Checkmarx vs. Codacy

Overview
ProductRatingMost Used ByProduct SummaryStarting Price
Checkmarx
Score 8.7 out of 10
N/A
Checkmarx, an Israeli headquartered company with US offices, provides a suite of application security software delivered via the Checkmarx Software Security Platform. Individual modules and capabilities include Checkmarx Static Application Security Testing, Checkmarx Software Composition Analysis, Checkmarx Interactive Application Security Testing (CxIAST)N/A
Codacy
Score 8.9 out of 10
N/A
Codacy automates code reviews and monitors code quality on every commit and pull request reporting back the impact of every commit or pull request, issues concerning code style, best practices, security, and many others. It monitors changes in code coverage, code duplication and code complexity. Saving developers time in code reviews thus efficiently tackling technical debt. JavaScript, Java, Ruby, Scala, PHP, Python, CoffeeScript and CSS are currently supported. Codacy is static analysis…
$0
Pricing
CheckmarxCodacy
Editions & Modules
No answers on this topic
Open Source
$0.00
Startup
$0.00
Pro
$15.00
user/mo
Enterprise
$40.00
user/mo
Offerings
Pricing Offerings
CheckmarxCodacy
Free Trial
NoYes
Free/Freemium Version
NoYes
Premium Consulting/Integration Services
NoYes
Entry-level Setup FeeNo setup feeOptional
Additional Details
More Pricing Information
Community Pulse
CheckmarxCodacy
Considered Both Products
Checkmarx

No answer on this topic

Codacy
Chose Codacy
Codacy is an amazing and fantastic tool I really like the UI/UX with great amount of customizations around rules for code review. It supports multiple languages like Java, PHP and Python hence making it the best, fast, and easy to get real-time quality codes. The support is …
Best Alternatives
CheckmarxCodacy
Small Businesses
GitLab
GitLab
Score 8.7 out of 10
GitHub
GitHub
Score 9.1 out of 10
Medium-sized Companies
Veracode
Veracode
Score 9.1 out of 10
Veracode
Veracode
Score 9.1 out of 10
Enterprises
Veracode
Veracode
Score 9.1 out of 10
Perforce P4
Perforce P4
Score 7.0 out of 10
All AlternativesView all alternativesView all alternatives
User Ratings
CheckmarxCodacy
Likelihood to Recommend
8.5
(5 ratings)
9.2
(6 ratings)
Usability
7.5
(2 ratings)
-
(0 ratings)
Support Rating
-
(0 ratings)
10.0
(1 ratings)
User Testimonials
CheckmarxCodacy
Likelihood to Recommend
Checkmarx
If you are going with SAST process or want to improve overall security posture then go for it like integrating it with post deployment steps. If you are more concerned about proactive controls better choose other options such as pee-commit hooks and CI security. Also choose other tools for DAST and API scans.
Read full review
Codacy
I recommend it for companies that use several programming languages, as it supports several languages ​​such as Java, Javascript, Python, among others. However, for companies that use only one programming language, there are specific tools for each language that can be more complete in this scenario. I do not recommend it for companies that only use open source software, in which case there are other tools available.
Read full review
Pros
Checkmarx
  • Detects security vulnerabilities in source code with accuracy and detail.
  • Integrates seamlessly with CI/CD pipelines, IDEs, and repositories.
  • Provides clear reports and actionable fix recommendations for developers.
Read full review
Codacy
  • Seamless and easy integrations with GitHub for fantastic pipeline of viewing errors.
  • Intuitive UI which is easy to customize and built-in patterns recommendations and security checks helps to fix issues faster.
  • Metrics and duplication and complexity easily identify areas that need attention to fix it easy.
  • Great for open-source projects.
Read full review
Cons
Checkmarx
  • Scan duration
  • False positives
  • Integration with other tools like Jenkins comes with some inconveniences.
Read full review
Codacy
  • There should be customization to get code quality for your own projects if standards are provided.
  • Offline or a standalone application is much needed from Codacy to get local support.
  • Spots a lot of errors and small ones that don't affect much about quality and are de-facto standards.
Read full review
Usability
Checkmarx
Their API based customizations which I leveraged to create an ASPM package, which is developer friendly and can extend above the dashboard features, other ones are UI which is great and feels clutter free. Menu and navigation is also good so as support. Only drawback is sometimes scan takes longer which I feel so can be reduced
Read full review
Codacy
No answers on this topic
Support Rating
Checkmarx
No answers on this topic
Codacy
Great company and support team!
Read full review
Alternatives Considered
Checkmarx
Checkmarx is easier to integrate with development tools and gives quick feedback during coding, which is helpful for developers. Veracode is more focused on scanning and reporting for compliance, but it’s more complex to set up. We chose Checkmarx because it fits better into our development process, offering faster scans and more useful suggestions for fixing problems
Read full review
Codacy
Even though it is paid while SonarQube is free, we chose Codacy because it is simpler to configure and maintain the implemented rules. In addition, it offers support for the main programming languages ​​on the market, ensuring that we can continue to use it if we want to use other languages ​​in new products.
Read full review
Return on Investment
Checkmarx
  • Improved ability to provide high level of IA confidence
  • Improved confidence in application-level security
Read full review
Codacy
  • The integration of Codacy with new code base is quick and easy.
  • Improves our code.
  • Easy to detect errors easily.
  • Ability to check duplicate codes.
Read full review
ScreenShots

Codacy Screenshots

Screenshot of Screenshot of Screenshot of Screenshot of Screenshot of Screenshot of