is a code analysis, visualization, and reporting tool. Cross reference contextual factors such as code quality, team dynamics, and delivery output to get actionable insights to effectively reduce technical debt and deliver better code quality.\n\nWe enable software development teams to make confident, data-driven decisions that fuel performance and developer productivity\n\nDon’t just evaluate code, elevate it.\n\nCodeScene guides developers and technical leaders to: \n\n- Get a holistic overview and evolution of your software system in one single dashboard.\n\n- Identify, prioritize, and tackle technical debt based on return on investment.\n\n- Maintain a healthy codebase with powerful CodeHealth™ Metrics, spend less time on rework and more time on innovation. \n\n- Seamlessly integrate with Pull Requests and editors, get actionable code reviews and refactoring recommendations. \n\n- Set Improvement goals and quality gates for teams to work towards while monitoring the progress. \n\n- Support retrospectives by identifying areas for improvement.\n\n- Benchmark performance against personalized trends.\nUnderstand the social side of the code, measure socio-technical factors like key personnel dependencies, knowledge sharing and inter-team coordination. \n\n- Put findings into context based on how your organization and your code evolves.\n\nSupporting 28+ programming languages, CodeScene also offers an automated integration with GitHub, BitBucket, Azure DevOps or GitLab pull requests to incorporate the analysis results into existing delivery workflows. Get early warnings and recommendations about complex code before merging it to the main branch, set quality gates to trigger in case your code health declines.","image":"https://gdm-catalog-fmapi-prod.imgix.net/ProductLogo/9a5a497c-b29b-47e3-96a2-e490a5926b35.jpeg","url":"https://www.softwareadvice.ie/software/349713/codescene","@type":"ListItem"},{"name":"DeepSource","position":18,"description":"DeepSource is the code health solution, providing organizations with everything they need to build maintainable and secure software while elevating the velocity of their software development cycle.\n\nMost organizations use many tools cobbled together to improve the quality and security of their code base. DeepSource is an all-in-one alternative to all those products and a replacement for all manual tooling for code health organizations have built in their CI pipeline.\n\nDevelopers and security engineers are empowered to discover and fix maintainability and security problems in the codebase during the earliest stages of software development. Here is how teams benefit from DeepSource:\n\n- One-click integration with all major version control systems\n\n- Continuous analysis on every commit\n\n- Accurate and fast analyzers (guaranteed below 5% false-positive rate)\n\n- Automated remediation of issues with Autofix™️\n\n- Automated code style formatting \n\n- Integrated code coverage tracking \n\n- Code maintainability and security reporting\n\n- Self-hosted version with one-click installation and upgrades","image":"https://gdm-catalog-fmapi-prod.imgix.net/ProductLogo/43f2a0b4-91b7-494b-b8f4-4062b87276c4.png","url":"https://www.softwareadvice.ie/software/235303/deepsource","@type":"ListItem"},{"name":"Codacy","position":19,"description":"Codacy is a source code management and automated testing solution that helps businesses streamline processes related to code standardization, security monitoring, quality control, and more on a centralized platform. It allows administrators to connect the platform with GitHub to automatically configure user roles and permission settings, ensuring user and data protection.\n\nCodacy enables team members to identify OWASP Top 10 vulnerabilities to foresee and prevent critical issues. It allows employees to utilize pre-designed rules or custom configuration files to manage analysis picking processes. It lets users identify and track code coverage processes and conduct performance checkers to ensure vulnerability protection.","image":"https://gdm-catalog-fmapi-prod.imgix.net/ProductLogo/d481788d-6493-40d4-949f-b574ad46ea8d.png","url":"https://www.softwareadvice.ie/software/188932/codacy","@type":"ListItem"},{"name":"Klocwork","position":20,"description":"Klocwork is a web-based static application security testing (SAST software designed to help businesses identify and fix software security issues in compliance with security standards such as OWASP, CWE, PCI DSS, CERT and ISO/IEC TS 17961 and DISA STIG. It offers differential analysis, which lets IT professionals analyze files using system context data through the Klocwork Server. \n\nDevOps teams using Klocwork can control access permissions, manage approval workflows, generate compliance and security reports, display metrics and trending data and prioritize defects on the basis of severity, lifecycle and location. Containerized builds enable managers to use internal or external cloud services to streamline code analysis. Additionally, businesses can integrate the system with various architectural enforcement and visualization tools.