getapp-logo

App comparison

Add up to 4 apps below to see how they compare. You can also use the "Compare" buttons while browsing.

GetApp offers objective, independent research and verified user reviews. We may earn a referral fee when you visit a vendor through our links. 

Static Application Security Testing (SAST) Software - Page 3

Last updated: September 2026

Filter results

Features


Integrated with


Pricing model


Devices supported


Organization types


User rating


64 software options

GitLab logo

Cloud/self-managed DevSecOps platform for enterprises

learn more
Cloud, self-managed, or dedicated DevSecOps platform for enterprises, unifying source control, CI/CD, and security scanning.

Read more about GitLab

Users also considered
Axivion logo

Static Code Analysis to Assure the Quality of Your Software

learn more
Axivion Static Code Analysis by Qt QA enhances code quality via automated analysis for C/C++, compliance, and software longevity.

Read more about Axivion

Users also considered
HCL AppScan logo

Fast, Accurate, Agile Application Security Testing

learn more
HCL AppScan empowers developers, DevOps and security teams with a suite of testing tools to find and fix vulnerabilities in applications at all phases of development. It integrates seamlessly with DevSecOps pipelines to ensure continuous security and compliance.

Read more about HCL AppScan

Users also considered
SoonLab logo

AI-driven game creation & browser gaming platform

learn more
SoonLab is an AI-powered game creation and discovery platform that enables users to generate games without coding knowledge. The platform hosts a library of user-created games across multiple genres including action, puzzle, RPG, simulation, and strategy that can be played instantly in a web browser. Users can browse community-created content and utilize AI tools to design and publish their own games through the platform's game generator feature.

Read more about SoonLab

Users also considered
Codeant AI Code Reviewer logo

Cloud-based AI code review for enterprise teams

learn more
Codeant AI Code Reviewer is a cloud-based AI pull request review and security platform for enterprise engineering teams, bundling.

Read more about Codeant AI Code Reviewer

Users also considered
Coco logo

Code coverage analysis software for embedded devices

learn more
Coco is an embedded device code coverage analysis software that enables developers to assess how much of their code is being tested.

Read more about Coco

Users also considered
Cycode logo

Cloud/on-prem agentic AppSec platform for enterprises

learn more
Cycode is a cloud-based or self-hosted agentic application security platform unifying AST, SSCS, and ASPM for enterprise DevSecOps.

Read more about Cycode

Users also considered
Ostorlab logo

Cloud-based vulnerability management platform

learn more
Ostorlab is a cloud-based vulnerability management platform designed to help businesses detect, monitor, and remediate risks across enterprises' external attack surfaces.

Read more about Ostorlab

Users also considered
DryRun Security logo

Cloud-based AI app security for dev & AppSec teams

learn more
DryRun Security is a cloud-based AI-native application security platform for engineering and AppSec teams that reviews every pull.

Read more about DryRun Security

Users also considered
AquilaX logo

AI-enabled security solution for developers

learn more
AquilaX provides AI-enabled security scanning for developers, supporting GitHub, GitLab, and Bitbucket repositories. With SecuriTron, their AI assistant, users can automate scan setup and identify vulnerabilities through both automated and tailored scans.

Read more about AquilaX

Users also considered
Akto logo

API Security Platform for Modern Appsec teams

learn more
Akto is an industry-leading solution for API discovery, API security posture management, sensitive data exposure, API security testing.

Read more about Akto

Users also considered
ThunderScan logo

SAST Application Security

learn more
ThunderScan by DefenseCode is a Static Application Security Testing (SAST) software that allows businesses to perform deep and extensive security analysis of various application source codes. ThunderScan can be integrated with existing CI/CD pipelines and DevOps environment, offering a platform that requires almost no user input, easy to use, and can be deployed during or after development.

Read more about ThunderScan

Users also considered
Veracode Application Security Platform logo

Cloud-based app security platform for enterprises

learn more
Cloud-based application security platform for enterprises offering SAST, DAST, SCA, container scanning, and IaC scanning.

Read more about Veracode Application Security Platform

Users also considered
Bearer logo

Fix data security risks before you release

learn more
Bearer enables security and engineering teams to implement data security policies and mitigate risks throughout the development lifecycle.

Read more about Bearer

Users also considered