About

Modern software development must match the speed of the business. But the modern AppSec tool soup lacks integration and creates complexity that slows software development life cycles. Contrast simplifies the complexity that impedes today’s development teams. Legacy AppSec employs a one-size-fits-all vulnerability detection and remediation approach that is inefficient and costly. Contrast automatically applies the best analysis and remediation technique, dramatically improving efficiencies and efficacy. Separate AppSec tools create silos that obfuscate the gathering of actionable intelligence across the application attack surface. Contrast delivers centralized observability that is critical to managing risks and capitalizing on operational efficiencies, both for security and development teams. Contrast Scan is pipeline native and delivers the speed, accuracy, and integration demanded by modern software development.

About

OpenText Static Application Security Testing (SAST) identifies and remediates security vulnerabilities in source code early in the software development lifecycle. It supports extensive language coverage and integrates seamlessly with popular CI/CD tools such as Jenkins, Azure DevOps, Jira, and Visual Studio. The platform uses advanced static code analysis and AI-driven insights to prioritize risks and reduce false positives, enabling developers to focus on fixing critical vulnerabilities efficiently. With its customizable code analysis and rule sets, it helps reduce development time by catching issues early. OpenText SAST complies with industry standards like OWASP and offers flexible deployment options including SaaS, private cloud, and on-premises. This comprehensive approach enhances application security without sacrificing development speed or accuracy.

About

​PHPStan is an open source static analysis tool for PHP that identifies bugs in your codebase without the need for writing tests. It thoroughly scans your entire code, detecting both obvious and subtle issues, including those in rarely executed conditional statements that tests might not cover. By integrating PHPStan into your development environment and continuous integration pipelines, you can prevent bugs from reaching production. It is compatible with legacy codebases, even those lacking an autoloader, and facilitates gradual improvement through configurable rule levels. This approach allows developers to incrementally enhance code quality without being overwhelmed by numerous errors on the initial run. ​PHPStan supports advanced PHP features ahead of their official release, such as generics, array shapes, and checked exceptions, by leveraging PHPDocs. It also offers extensions for popular frameworks like Symfony, Laravel, and Doctrine, ensuring comprehensive understanding.

About

Polyspace Code Prover is a static analysis tool designed to prove the absence of critical runtime errors in C and C++ code without executing it. By utilizing formal methods, it analyzes all code paths and input scenarios to identify potential issues such as overflows, divide-by-zero errors, and out-of-bounds accesses. It provides insights into variables' ranges and identifies unreachable code, helping developers optimize software performance and ensure quality. Polyspace Code Prover supports safety standards like IEC 61508, ISO 26262, and DO-178C, making it suitable for industries requiring rigorous software certification.

Platforms Supported

Windows
Mac
Linux
Cloud
On-Premises
iPhone
iPad
Android
Chromebook

Platforms Supported

Windows
Mac
Linux
Cloud
On-Premises
iPhone
iPad
Android
Chromebook

Platforms Supported

Windows
Mac
Linux
Cloud
On-Premises
iPhone
iPad
Android
Chromebook

Platforms Supported

Windows
Mac
Linux
Cloud
On-Premises
iPhone
iPad
Android
Chromebook

Audience

Digital businesses looking for a platform to secure their software development life cycle

Audience

Development and security teams seeking a comprehensive, AI-enhanced static application security testing solution integrated into CI/CD pipelines to identify and remediate vulnerabilities early

Audience

PHP developers in need of a solution to enhance code quality by identifying and resolving bugs through static analysis

Audience

Companies searching for a solution to verify software interprocedural, control, and data flow behavior

Support

Phone Support
24/7 Live Support
Online

Support

Phone Support
24/7 Live Support
Online

Support

Phone Support
24/7 Live Support
Online

Support

Phone Support
24/7 Live Support
Online

API

Offers API

API

Offers API

API

Offers API

API

Offers API

Screenshots and Videos

Screenshots and Videos

Screenshots and Videos

Screenshots and Videos

Pricing

$0
Free Version
Free Trial

Pricing

No information available.
Free Version
Free Trial

Pricing

Free
Free Version
Free Trial

Pricing

No information available.
Free Version
Free Trial

Reviews/Ratings

Overall 0.0 / 5
ease 0.0 / 5
features 0.0 / 5
design 0.0 / 5
support 0.0 / 5

This software hasn't been reviewed yet. Be the first to provide a review:

Review this Software

Reviews/Ratings

Overall 0.0 / 5
ease 0.0 / 5
features 0.0 / 5
design 0.0 / 5
support 0.0 / 5

This software hasn't been reviewed yet. Be the first to provide a review:

Review this Software

Reviews/Ratings

Overall 0.0 / 5
ease 0.0 / 5
features 0.0 / 5
design 0.0 / 5
support 0.0 / 5

This software hasn't been reviewed yet. Be the first to provide a review:

Review this Software

Reviews/Ratings

Overall 0.0 / 5
ease 0.0 / 5
features 0.0 / 5
design 0.0 / 5
support 0.0 / 5

This software hasn't been reviewed yet. Be the first to provide a review:

Review this Software

Training

Documentation
Webinars
Live Online
In Person

Training

Documentation
Webinars
Live Online
In Person

Training

Documentation
Webinars
Live Online
In Person

Training

Documentation
Webinars
Live Online
In Person

Company Information

Contrast Security
Founded: 2012
United States
www.contrastsecurity.com/platform

Company Information

OpenText
Founded: 1991
Canada
www.opentext.com/products/static-application-security-testing

Company Information

PHPStan
United States
phpstan.org

Company Information

MathWorks
Founded: 1984
United States
www.mathworks.com/products/polyspace-code-prover.html

Alternatives

Resurface

Resurface

Resurface Labs

Alternatives

Alternatives

Alternatives

CodeSonar

CodeSonar

CodeSecure
Flawnter

Flawnter

CyberTest
PT Application Inspector

PT Application Inspector

Positive Technologies
Helix QAC

Helix QAC

Perforce
PT Application Inspector

PT Application Inspector

Positive Technologies

Categories

Categories

Categories

Categories

Application Security Features

Analytics / Reporting
Open Source Component Monitoring
Source Code Analysis
Third-Party Tools Integration
Training Resources
Vulnerability Detection
Vulnerability Remediation

Automated Testing Features

Hierarchical View
Move & Copy
Parameterized Testing
Requirements-Based Testing
Security Testing
Supports Parallel Execution
Test Script Reviews
Unicode Compliance

Cloud Workload Protection Features

Anomaly Detection
Asset Discovery
Cloud Gap Analysis
Cloud Registry
Data Loss Prevention (DLP)
Data Security
Governance
Logging & Reporting
Machine Learning
Security Audit
Workload Diversity

Static Application Security Testing (SAST) Features

Application Security
Dashboard
Debugging
Deployment Management
IDE
Multi-Language Scanning
Real-Time Analytics
Source Code Scanning
Vulnerability Scanning

Application Security Features

Analytics / Reporting
Open Source Component Monitoring
Source Code Analysis
Third-Party Tools Integration
Training Resources
Vulnerability Detection
Vulnerability Remediation

Integrations

5X
ArmorCode
Azure DevOps Server
Bitbucket
Docker
Gradle
HivePro Uni5
IBM Cloud
Java
Magento
Oobeya
OpenText Software Delivery Management
PHPUnit
SQUAD1
Selenium
Silk Security
Snyk
Swagger
Visual Studio Code
WordPress

Integrations

5X
ArmorCode
Azure DevOps Server
Bitbucket
Docker
Gradle
HivePro Uni5
IBM Cloud
Java
Magento
Oobeya
OpenText Software Delivery Management
PHPUnit
SQUAD1
Selenium
Silk Security
Snyk
Swagger
Visual Studio Code
WordPress

Integrations

5X
ArmorCode
Azure DevOps Server
Bitbucket
Docker
Gradle
HivePro Uni5
IBM Cloud
Java
Magento
Oobeya
OpenText Software Delivery Management
PHPUnit
SQUAD1
Selenium
Silk Security
Snyk
Swagger
Visual Studio Code
WordPress

Integrations

5X
ArmorCode
Azure DevOps Server
Bitbucket
Docker
Gradle
HivePro Uni5
IBM Cloud
Java
Magento
Oobeya
OpenText Software Delivery Management
PHPUnit
SQUAD1
Selenium
Silk Security
Snyk
Swagger
Visual Studio Code
WordPress
Claim Contrast Security and update features and information
Claim Contrast Security and update features and information
Claim OpenText Static Application Security Testing and update features and information
Claim OpenText Static Application Security Testing and update features and information
Claim PHPStan and update features and information
Claim PHPStan and update features and information
Claim Polyspace Code Prover and update features and information
Claim Polyspace Code Prover and update features and information