Best Static Application Security Testing (SAST) Software - Page 4

How Many Static Application Security Testing (SAST) Software Products Does G2 Track?

Total Products under this Category: 123

Category Stats (Oct 2026)

  • Average Rating: 4.54/5 (↓0.01 vs Sep 2026) The average rating of products in this category, based on all submitted ratings
  • Top Trending Product: HCL AppScan (+0.7%) - Among all products in this category, HCL AppScan recorded the largest rating increase compared to last month

Last updated: October 01, 2026

How Does G2 Rank Static Application Security Testing (SAST) Software Products?

Why You Can Trust G2's Software Rankings:

  • 30 Analysts and Data Experts
  • 5,600+ Authentic Reviews
  • 123+ Products
  • Unbiased Rankings

G2's software rankings are built on verified user reviews, rigorous moderation, and a consistent research methodology maintained by a team of analysts and data experts. Each product is measured using the same transparent criteria, with no paid placement or vendor influence. While reviews reflect real user experiences, which can be subjective, they offer valuable insight into how software performs in the hands of professionals. Together, these inputs power the G2 Score, a standardized way to compare tools within every category.

G2 Grid® for Static Application Security Testing (SAST) Software

G2 Grid® for Static Application Security Testing (SAST) Software plotting products by satisfaction and market presence

Highlighted products: Aikido Security, GitGuardian, GitHub, GitLab, SonarQube, Snyk, Semgrep, and Checkmarx.

Underlying data: [Grid® JSON](https://www.g2.com/categories/static-application-security-testing-sast/grids.json?focus%5B%5D=aikido-security&focus%5B%5D=gitguardian&focus%5B%5D=github&focus%5B%5D=gitlab&focus%5B%5D=sonarqube&focus%5B%5D=snyk&focus%5B%5D=semgrep&focus%5B%5D=checkmarx)

Offensive360

Offensive360 provides application security testing and risk management for development, security and compliance teams. Its portfolio includes static application security testing (SAST), dynamic application security testing (DAST), mobile application security testing (MAST), attack surface management (ASM), software supply chain security, AI Pentester and Autonomous Red Teaming. Teams can assess supported source languages, test running web applications and APIs, review mobile application packages, investigate dependencies and examine technical findings with remediation guidance. Language and framework coverage, data-flow evidence and available checks depend on the selected product, version and configuration. The developer knowledge base explains vulnerability classes, safer coding examples and analysis scope. Offensive360 supports CI/CD and IDE workflows, including SARIF output for supported SAST integrations. Cloud and self-hosted deployment options are available. Organizations evaluating on-premise or air-gapped operation can review deployment requirements, offline capabilities and update arrangements during a product walkthrough. An early-access governance, risk and compliance (GRC) platform provides Arabic and English workflows for risks, policies, evidence and audits. A free SAST program is available for eligible public open-source repositories. Commercial scope and pricing depend on the products and deployment being evaluated. Offensive360 is the application security and risk management brand of O360 B.V., based in the Netherlands.

Average Rating: 5.0/5.0

Total Reviews: 4

How Do G2 Users Rate Offensive360?

  • Test Automation: 10.0/10 (Category avg: 8.8/10)
  • Has the product been a good partner in doing business?: 10.0/10 (Category avg: 9.1/10)
  • Quality of Support: 9.4/10 (Category avg: 9.2/10)
  • Source-Code Scanning: 10.0/10 (Category avg: 8.4/10)

Who Is the Company Behind Offensive360?

Who Uses This Product?

  • Company Size: 75% Small, 25% Medium

What Are Recent G2 Reviews of Offensive360?

Steampunk Spotter

Spotter helps users create and maintain Ansible Playbooks with ease while ensuring they are always up-to-date and secure. With its comprehensive analytics and reporting capabilities, Spotter offers valuable insights into automation, enabling users to identify bottlenecks, monitor performance, and make data-driven decisions. Designed to maximize automation and drive operational excellence, Spotter has gained the trust of users worldwide. With Spotter, teams can focus on strategic initiatives and achieve superior business outcomes.

Average Rating: 4.6/5.0

Total Reviews: 6

How Do G2 Users Rate Steampunk Spotter?

  • Test Automation: 9.2/10 (Category avg: 8.8/10)
  • Has the product been a good partner in doing business?: 9.2/10 (Category avg: 9.1/10)
  • Quality of Support: 9.2/10 (Category avg: 9.2/10)
  • Source-Code Scanning: 8.3/10 (Category avg: 8.4/10)

Who Is the Company Behind Steampunk Spotter?

