Chose SonarQube
Checkmarx vs. Semgrep vs. SonarQube
Checkmarx vs. Semgrep vs. SonarQube
| Product | Rating | Most Used By | Product Summary | Starting Price |
|---|---|---|---|---|
Checkmarx | N/A | Checkmarx, an Israeli headquartered company with US offices, provides a suite of application security software delivered via the Checkmarx Software Security Platform. Individual modules and capabilities include Checkmarx Static Application Security Testing, Checkmarx Software Composition Analysis, Checkmarx Interactive Application Security Testing (CxIAST) | N/A | |
Semgrep | N/A | Semgrep is a static analysis tool purpose-built for CI/CD. It is an open-source tool for expressing code standards and surfacing bugs early in the development flow. 1,000+ precise rules and SaaS infrastructure in an editor tool get commit-time or CI results with no abstract syntax trees or regexes. | $0 per month | |
SonarQube | N/A | SonarQube is an automated code review solution, serving as the verification layer for code quality and SDLC security. SonarQube is used to ensure that code is secure, reliable, and maintainable. It is available through SaaS or self-managed deployment. | $0 |
| Checkmarx | Semgrep | SonarQube | ||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| Editions & Modules | No answers on this topic |
|
| |||||||||||||||||||||
| Offerings |
| |||||||||||||||||||||||
| Entry-level Setup Fee | No setup fee | No setup fee | No setup fee | |||||||||||||||||||||
| Additional Details | — | — | — | |||||||||||||||||||||
| More Pricing Information | ||||||||||||||||||||||||
| Checkmarx | Semgrep | SonarQube | |
|---|---|---|---|
| Considered Multiple Products | ![]() Checkmarx No answer on this topic | ![]() Semgrep No answer on this topic | ![]() SonarQube |
| Checkmarx | Semgrep | SonarQube | |
|---|---|---|---|
| Small Businesses | GitLab Score 8.7 out of 10 | GitLab Score 8.7 out of 10 | GitLab Score 8.7 out of 10 |
| Medium-sized Companies | Veracode Score 8.8 out of 10 | Veracode Score 8.8 out of 10 | Veracode Score 8.8 out of 10 |
| Enterprises | Veracode Score 8.8 out of 10 | Veracode Score 8.8 out of 10 | Veracode Score 8.8 out of 10 |
| All Alternatives | View all alternatives | View all alternatives | View all alternatives |
| Checkmarx | Semgrep | SonarQube | |
|---|---|---|---|
| Likelihood to Recommend | 8.4 (5 ratings) | - (0 ratings) | 8.8 (35 ratings) |
| Usability | 7.6 (2 ratings) | - (0 ratings) | 9.1 (2 ratings) |
| Support Rating | - (0 ratings) | - (0 ratings) | 9.0 (1 ratings) |
| Checkmarx | Semgrep | SonarQube | |
|---|---|---|---|
| Likelihood to Recommend | ![]() Checkmarx
| ![]() Semgrep No answers on this topic | ![]() SonarSource Sarl
|
| Pros | ![]() Checkmarx
| ![]() Semgrep No answers on this topic | ![]() SonarSource Sarl
|
| Cons | ![]() Checkmarx
| ![]() Semgrep No answers on this topic | ![]() SonarSource Sarl
|
| Usability | ![]() Checkmarx
| ![]() Semgrep No answers on this topic | ![]() SonarSource Sarl
|
| Support Rating | ![]() Checkmarx No answers on this topic | ![]() Semgrep No answers on this topic | ![]() SonarSource Sarl
|
| Alternatives Considered | ![]() Checkmarx
| ![]() Semgrep No answers on this topic | ![]() SonarSource Sarl
|
| Return on Investment | ![]() Checkmarx
| ![]() Semgrep No answers on this topic | ![]() SonarSource Sarl
|
| ScreenShots | SonarQube Screenshots |









