Coverity Scan
Static analysis for open source projects.
Coverity Scan is a static analysis service for open source projects that examines every line of code and potential execution path to identify defects, with an explanation of each defect's root cause. It supports Java, C/C++, C#, JavaScript, Ruby, and Python projects. The service was initiated in 2006 with the U.S. Department of Homeland Security as a research project focused on open source software quality and security, and is now managed by Black Duck.
Projects register and submit builds through the service, which provides defect reports and triage tools. An API endpoint supports automated build uploads, including larger builds, and weekly build limits vary by project size in lines of code. Supported tool versions are updated periodically, with only the latest two releases supported at a time.
Coverity Scan is offered as a free service for open source projects. Projects sign up and register to use it, and build limits are set according to the project's lines of code.
12 alternatives to Coverity Scan
Ranked by how well each tool replaces Coverity Scan: shared features, audience, price and popularity.
- 63 out of 100 match$10/mo
A tool for static C/C++ code analysis
Covers 2 of 8 key features and is open source.
Free planOpen source63 out of 100 matchContact salesA source code analysis tool that finds bugs in C, C++, and Objective-C programs.
Covers 2 of 8 key features and is open source.
Open source61 out of 100 match—A static analyzer for C, C++, C#, Java, Go, JavaScript and TypeScript code. Works on, and,
Covers 3 of 8 key features.
Free plan61 out of 100 matchFreeOpen source vulnerability scanner and software composition analysis for secure software
Covers 3 of 8 key features.
Free plan60 out of 100 matchContact sales- 60 out of 100 matchContact sales
Automate Java coding standards with Checkstyle.
Covers 3 of 8 key features and is open source.
Free planOpen source60 out of 100 matchContact sales- 59 out of 100 match$18/mo
- 58 out of 100 match—
A static code analysis tool for JavaScript
Covers 1 of 8 key features and is open source.
Open source57 out of 100 match—Code security platform combining AI analysis with expert human review of pull requests.
Covers 3 of 8 key features.
57 out of 100 match$129/mo