  • Seller: XLAB Steampunk
  • Year Founded: 2018
  • HQ Location: Pot za Brdom 100, SI
  • Twitter: @xlab_steampunk
    70 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    1 employees on LinkedIn®

Who Uses This Product?

  • Company Size: 67% Small, 17% Medium

What Are Recent G2 Reviews of Steampunk Spotter?

AquilaX AI

What is AquilaX? AquilaX is an AI-powered application security platform built for DevSecOps teams. It automatically scans your codebase for vulnerabilities across multiple security domains—all in parallel. What it does: AquilaX runs 32 security scanners simultaneously, covering: SAST (static code analysis) SCA (dependency/CVE checking) DAST (dynamic runtime testing) Secrets detection (leaked credentials) PII exposure Container & IaC security API security & malware scanning Key differentiator: Their Securitron AI engine claims to eliminate ~93% of false positives by learning your codebase's patterns. It also auto-generates fix patches that can be applied as one-click pull requests. Speed: Full scans complete in under 60 seconds. Integrations: Works with GitHub, GitLab, BitBucket, Jenkins, Azure DevOps, and supports 17+ programming languages. Pricing: Free — Secrets, PII, compliance scanning (unlimited) Premium ($19/mo) — Adds SAST, SCA, DAST, container, IaC Ultimate ($99/mo) — Full suite with AI remediation & on-prem option Team: Founded by security veterans from Goldman Sachs and Revolut; backed by NVIDIA Inception and Microsoft for Startups.

Average Rating: 5.0/5.0

Total Reviews: 3

How Do G2 Users Rate AquilaX AI?

  • Test Automation: 10.0/10 (Category avg: 8.8/10)
  • Quality of Support: 10.0/10 (Category avg: 9.2/10)

Who Is the Company Behind AquilaX AI?

  • Seller: AquilaX
  • Year Founded: 2023
  • HQ Location: London, GB
  • LinkedIn® Page: www.linkedin.com
    7 employees on LinkedIn®

Who Uses This Product?

  • Company Size: 100% Small

What Are Recent G2 Reviews of AquilaX AI?

AI can help you find the answers. G2 helps you trust them.

Connect G2 to Claude or ChatGPT for answers grounded in G2's trusted reviews, comparisons, and pricing from real user insights.

How it works

CodePeer

CodePeer is an Ada source code analyzer that detects run-time and logic errors. It assesses potential bugs before program execution, serving as an automated peer reviewer, helping to find errors easily at any stage of the development life-cycle. CodePeer helps you improve the quality of your code and makes it easier for you to perform safety and/or security analysis.

Average Rating: 4.7/5.0

Total Reviews: 3

How Do G2 Users Rate CodePeer?

  • Test Automation: 10.0/10 (Category avg: 8.8/10)
  • Quality of Support: 8.9/10 (Category avg: 9.2/10)
  • Source-Code Scanning: 9.4/10 (Category avg: 8.4/10)

Who Is the Company Behind CodePeer?

  • Seller: Adacore
  • Year Founded: 1994
  • HQ Location: Paris, FR
  • Twitter: @AdaCoreCompany
    2,000 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    165 employees on LinkedIn®

Who Uses This Product?

  • Company Size: 100% Large

What Are Recent G2 Reviews of CodePeer?

What Are G2 Users Discussing About CodePeer?

ImmuniWeb AI Platform

The ImmuniWeb AI Platform helps over 1,000 enterprise customers from more than 50 countries to test, secure and protect their web and mobile applications, APIs and microservices, cloud and networks, to prevent data breaches and reduce third-party risk, and to comply with regulatory requirements. ImmuniWeb’s products available on the Platform include Continuous Threat Exposure Management (CTEM), External Attack Surface Management (EASM), Dark Web Monitoring and phishing websites takedown, as well as vulnerability scanning and penetration testing for web and mobile apps, cloud and network infrastructure, and LLM models. Headquartered in Geneva, Switzerland, ImmuniWeb has offices in Washington, London and Dubai to provide an uninterrupted service to all global customers and partners.

Average Rating: 4.7/5.0

Total Reviews: 12

How Do G2 Users Rate ImmuniWeb AI Platform?

