Skip to content

List of supported SAST tools

Name Type Supported version Supported languages Legal
Bearer Data Flow Analysis (Source code) 1.51.1 Java Elastic License 2.0 (Source Available)
Coverity Static Analysis Data Flow Analysis (Source code and compiled code) 2024.12.1 Java Black Duck Terms of Service v2024.2
Cppcheck Data Flow Analysis (Compiled code) 2.13.0 C/C++ GPL-3.0 (Copyleft)
Semgrep Community Edition Pattern matching 1.143.0 C/C++, Java LGPL-2.1 (Copyleft)
Snyk Code Data Flow Analysis (Source code) 1.1301.0 C/C++, Java SNYK TERMS OF SERVICE
SpotBugs Data Flow Analysis (Compiled code) 4.9.8 Java LGPL-2.1 (Copyleft)