# Black Duck, Coverity vs Klocwork Comparison

| | Black Duck | Coverity | Klocwork | 
|---|---|---|---|
| **Star Rating** | 4.0 out of 5 | 4.2 out of 5 | 4.4 out of 5 | 
| **Total Reviews** | 29 | 55 | 23 | 
| **Largest Market Segment** | Enterprise (46.4% of reviews) | Enterprise (63.6% of reviews) | Mid-Market (50.0% of reviews) | 
| **Entry Level Price** | No pricing available | No pricing available | No pricing available | 

---
## Top Pros & Cons

### Black Duck

Pros:
- Accuracy of Findings (1 reviews)
- Open Source (1 reviews)

Cons:
- Resource Constraints (1 reviews)

### Coverity

**Not enough data**

### Klocwork

**Not enough data**

---
## Ratings Comparison
| Rating | Black Duck | Coverity | Klocwork | 
|---|---|---|---|
  | **Meets Requirements** | 7.8 (17 reviews) | 8.9 (43 reviews) | 8.6 (19 reviews) | 
  | **Ease of Use** | 7.8 (17 reviews) | 8.4 (43 reviews) | 7.9 (19 reviews) | 
  | **Ease of Setup** | 7.9 (11 reviews) | 8.2 (19 reviews) | 7.5 (8 reviews) | 
  | **Ease of Admin** | 8.3 (10 reviews) | 8.2 (19 reviews) | 7.3 (8 reviews) | 
  | **Quality of Support** | 7.9 (14 reviews) | 8.6 (37 reviews) | 8.5 (19 reviews) | 
  | **Has the product been a good partner in doing business?** | 8.3 (12 reviews) | 8.1 (18 reviews) | 8.1 (8 reviews) | 
  | **Product Direction (% positive)** | 6.8 (18 reviews) | 7.7 (40 reviews) | 8.7 (18 reviews) | 

---
## Pricing

### Black Duck

#### Entry-Level Pricing

No pricing available

#### Free Trial

Yes

### Coverity

#### Entry-Level Pricing

No pricing available

#### Free Trial

No information available

### Klocwork

#### Entry-Level Pricing

No pricing available

#### Free Trial

Yes

---
## Features Comparison By Category

### Static Application Security Testing (SAST)

| Product | Score | Reviews |
|---|---|---|
| **Black Duck** | N/A | N/A |
| **Coverity** | 8.6/10 | 13 |
| **Klocwork** | N/A | N/A |

#### Administration

| Feature | Black Duck | Coverity | Klocwork | 
|---|---|---|---|
| **API / Integrations** | Not enough data | 8.3 (11 reviews) | Not enough data | 
| **Extensibility** | Not enough data | 9.0 (12 reviews) | Not enough data | 

#### Analysis

| Feature | Black Duck | Coverity | Klocwork | 
|---|---|---|---|
| **Reporting and Analytics** | Not enough data | 8.9 (11 reviews) | Not enough data | 
| **Issue Tracking** | Not enough data | 8.8 (11 reviews) | Not enough data | 
| **Static Code Analysis** | Not enough data | 9.2 (11 reviews) | Not enough data | 
| **Code Analysis** | Not enough data | 8.9 (11 reviews) | Not enough data | 

#### Testing

| Feature | Black Duck | Coverity | Klocwork | 
|---|---|---|---|
| **Command-Line Tools** | Not enough data | 8.5 (11 reviews) | Not enough data | 
| **Manual Testing** | Not enough data | 8.5 (8 reviews) | Feature Not Available | 
| **Test Automation** | Not enough data | 8.5 (10 reviews) | Feature Not Available | 
| **Compliance Testing** | Not enough data | 9.1 (11 reviews) | Not enough data | 
| **Black-Box Scanning** | Not enough data | 8.8 (10 reviews) | Not enough data | 
| **Detection Rate** | Not enough data | 8.9 (11 reviews) | Not enough data | 
| **False Positives** | Not enough data | 7.6 (12 reviews) | Not enough data | 

#### Agentic AI - Static Application Security Testing (SAST)

| Feature | Black Duck | Coverity | Klocwork | 
|---|---|---|---|
| **Autonomous Task Execution** | Not enough data | Not enough data | Not enough data | 

