Analysis tools logo

26 Continuous Integration Static Analysis Tools

Type:
Any
74

Teamscale

  • Type: service
  • Type: ide-plugin

Static and dynamic analysis tool supporting more than 25 languages and direct IDE integration. Free hosting for Open Source projects available on request. Free academic licenses available.

3

SensioLabs Insight

  • Type: service

Detect security risks, find bugs and provide actionable metrics for PHP projects.

2

Codeac

  • Type: service

Automated code review tool integrates with GitHub, Bitbucket and GitLab (even self-hosted). Available for JavaScript, TypeScript, Python, Ruby, Go, PHP, Java, Docker, and more. (open-source free)

2

CodeFlow

  • Type: service

Automated code analysis tool to deal with technical depth. Integrates with Bitbucket and Gitlab. (free for Open Source Projects)

2

Semmle QL and LGTM

  • Type: cli

Find security vulnerabilities, variants, and critical code quality issues using queries over source code. Automatic PR code review; free for public GitHub/Bitbucket repo: [LGTM.com](https://LGTM.com).

1

exakat

  • Type: service
337

An automated code reviewing engine for PHP.

0

Code Climate

  • Type: service
2123

The open and extensible static analysis platform, for everyone.

0

Code Inspector

  • Type: service

Code quality and technical debt management platform that supports 10+ languages.

0

CodePatrol

  • Type: service

Automated SAST code reviews driven by security, supports 15+ languages and includes security training.

0

codeql

  • Type: service
  • Type: ide-plugin

Deep code analysis - semantic queries and dataflow for several languages with VSCode plugin support.

0

LGTM.com

  • Type: service

Deep code analysis for GitHub and Bitbucket to find security vulnerabilities and critical code quality issues (using Semmle QL). Automatic code review for pull requests; free for public repositories.

0

Nitpick CI

  • Type: service

Automated PHP code review.

0

Pronto

  • Type: cli
2331

Quick automated code review of your changes. Supports more than 40 runners for various languages, including Clang, Elixir, JavaScript, PHP, Ruby and more.

0

PullRequest

  • Type: service

Code review as a service with built-in static analysis. Increase velocity and reduce technical debt through quality code review by expert engineers backed by best-in-class automation.

0

quality

  • Type: cli
149

Runs quality checks on your code using community tools, and makes sure your numbers don't get any worse over time.

0

Reviewdog

  • Type: cli
2684

A tool for posting review comments from any linter in any code hosting service.

0

Scrutinizer

  • Type: service

A proprietary code quality checker that can be integrated with GitHub.

0

Sider

  • Type: service

An automated code reviewing tool. Improving developers' productivity.

0

Snyk

  • Type: service

Vulnerability scanner for dependencies of node.js apps (free for Open Source Projects).

0

SonarCloud

  • Type: service

Multi-language cloud-based static code analysis. History, trends, security hot-spots, pull request analysis and more. Free for open source.

0

Upsource

  • Type: service

Code review tool with static code analysis and code-aware navigation for Java, PHP, JavaScript and Kotlin.

0

Violations Lib

  • Type: cli
90

Java library for parsing report files from static code analysis. Used by a bunch of Jenkins, Maven and Gradle plugins.

-1

Synopsys

  • Type: cli

A commercial static analysis platform that allows for scanning of multiple languages (C/C++, Android, C#, Java, JS, PHP, Python, Node.JS, Ruby, Fortran, and Swift).

Deprecated/unmaintained tools

0

QuantifiedCode

  • Type: service
104

Automated code review & repair. It helps you to keep track of issues and metrics in your software projects, and can be easily extended to support new types of analyses.

❤️ Sponsor this project

We are currently looking for partners who want to sponsor hosting and development of the project.

Check out our Github Sponsors page here

Missing an entry? Please let us know.