  • Has the product been a good partner in doing business?: 10.0/10 (Category avg: 9.1/10)
  • Quality of Support: 10.0/10 (Category avg: 9.2/10)

Who Is the Company Behind ImmuniWeb AI Platform?

  • Seller: ImmuniWeb
  • Year Founded: 2019
  • HQ Location: Geneva, CH
  • Twitter: @immuniweb
    8,473 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    32 employees on LinkedIn®

Who Uses This Product?

  • Company Size: 92% Medium, 8% Small

What Do G2 Reviewers Say About ImmuniWeb AI Platform?

AI-generated summary from verified user reviews

Pros
  • Users value the effective vulnerability detection of ImmuniWeb AI Platform, significantly improving security and compliance efforts.
  • Users commend the responsive customer support, which offers prompt assistance and enhances the overall scanning experience.
  • Users value the continuous monitoring of the attack surface, ensuring proactive awareness of critical security issues.
  • Users value the continuous monitoring efficiency of ImmuniWeb AI Platform, ensuring proactive security and reducing potential losses.
  • Users value the alert notifications for keeping them informed about critical security issues and protecting their assets.
Cons
  • Users find the complexity of target scans leads to uncertain scanning times, complicating the overall experience.
  • Users face integration issues as ImmuniWeb AI Platform lacks connections with tools like Slack and PagerDuty.
  • Users find the lack of integration with Slack and PagerDuty complicates on-call support and accessibility after hours.
  • Users find the Excel export limited, which affects their data handling capabilities compared to the full JSON export.
  • Users note the limited flexibility in the algorithm for cost calculation, though improvements have been made.

What Are Recent G2 Reviews of ImmuniWeb AI Platform?

What Are G2 Users Discussing About ImmuniWeb AI Platform?

Qwiet AI

Qwiet AI delivers comprehensive application security by combining agentic AI with advanced code analysis. In a single scan, the platform provides uniquely accurate SAST, SCA, SBOM, secrets detection, and container analysis that helps dev and security teams find and fix vulnerabilities faster. With its proprietary Code Property Graph (CPG) technology and AI/ML models, Qwiet AI achieves up to 95% reduction in false positives compared to traditional tools, while offering contextual AutoFix that understands the unique context of your code, even across complex enterprise applications. Q: What makes Qwiet AI different from other AppSec solutions? A: Qwiet AI stands out through its agentic AI approach, which enables autonomous vulnerability detection and remediation. The platform's Code Property Graph technology allows for deeper code analysis and more accurate vulnerability detection, resulting in dramatically fewer false positives than traditional tools. This advanced technology enables the platform to understand code relationships and context at a deeper level, leading to precise vuln detection and contextually appropriate fixes. Q: What security capabilities does the platform include? A: The platform provides comprehensive security coverage including: - Static Application Security Testing (SAST) using a patented CPG-based approach, for vuln detection that is objectively the fastest and most accurate available per the OWASP benchmark - Software Composition Analysis (SCA) for third-party dependency scanning and vulnerability detection in open source components - Automated SBOM generation for supply chain transparency and compliance requirements - Advanced secrets detection to prevent credential exposure and secure sensitive information - Container security analysis built in - AI-powered AutoFix for automated vulnerability remediation with contextually aware patches, powered by the CPG and a custom AI/ML engine with its own LLM - Custom rule creation capabilities for organization-specific security requirements Q: How does Qwiet AI improve development workflows? A: Qwiet AI integrates seamlessly into existing CI/CD pipelines and developer workflows. The platform's speed (up to 40x faster than traditional scanners) and accuracy mean developers spend less time investigating false positives and more time coding. The AutoFix capability helps developers resolve issues quickly with AI-generated patches that are contextually aware and tailored to your codebase. Additionally, the platform provides IDE integrations and pull request analysis to catch vulnerabilities early in the development process. Q: What do customers think? A: Qwiet AI provides enterprise-grade support with dedicated customer success representatives and technical account managers. The platform consistently receives high marks for customer support, with a 97% "would recommend" rate in Gartner's Voice of the Customer. Customers receive comprehensive onboarding assistance, ongoing technical support, and regular check-ins to ensure successful implementation and adoption. Q: How can I get started with Qwiet AI? A: Qwiet AI offers self-service access, self-guided demos, and AE-guided demos, depending on your needs. You can request a personalized demo through the company website at qwiet.ai to see how the platform addresses their specific security challenges. You can also sign up for self-service access through the web site, or access documentation and integration guides there.