### Software Composition Analysis

| Product | Score | Reviews |
|---|---|---|
| **Black Duck** | 8.6/10 | 8 |
| **Coverity** | N/A | N/A |
| **Klocwork** | N/A | N/A |

#### Functionality - Software Composition Analysis 

| Feature | Black Duck | Coverity | Klocwork | 
|---|---|---|---|
| **Language Support** | Not enough data | Not enough data | Not enough data | 
| **Integration** | 8.0 (5 reviews) | Not enough data | Not enough data | 
| **Transparency** | 9.2 (6 reviews) | Not enough data | Not enough data | 

#### Effectiveness - Software Composition Analysis

| Feature | Black Duck | Coverity | Klocwork | 
|---|---|---|---|
| **Remediation Suggestions** | 8.3 (5 reviews) | Not enough data | Not enough data | 
| **Continuous Monitoring** | 8.3 (6 reviews) | Not enough data | Not enough data | 
| **Thorough Detection** | 9.3 (5 reviews) | Not enough data | Not enough data | 

### Continuous Integration

| Product | Score | Reviews |
|---|---|---|
| **Black Duck** | N/A | N/A |
| **Coverity** | N/A | N/A |
| **Klocwork** | N/A | N/A |

#### Functionality

| Feature | Black Duck | Coverity | Klocwork | 
|---|---|---|---|
| **Integrations** | Not enough data | Not enough data | Not enough data | 
| **Extensibility** | Not enough data | Not enough data | Not enough data | 
| **Test Customization** | Not enough data | Not enough data | Not enough data | 

#### Management

| Feature | Black Duck | Coverity | Klocwork | 
|---|---|---|---|
| **Automation** | Not enough data | Not enough data | Not enough data | 
| **Processes and Workflow** | Not enough data | Not enough data | Not enough data | 
| **Reporting** | Not enough data | Not enough data | Not enough data | 

#### Agentic AI - Continuous Integration

| Feature | Black Duck | Coverity | Klocwork | 
|---|---|---|---|
| **Autonomous Task Execution** | Not enough data | Not enough data | Not enough data | 
| **Cross-system Integration** | Not enough data | Not enough data | Not enough data | 
| **Adaptive Learning** | Not enough data | Not enough data | Not enough data | 
| **Natural Language Interaction** | Not enough data | Not enough data | Not enough data | 
| **Proactive Assistance** | Not enough data | Not enough data | Not enough data | 

### Secure Code Review

| Product | Score | Reviews |
|---|---|---|
| **Black Duck** | N/A | N/A |
| **Coverity** | N/A | N/A |
| **Klocwork** | N/A | N/A |

#### Documentation

| Feature | Black Duck | Coverity | Klocwork | 
|---|---|---|---|
| **Feedback** | Not enough data | 9.3 (5 reviews) | Not enough data | 
| **Prioritization** | Not enough data | 9.3 (5 reviews) | Not enough data | 
| **Remediation Suggestions** | Not enough data | 8.7 (5 reviews) | Not enough data | 

#### Security

| Feature | Black Duck | Coverity | Klocwork | 
|---|---|---|---|
| **False Positives** | Not enough data | 7.0 (5 reviews) | Not enough data | 
| **Custom Compliance** | Not enough data | 8.3 (5 reviews) | Not enough data | 
| **Agility** | Not enough data | 8.3 (5 reviews) | Not enough data | 

### Static Code Analysis

| Product | Score | Reviews |
|---|---|---|
| **Black Duck** | N/A | N/A |
| **Coverity** | N/A | N/A |
| **Klocwork** | N/A | N/A |

#### Agentic AI - Static Code Analysis

| Feature | Black Duck | Coverity | Klocwork | 
|---|---|---|---|
| **Adaptive Learning** | Not enough data | Not enough data | Not enough data | 
| **Natural Language Interaction** | Not enough data | Not enough data | Not enough data | 
| **Proactive Assistance** | Not enough data | Not enough data | Not enough data | 