\n\nKlocwork offers plugins for a variety of IDEs including Eclipse, Microsoft Visual Studio, IntelliJ and more. Custom rules can be implemented using the graphical custom checker creation tool.","image":"https://gdm-catalog-fmapi-prod.imgix.net/ProductLogo/5822c014-8788-40c1-b840-28d4ec210a35.jpeg","url":"https://www.softwareadvice.ie/software/234817/klocwork","@type":"ListItem"},{"name":"Radware Alteon","position":21,"description":"Alteon is a cloud-based and on-premise application delivery and security platform designed to help businesses of all sizes manage application traffic across cloud and data centers and integrates with application protection services to manage cyberthreats. The solution generates analytics to help monitor application service level agreements (SLAs) and cyberattacks.\n\nIt comes with global elastic licensing (GEL) and provides protection to investments and workloads. Alteon enables users to access an automation scripts library to manage private cloud environments such as OpenStack and VMware and can be connected to DevOps CI/CD processes. The solution also provides bot management, threat intelligence, and API protection tools and comes with an integrated web application firewall (WAF).","image":"https://gdm-catalog-fmapi-prod.imgix.net/ProductLogo/c1dd0c8d-65ac-47e2-a365-e9a457faa5d9.png","url":"https://www.softwareadvice.ie/software/450688/Radware-Alteon","@type":"ListItem"},{"name":"SpectralOps","position":22,"description":"Spectral Enables teams to build and ship software faster while avoiding security mistakes, credential leakage, misconfiguration and data breaches without agents, across the entire software development lifecycle. Now you can code safer on any stack, faster than ever.\n\nSpectral is a DevSecOps security company that builds next-gen AI-based security products for developers focusing on developer productivity and happiness in the cloud-native era. The Spectral stack detects and remediates mistakes at every stage of the development lifecycle for private assets such as code, data and configuration, as well as discovers and protects organizational blindspots for public assets.","image":"https://gdm-catalog-fmapi-prod.imgix.net/ProductLogo/5cf53fd8-6b0a-43dc-984b-6ee2a3894829.jpeg","url":"https://www.softwareadvice.ie/software/335030/spectralops","@type":"ListItem"},{"name":"JFrog","position":23,"description":"JFrog is a software supply chain platform that helps technology, financial services, telecommunications, public sector, and manufacturing organizations manage and secure software from development to production. It serves teams of all sizes, from small groups to large enterprises, including Fortune 500 companies.\n\nThe platform can be deployed as cloud-based SaaS on AWS, GCP, or Azure, self-hosted on-premises, or in hybrid configurations combining both options.\n\nCore features include universal artifact repository management, software composition analysis, static application security testing, secrets detection, and infrastructure as code security. Open-source package curation blocks risky dependencies before they enter the pipeline. Teams can generate SBOMs, track compliance with evidence-based policy gates, and manage immutable release bundles for distribution. The platform also supports ML model registry, training, deployment, and monitoring, along with an AI Catalog for governing AI models and detecting unauthorized AI usage.\n\nJFrog connects with 100+ tools including GitHub, ServiceNow, MLflow, and SageMaker, reducing the need for separate point solutions across development, security, and operations teams.\n\nSupport is available through a knowledge base, documentation, and vendor support channels.","image":"https://images.g2crowd.com/uploads/product/image/5cf4ee793f73c672ce8aa94bc061fa90/jfrog-2024-03-28.png","url":"https://www.softwareadvice.ie/software/293826/soutronglobal","@type":"ListItem"},{"name":"SonarLint","position":24,"description":"SonarQube for IDE, a core component of the Sonar solution, is a free and open-source IDE plugin, that is a developer's first line of defense to find and fix coding issues in real time. SonarQube for IDE resolves issues in code and provides rich contextual guidance to help developers improve their skills while enhancing their productivity.\n\nSupporting +30 languages and the most popular IDEs, SonarQube for IDE leverages over 5,000 language-specific rules to instantly highlight common coding issues that may lead to bugs and vulnerabilities.","image":"https://gdm-catalog-fmapi-prod.imgix.net/ProductLogo/34d17e79-84da-474e-a790-2a114c3d6dce.png","url":"https://www.softwareadvice.ie/software/260922/sonarlint","@type":"ListItem"},{"name":"SonarQube Cloud","position":25,"description":"SonarCloud is a cloud-based alternative of the SonarQube platform, offering continuous code quality and security analysis as a service. SonarCloud integrates seamlessly with popular version control and CI/CD platforms such as GitHub, Bitbucket, and Azure DevOps. It provides static code analysis to identify and help remediate issues such as bugs and security vulnerabilities. SonarCloud enables developers to receive immediate feedback on their code within their development environment, facilitating the maintenance of high-quality code standards, and promoting a culture of continuous improvement in software development projects. It helps produce software that is secure, reliable, and maintainable.","image":"https://gdm-catalog-fmapi-prod.imgix.net/ProductLogo/1685de1f-4afa-4374-95d8-31e70f2e8f0f.png","url":"https://www.softwareadvice.ie/software/318986/sonarcloud","@type":"ListItem"}],"numberOfItems":25}
</script>