Average Rating: 4.8/5.0

Total Reviews: 3

How Do G2 Users Rate Qwiet AI?

  • Test Automation: 10.0/10 (Category avg: 8.8/10)
  • Has the product been a good partner in doing business?: 10.0/10 (Category avg: 9.1/10)
  • Quality of Support: 10.0/10 (Category avg: 9.2/10)
  • Source-Code Scanning: 10.0/10 (Category avg: 8.4/10)

Who Is the Company Behind Qwiet AI?

  • Seller: Qwiet AI
  • HQ Location: San Jose, US
  • Twitter: @ShiftLeftInc
    1,164 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    14 employees on LinkedIn®

Who Uses This Product?

  • Company Size: 67% Large, 33% Small

What Do G2 Reviewers Say About Qwiet AI?

AI-generated summary from verified user reviews

Pros
  • Users value the collaborative support from Qwiet AI, facilitating seamless integration into CI/CD pipelines.
  • Users commend the highly responsive customer support of Qwiet AI, enhancing their integration experience significantly.
  • Users value the easy integrations of Qwiet AI, facilitating seamless incorporation into CI/CD pipelines effortlessly.
  • Users value the thorough documentation of Qwiet AI, facilitating seamless integration into CI/CD pipelines.
  • Users value the strong team collaboration facilitated by Qwiet AI, enhancing integration and support for their workflows.
Cons
  • Users find the command line difficulty frustrating, as custom policies require technical expertise without a user-friendly interface.
  • Users express frustration over limited customization as custom policies can only be created via CLI, not a user interface.
  • Users are frustrated by the limited features of Qwiet AI, lacking a user interface for custom policies.
  • Users find the lack of user interface for policy creation limits accessibility and ease of use in Qwiet AI.

What Are Recent G2 Reviews of Qwiet AI?

bugScout

Platform for detecting security vulnerabilities in applications by analyzing the source code. bugScout® is the most complete and versatile SAST platform on the market for detecting application security vulnerabilities through source code analysis. Designed by ethical hackers and reputable security auditors, bugScout® follows international security rules and standards and is at the forefront of cybercrime techniques to keep customer applications safe and secure. It is multiplatform, offered On-Premise or Cloud, and made available in SaaS mode. The internationality of bugScout® allows you to work in 3 languages, easily selectable in the settings of the platform itself. bugScout® has the ability to perform complete application audits and, at the same time, integrate seamlessly into the DevOps lifecycle, facilitating continuous analysis of the source code, without any interference in the application development processes. The excellent results of bugScout® are the result of the development for the different programming languages, which allow to track all possible execution flows of the applications to be audited and cover each and every one of the execution paths, detecting security vulnerabilities and quality errors. bugScout® provides complete reports and reports of your activity, fully customizable through various filters, depending on the recipient and the information you want to view. The different formats of reports and reports allow to obtain final reports and exportable files to other management platforms, for integration in the Customer Information Systems.

Average Rating: 3.5/5.0

Total Reviews: 2

How Do G2 Users Rate bugScout?

  • Has the product been a good partner in doing business?: 10.0/10 (Category avg: 9.1/10)
  • Quality of Support: 9.2/10 (Category avg: 9.2/10)

Who Is the Company Behind bugScout?

Who Uses This Product?

  • Company Size: 50% Large, 50% Medium

What Are Recent G2 Reviews of bugScout?

What Are G2 Users Discussing About bugScout?

Codeant AI Code Reviewer

CodeAnt AI reviews every pull request against the full codebase and the business logic behind it, not just the changed lines. Inline review comments land on the exact lines that need attention, covering logic errors, edge cases, anti-patterns, security vulnerabilities, hardcoded secrets, and infrastructure-as-code misconfigurations. IDE fixes apply CodeAnt's suggestions directly in the editor, so remediation happens where the code is written rather than in the pull request interface. Sequence diagrams are generated automatically for every pull request, showing how the changed code moves through services and functions. PR summaries describe what changed and what it affects, written for technical and non-technical reviewers. Quality gates enforce merge criteria deterministically. The same code returns the same verdict on every run. AI chat answers questions about the change inside the pull request, with full codebase context. Continuous AI learning adapts to what your team accepts, rejects, and debates. Custom rules are written in plain English and enforced from the next pull request onward. Results: zero false positives, 70% fix acceptance, 80% reduction in review time, 4x fewer production bugs. CodeAnt reviews more than 5 million pull requests monthly across more than 1 billion lines of codebase history.