### AI AppSec Assistants

| Product | Score | Reviews |
|---|---|---|
| **Black Duck** | N/A | N/A |
| **Coverity** | N/A | N/A |
| **Klocwork** | N/A | N/A |

#### Performance - AI AppSec Assistants

| Feature | Black Duck | Coverity | Klocwork | 
|---|---|---|---|
| **Remediation** | Not enough data | Not enough data | Not enough data | 
| **Real-time Vulnerability Detection** | Not enough data | Not enough data | Not enough data | 
| **Accuracy** | Not enough data | Not enough data | Not enough data | 

#### Integration - AI AppSec Assistants

| Feature | Black Duck | Coverity | Klocwork | 
|---|---|---|---|
| **Stack Integration** | Not enough data | Not enough data | Not enough data | 
| **Workflow Integration** | Not enough data | Not enough data | Not enough data | 
| **Codebase Contextual Awareness** | Not enough data | Not enough data | Not enough data | 

---
## Categories

**Unique to Black Duck (2):** [AI AppSec Assistants](https://www.g2.com/categories/ai-appsec-assistants), [Software Composition Analysis Tools](https://www.g2.com/categories/software-composition-analysis)

**Unique to Coverity (3):** [Static Application Security Testing (SAST) Software](https://www.g2.com/categories/static-application-security-testing-sast), [Static Code Analysis Tools](https://www.g2.com/categories/static-code-analysis), [Secure Code Review Software](https://www.g2.com/categories/secure-code-review)

**Unique to Klocwork (5):** [Static Application Security Testing (SAST) Software](https://www.g2.com/categories/static-application-security-testing-sast), [Static Code Analysis Tools](https://www.g2.com/categories/static-code-analysis), [Peer Code Review Software](https://www.g2.com/categories/peer-code-review), [Continuous Integration Tools](https://www.g2.com/categories/continuous-integration), [Secure Code Review Software](https://www.g2.com/categories/secure-code-review)


---
## Reviewer Demographics

### By Company Size

| Segment | Black Duck | Coverity | Klocwork | 
|---|---|---|---|
| **Small-Business** | 17.9% | 10.9% | 31.8% | 
| **Mid-Market** | 35.7% | 25.5% | 50.0% | 
| **Enterprise** | 46.4% | 63.6% | 18.2% | 

### By Industry

#### Black Duck

- **Information Technology and Services:** 28.6%
- **Computer Software:** 28.6%
- **Computer &amp; Network Security:** 7.1%
- **Utilities:** 3.6%
- **Telecommunications:** 3.6%
- **Printing:** 3.6%
- **Food Production:** 3.6%
- **Financial Services:** 3.6%
- **Entertainment:** 3.6%
- **Computer Hardware:** 3.6%
- **Other:** 10.7%

#### Coverity

- **Computer Software:** 36.4%
- **Information Technology and Services:** 12.7%
- **Telecommunications:** 9.1%
- **Computer &amp; Network Security:** 7.3%
- **Automotive:** 5.5%
- **Semiconductors:** 5.5%
- **Airlines/Aviation:** 3.6%
- **Aviation &amp; Aerospace:** 1.8%
- **Banking:** 1.8%
- **Computer Hardware:** 1.8%
- **Other:** 14.5%

#### Klocwork

- **Information Technology and Services:** 31.8%
- **Defense &amp; Space:** 18.2%
- **Automotive:** 13.6%
- **Financial Services:** 9.1%
- **Computer Software:** 9.1%
- **Telecommunications:** 4.5%
- **Semiconductors:** 4.5%
- **Program Development:** 4.5%
- **Industrial Automation:** 4.5%

