Mend SAST vs. Coverity Static Analysis (SAST)

Overview
ProductRatingMost Used ByProduct SummaryStarting Price
Mend SAST
Score 6.0 out of 10
N/A
Mend SAST (replacing the former DefenseCode ThunderScan) is a SAST solution for performing deep and extensive security analysis of application source code. Mend SAST requires almost no user input and can be deployed during or after development with integration into an existing DevOps environment and CI/CD pipeline. The SAST solution provides a way to automate code inspection as an alternative to the demanding and time-consuming procedure of manual code reviews. With Mend SAST it is possible to…N/A
Synopsys Coverity
Score 8.4 out of 10
N/A
Synopsys offers the Coverity static application security testing (SAST) solution, to help users build software that’s more secure, higher-quality, and compliant with standards.N/A
Pricing
Mend SASTCoverity Static Analysis (SAST)
Editions & Modules
No answers on this topic
No answers on this topic
Offerings
Pricing Offerings
Mend SASTSynopsys Coverity
Free Trial
NoNo
Free/Freemium Version
NoNo
Premium Consulting/Integration Services
NoYes
Entry-level Setup FeeOptionalOptional
Additional DetailsContact the Synopsys Software Integrity Group (SIG) Sales team at https://www.synopsys.com/software-integrity/contact-sales.html for more detailed pricing information.
More Pricing Information
Best Alternatives
Mend SASTCoverity Static Analysis (SAST)
Small Businesses
GitLab
GitLab
Score 8.9 out of 10
GitLab
GitLab
Score 8.9 out of 10
Medium-sized Companies
GitLab
GitLab
Score 8.9 out of 10
GitLab
GitLab
Score 8.9 out of 10
Enterprises
GitLab
GitLab
Score 8.9 out of 10
GitLab
GitLab
Score 8.9 out of 10
All AlternativesView all alternativesView all alternatives
User Ratings
Mend SASTCoverity Static Analysis (SAST)
Likelihood to Recommend
-
(0 ratings)
9.0
(1 ratings)
User Testimonials
Mend SASTCoverity Static Analysis (SAST)
Likelihood to Recommend
Mend.io (formerly WhiteSource)
No answers on this topic
Synopsys
Best suits for large scale and dynamic development environment. It may be best tool if you want to release your apps with less TAT. However if you have a CRM tool which is COTS product it can offer little help. Even then you should be familiar with what features of Coverity Static Analysis (SAST) are helpful for your development environment
Read full review
Pros
Mend.io (formerly WhiteSource)
No answers on this topic
Synopsys
  • It can provide security scanning dashboard
  • Help detect vulnerabilities and recommend remediation
  • Integration of devsecops helps speed up release cycles
Read full review
Cons
Mend.io (formerly WhiteSource)
No answers on this topic
Synopsys
  • Coverage of integration with other security tools can be improved
  • Customisation of dashboard to enable customer choice of tracking
  • Showcase devsecops progressive tasks from SLA and violation from code scanner perspective
Read full review
Alternatives Considered
Mend.io (formerly WhiteSource)
No answers on this topic
Synopsys
Coverity Static Analysis (SAST) has wide coverage in terms of Owasp Top 10 vulnerabilities, various types of languages, backward integration. While other tools offer similar experience of code scanning, coverity helps in pointed recommendations for quick closure of vulnerabilities. The historical analysis of vulnerabilities is a good value add in understanding which type of code and which language is better in improving cyber security maturity.
Read full review
Return on Investment
Mend.io (formerly WhiteSource)
No answers on this topic
Synopsys
  • Helped reduce efforts of development team avoiding rework
  • Increased security maturity
  • Increased efficiency of the teams
Read full review
ScreenShots

Synopsys Coverity Screenshots

Screenshot of Coverity works with the Code Sight™ IDE plugin, enabling developers to find and fix security and quality defects as they write code.Screenshot of Coverity provides broad security and quality checker support for 21 languages and over 70 frameworks.