Average Rating: 4.7/5.0

Total Reviews: 7

How Do G2 Users Rate Codeant AI Code Reviewer?

  • Has the product been a good partner in doing business?: 6.7/10 (Category avg: 9.1/10)
  • Quality of Support: 8.8/10 (Category avg: 9.2/10)

Who Is the Company Behind Codeant AI Code Reviewer?

  • Seller: CodeAnt AI
  • Year Founded: 2023
  • HQ Location: San Francisco, US
  • LinkedIn® Page: www.linkedin.com
    22 employees on LinkedIn®

Who Uses This Product?

  • Company Size: 57% Small, 43% Medium

What Do G2 Reviewers Say About Codeant AI Code Reviewer?

AI-generated summary from verified user reviews

Pros
  • Users value the exceptional code quality from Codeant AI Code Reviewer, benefiting from smart suggestions and custom rules.
  • Users appreciate the comprehensive all-in-one features of Codeant AI Code Reviewer, simplifying code reviews and security analysis.
  • Users appreciate the comprehensive coverage of Codeant AI Code Reviewer, simplifying code review and security processes.
  • Users value the custom rules feature for its tailored context and enhanced code review efficiency.
  • Users value the ease of use of Codeant AI Code Reviewer, appreciating its simple interface for comprehensive reviews.
Cons
  • Users find the difficult learning curve with Codeant AI Code Reviewer due to cautious suggestions and slow onboarding.
  • Users find the false positives from Codeant AI Code Reviewer often overly cautious, requiring manual adjustments during onboarding.
  • Users find the improvement needed as suggestions can be overly cautious and onboarding requires significant time.
  • Users find the inefficient notifications sometimes overly cautious and require manual adjustments, complicating the onboarding process.
  • Users find the lack of guidance frustrating, as suggestions may be overly cautious and require manual adjustments.

What Are Recent G2 Reviews of Codeant AI Code Reviewer?

esChecker MAST (SAST, DAST & IAST)

esChecker combines many years of penetration testing experience with a unique dynamic engine simulating attack techniques, such as reverse-engineering or code tampering. No source code is needed, only the app binary (Android apk or iOS ipa). esChecker provides immediate feedback about the way your app reacts against many hacking techniques. You can now spare your pentest budget for in-depth vulnerability analyses.

Average Rating: 4.3/5.0

Total Reviews: 2

How Do G2 Users Rate esChecker MAST (SAST, DAST & IAST)?

  • Quality of Support: 10.0/10 (Category avg: 9.2/10)

Who Is the Company Behind esChecker MAST (SAST, DAST & IAST)?

  • Seller: eShard
  • Year Founded: 2015
  • HQ Location: Pessac, FR
  • LinkedIn® Page: www.linkedin.com
    47 employees on LinkedIn®

Who Uses This Product?

  • Company Size: 100% Small

What Are Recent G2 Reviews of esChecker MAST (SAST, DAST & IAST)?

OpenText Core Application Security

Manage, measure and integrate security for the entire software lifecycle.

Average Rating: 4.0/5.0

Total Reviews: 3

How Do G2 Users Rate OpenText Core Application Security?

  • Test Automation: 1.7/10 (Category avg: 8.8/10)
  • Has the product been a good partner in doing business?: 10.0/10 (Category avg: 9.1/10)
  • Quality of Support: 7.5/10 (Category avg: 9.2/10)
  • Source-Code Scanning: 10.0/10 (Category avg: 8.4/10)

Who Is the Company Behind OpenText Core Application Security?

  • Seller: OpenText
  • Year Founded: 1991
  • HQ Location: Waterloo, ON
  • Twitter: @OpenText
    21,565 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    22,835 employees on LinkedIn®
  • Ownership: NASDAQ:OTEX

Who Uses This Product?

  • Company Size: 33% Large, 33% Medium

What Do G2 Reviewers Say About OpenText Core Application Security?

AI-generated summary from verified user reviews

Pros
  • Users praise the automation testing capabilities of OpenText Core Application Security, enhancing vulnerability management and auditing efficiency.
  • Users value the efficiency of OpenText Core Application Security, highlighting its robust vulnerability management and auto audit features.
  • Users appreciate the good UI of OpenText Core Application Security, especially enjoying its vulnerability management and auto audit features.
  • Users appreciate the effective vulnerability management tools and commend the awesome auto audit feature in SSC.
Cons
  • Users face limited integration issues with OpenText Core Application Security, impacting their workflow and efficiency.
  • Users find the limited integration with other application security tools restricts overall effectiveness and convenience.