---
## Alternatives

### Alternatives to Black Duck

- [SonarQube](https://www.g2.com/products/sonarqube/reviews) — 4.4/5 stars (141 reviews)
- [Snyk](https://www.g2.com/products/snyk/reviews) — 4.5/5 stars (132 reviews)
- [Veracode Application Security Platform](https://www.g2.com/products/veracode-application-security-platform/reviews) — 3.8/5 stars (25 reviews)
- [GitHub](https://www.g2.com/products/github/reviews) — 4.7/5 stars (2354 reviews)
- [GitLab](https://www.g2.com/products/gitlab/reviews) — 4.5/5 stars (892 reviews)
- [Mend.io](https://www.g2.com/products/mend-io/reviews) — 4.3/5 stars (112 reviews)
- [Checkmarx](https://www.g2.com/products/checkmarx/reviews) — 4.2/5 stars (38 reviews)
- [Wiz](https://www.g2.com/products/wiz-wiz/reviews) — 4.7/5 stars (794 reviews)
- [Semgrep](https://www.g2.com/products/semgrep/reviews) — 4.6/5 stars (55 reviews)
- [Replit](https://www.g2.com/products/replit/reviews) — 4.5/5 stars (355 reviews)

### Alternatives to Coverity

- [SonarQube](https://www.g2.com/products/sonarqube/reviews) — 4.4/5 stars (141 reviews)
- [Checkmarx](https://www.g2.com/products/checkmarx/reviews) — 4.2/5 stars (38 reviews)
- [Veracode Application Security Platform](https://www.g2.com/products/veracode-application-security-platform/reviews) — 3.8/5 stars (25 reviews)
- [GitLab](https://www.g2.com/products/gitlab/reviews) — 4.5/5 stars (892 reviews)
- [Embold](https://www.g2.com/products/embold/reviews) — 4.7/5 stars (18 reviews)
- [GitHub](https://www.g2.com/products/github/reviews) — 4.7/5 stars (2354 reviews)
- [OpenText Static Application Security Testing](https://www.g2.com/products/opentext-static-application-security-testing/reviews) — 4.5/5 stars (24 reviews)
- [Codacy](https://www.g2.com/products/codacy/reviews) — 4.6/5 stars (29 reviews)
- [Semgrep](https://www.g2.com/products/semgrep/reviews) — 4.6/5 stars (55 reviews)
- [Snyk](https://www.g2.com/products/snyk/reviews) — 4.5/5 stars (132 reviews)

### Alternatives to Klocwork

- [SonarQube](https://www.g2.com/products/sonarqube/reviews) — 4.4/5 stars (141 reviews)
- [Checkmarx](https://www.g2.com/products/checkmarx/reviews) — 4.2/5 stars (38 reviews)
- [GitLab](https://www.g2.com/products/gitlab/reviews) — 4.5/5 stars (892 reviews)
- [GitHub](https://www.g2.com/products/github/reviews) — 4.7/5 stars (2354 reviews)
- [Bitbucket](https://www.g2.com/products/bitbucket/reviews) — 4.4/5 stars (1007 reviews)
- [Jenkins](https://www.g2.com/products/jenkins/reviews) — 4.4/5 stars (564 reviews)
- [Pantheon](https://www.g2.com/products/pantheon/reviews) — 4.4/5 stars (723 reviews)
- [CloudBees](https://www.g2.com/products/cloudbees/reviews) — 4.4/5 stars (621 reviews)
- [CircleCI](https://www.g2.com/products/circleci/reviews) — 4.4/5 stars (509 reviews)
- [Red Hat Ansible Automation Platform](https://www.g2.com/products/red-hat-ansible-automation-platform/reviews) — 4.6/5 stars (377 reviews)

---
## Top Discussions

### Black Duck

No discussions available for this product.

### Coverity

No discussions available for this product.

### Klocwork

- Title: [How do i automate klocwork scanning ?](https://www.g2.com/discussions/36356-how-do-i-automate-klocwork-scanning) — 1 comment, 1 upvote
  > **Top comment:** "Hi Vikash,

Typically, Klocwork scans* these days are automated through CI/CD pipelines and as part of the overall DevOps infrastructure. This all started..."
- Title: [How do I integrate it in a linux make file](https://www.g2.com/discussions/30149-how-do-i-integrate-it-in-a-linux-make-file) — 1 comment
  > **Top comment:** "Hi Chris. There should be no need to &#39;integrate&#39; with the makefile itself, the Klocwork kwinject tool will simply capture the build process by wrapping the..."

---
**Source:** [G2.com](https://www.g2.com) | [Comparison Page](https://www.g2.com/compare/black-duck-vs-coverity-vs-klocwork)