What Are Recent G2 Reviews of OpenText Core Application Security?

What Are G2 Users Discussing About OpenText Core Application Security?

Precogs AI

Precogs AI is the world's first AI-native Autonomous Application Security Platform (AASP). It detects, triages, and fixes security vulnerabilities across your entire software stack — autonomously. What Precogs scans: • Code Security — AI-native SAST across 20+ languages with 98% precision and near-zero false positives. SCA with SBOM, container scanning, and IaC analysis included. AI-generated fixes delivered directly in pull requests. • Binary Security — Firmware and compiled binary analysis without source code, including DAST. Covers ECU software, IoT firmware, and third-party libraries. • Data Security — Advanced PII detection (99.2% precision, 30+ data types), multi-layer secrets scanning, and Pre-LLM Sanitization that strips sensitive data before AI analysis. Key differentiators: • Agentic AI workflow — autonomously detects, triages, generates code fixes, and delivers them as pull requests • Pre-LLM Sanitization — the only platform that protects your code and IP during AI-powered analysis • 98% detection precision with ~2% false positive rate (vs 10-35% industry average) • Automatic CVE/CWE discovery and compliance mapping (OWASP, SOC 2, ISO 21434, HIPAA, PCI DSS) • Integrates into GitHub, GitLab, Bitbucket, IDEs, and CI/CD pipelines • Transparent, published pricing with a free tier Precogs AI integrates with Armis, GitHub, and CI/CD platforms to give security teams real-time software risk visibility across their entire environment.

Average Rating: 5.0/5.0

Total Reviews: 2

How Do G2 Users Rate Precogs AI?

  • Test Automation: 10.0/10 (Category avg: 8.8/10)
  • Has the product been a good partner in doing business?: 10.0/10 (Category avg: 9.1/10)
  • Quality of Support: 10.0/10 (Category avg: 9.2/10)

Who Is the Company Behind Precogs AI?

Who Uses This Product?

  • Company Size: 100% Small

What Are Recent G2 Reviews of Precogs AI?

PT Application Inspector

PT Application Inspector™ (PT AI™) is a comprehensive source code analysis tool that offers protection for web applications of any scale. Its holistic approach combines the advantages of static, dynamic, and interactive analysis to maintain application security throughout every stage of development—from the very first line of code to the go-live.

Average Rating: 5.0/5.0

Total Reviews: 2

How Do G2 Users Rate PT Application Inspector?

  • Test Automation: 10.0/10 (Category avg: 8.8/10)
  • Has the product been a good partner in doing business?: 10.0/10 (Category avg: 9.1/10)
  • Quality of Support: 10.0/10 (Category avg: 9.2/10)
  • Source-Code Scanning: 6.7/10 (Category avg: 8.4/10)

Who Is the Company Behind PT Application Inspector?

Who Uses This Product?

  • Company Size: 67% Large, 33% Small

What Are Recent G2 Reviews of PT Application Inspector?

What Are G2 Users Discussing About PT Application Inspector?

ReversingLabs

ReversingLabs is the trusted name in file and software security. We provide the modern cybersecurity platform to verify and deliver safe binaries. Trusted by the Fortune 500 and leading cybersecurity vendors, RL Spectra Core powers the software supply chain and file security insights, tracking over 422 billion searchable files with the ability to deconstruct full software binaries in seconds to minutes. Only ReversingLabs provides that final exam to determine whether a single file or full software binary presents a risk to your organization and your customers.

Average Rating: 4.7/5.0

Total Reviews: 10

How Do G2 Users Rate ReversingLabs?

  • Test Automation: 8.3/10 (Category avg: 8.8/10)
  • Has the product been a good partner in doing business?: 8.9/10 (Category avg: 9.1/10)
  • Quality of Support: 9.4/10 (Category avg: 9.2/10)
  • Source-Code Scanning: 6.7/10 (Category avg: 8.4/10)

Who Is the Company Behind ReversingLabs?

  • Seller: ReversingLabs
  • Year Founded: 2009
  • HQ Location: Cambridge, US
  • Twitter: @ReversingLabs
    7,022 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    323 employees on LinkedIn®

Who Uses This Product?

  • Company Size: 80% Small, 10% Medium

What Do G2 Reviewers Say About ReversingLabs?

AI-generated summary from verified user reviews

Pros
  • Users commend the accuracy of information offered by ReversingLabs, utilizing an extensive repository of files for effective risk management.
  • Users commend the excellent customer support from ReversingLabs, enhancing their onboarding and overall experience effectively.
  • Users commend the efficient onboarding process of ReversingLabs, facilitating a seamless and effective transition to their services.
  • Users appreciate the effective prioritization of risk management with ReversingLabs, enhancing their security processes significantly.
  • Users commend the high reliability of ReversingLabs, citing exceptional support and a vast repository of files.
Cons
  • Users find the endpoints for checking usage confusing, which complicates their overall experience with the product.
  • Users find the confusing interface for usage endpoints makes it difficult to navigate the product effectively.
  • Users find the navigation issues related to usage endpoints somewhat confusing, impacting their overall experience.
  • Users feel the UI could be nicer, yet it doesn't hinder the overall functionality of ReversingLabs.

What Are Recent G2 Reviews of ReversingLabs?

Symbiotic Security

Symbiotic Security is an AI-powered cybersecurity company that embeds security directly into developer workflows. Symbiotic offers two complementary solutions: Symbiotic Flow for real-time detection and remediation in the IDE, Symbiotic Code for secure AI code generation with built-in policy enforcement. Our platform detects vulnerabilities as they're introduced whether from developers, AI assistants, or open source and instantly provides context-aware fixes with over 70% fewer false positives. Agentic AI remediation analyzes full context and automatically resolves issues before code reaches production. Customizable guardrails enforce organizational security policies directly into AI code generation, making secure-by-design the default. Each fix includes just-in-time training tailored to the vulnerability, helping developers build real security expertise. Teams see a 68% reduction in recurring vulnerabilities after three months while maintaining development velocity.

Average Rating: 5.0/5.0

Total Reviews: 3

How Do G2 Users Rate Symbiotic Security?

  • Test Automation: 10.0/10 (Category avg: 8.8/10)
  • Quality of Support: 10.0/10 (Category avg: 9.2/10)
  • Source-Code Scanning: 6.7/10 (Category avg: 8.4/10)

Who Is the Company Behind Symbiotic Security?

Who Uses This Product?

  • Company Size: 67% Small, 33% Large

What Do G2 Reviewers Say About Symbiotic Security?

AI-generated summary from verified user reviews

Pros
  • Users value the efficiency improvement from Symbiotic Security, significantly reducing development time and enhancing security proactively.
  • Users value the speed of development that Symbiotic Security offers by addressing security issues early in the process.
  • Users find Symbiotic Security super easy to use, significantly speeding up internal processes and enhancing code security.
  • Users value the proactive security integration of Symbiotic Security, enhancing efficiency and reducing tech debt in development.
  • Users value the accuracy of Symbiotic Security in identifying potential issues early, enhancing overall product security.

What Are Recent G2 Reviews of Symbiotic Security?

VisualCodeGrepper

VCG is an automated code security review tool for C++, C#, VB, PHP, Java and PL/SQL which is intended to drastically speed up the code review process by identifying bad/insecure code. It has a few features that should make it useful. In addition to performing some more complex checks it also has a config file for each language that basically allows you to add any bad functions (or other text) that you want to search for. It attempts to find phrases within comments that can indicate broken code and it provides stats and a pie chart (for the entire codebase and for individual files) showing relative proportions of code, whitespace, comments, 'style comments and bad code.

Average Rating: 4.5/5.0

Total Reviews: 2

How Do G2 Users Rate VisualCodeGrepper?

  • Test Automation: 6.7/10 (Category avg: 8.8/10)
  • Quality of Support: 8.3/10 (Category avg: 9.2/10)
  • Source-Code Scanning: 6.7/10 (Category avg: 8.4/10)

Who Is the Company Behind VisualCodeGrepper?

  • Seller: sourceforge
  • Year Founded: 1999
  • HQ Location: San Diego, US
  • Twitter: @sourceforge
    46,720 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    59 employees on LinkedIn®

Who Uses This Product?

  • Company Size: 50% Large, 50% Medium

What Are Recent G2 Reviews of VisualCodeGrepper?

What Are G2 Users Discussing About VisualCodeGrepper?

Lauren Worth
LW
Researched and written by Lauren Worth
Updated October 3, 2024