Compare CodeSonar and Semgrep

At a Glance
CodeSonar
CodeSonar
Star Rating
(13)4.3 out of 5
Market Segments
Mid-Market (38.5% of reviews)
Information
Pros & Cons
Not enough data
Entry-Level Pricing
No pricing available
Learn more about CodeSonar
Semgrep
Semgrep
Star Rating
(54)4.6 out of 5
Market Segments
Enterprise (47.2% of reviews)
Information
Pros & Cons
Entry-Level Pricing
Starting at $40.00 1 contributor Per Month
Free Trial is available
Learn more about Semgrep

CodeSonar vs Semgrep

  • Reviewers felt that Semgrep meets the needs of their business better than CodeSonar.
  • When comparing quality of ongoing product support, CodeSonar and Semgrep provide similar levels of assistance.
  • For feature updates and roadmaps, our reviewers preferred the direction of CodeSonar over Semgrep.
Pricing
Entry-Level Pricing
CodeSonar
No pricing available
Semgrep
Semgrep Code, Supply Chain, and Secrets Detection
Starting at $40.00
1 contributor Per Month
Learn more about Semgrep
Free Trial
CodeSonar
No trial information available
Semgrep
Free Trial is available
Ratings
Meets Requirements
8.3
9
8.8
48
Ease of Use
8.3
9
9.1
49
Ease of Setup
Not enough data
9.4
36
Ease of Admin
Not enough data
9.1
22
Quality of Support
8.8
8
8.8
43
Has the product been a good partner in doing business?
Not enough data
9.6
22
Product Direction (% positive)
10.0
7
9.2
45
Features by Category
Static Application Security Testing (SAST)Hide 14 FeaturesShow 14 Features
Not enough data
8.4
21
Administration
Not enough data
9.0
18
Not enough data
8.2
17
Analysis
Not enough data
8.4
19
Not enough data
9.1
21
Not enough data
9.4
21
Not enough data
9.1
21
Testing
Not enough data
8.7
20
Not enough data
Feature Not Available
Not enough data
Feature Not Available
Not enough data
7.7
17
Not enough data
7.5
18
Not enough data
8.1
19
Not enough data
7.3
21
Agentic AI - Static Application Security Testing (SAST)
Not enough data
7.9
11
Dynamic Application Security Testing (DAST)Hide 13 FeaturesShow 13 Features
Not enough data
Not enough data
Administration
Not enough data
Feature Not Available
Not enough data
Feature Not Available
Analysis
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Testing
Not enough data
Feature Not Available
Not enough data
Feature Not Available
Not enough data
Feature Not Available
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
8.1
12
Performance
Not enough data
8.2
12
Not enough data
8.0
11
Not enough data
8.0
11
Not enough data
9.0
10
Network
Not enough data
8.5
10
Not enough data
7.8
10
Not enough data
8.0
10
Application
Not enough data
Feature Not Available
Not enough data
8.9
11
Not enough data
8.5
11
Agentic AI - Vulnerability Scanner
Not enough data
6.9
6
Not enough data
7.5
6
Software Composition AnalysisHide 6 FeaturesShow 6 Features
Not enough data
8.4
18
Functionality - Software Composition Analysis
Not enough data
8.4
18
Not enough data
8.2
18
Not enough data
8.5
18
Effectiveness - Software Composition Analysis
Not enough data
8.5
18
Not enough data
8.3
18
Not enough data
8.3
18
Not enough data
8.4
21
Documentation
Not enough data
8.9
19
Not enough data
9.3
20
Not enough data
8.2
20
Security
Not enough data
7.4
21
Not enough data
7.9
17
Not enough data
8.9
17
Static Code AnalysisHide 3 FeaturesShow 3 Features
Not enough data
7.7
10
Agentic AI - Static Code Analysis
Not enough data
7.7
10
Not enough data
7.6
9
Not enough data
7.7
10
AI AppSec AssistantsHide 6 FeaturesShow 6 Features
Not enough data
Not enough data
Performance - AI AppSec Assistants
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Integration - AI AppSec Assistants
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Interactive Application Security Testing (IAST)Hide 1 FeatureShow 1 Feature
Not enough data
Not enough data
Agentic AI - Interactive Application Security Testing (IAST)
Not enough data
Not enough data
Categories
Categories
Shared Categories
CodeSonar
CodeSonar
Semgrep
Semgrep
Reviews
Reviewers' Company Size
CodeSonar
CodeSonar
Small-Business(50 or fewer emp.)
30.8%
Mid-Market(51-1000 emp.)
38.5%
Enterprise(> 1000 emp.)
30.8%
Semgrep
Semgrep
Small-Business(50 or fewer emp.)
11.3%
Mid-Market(51-1000 emp.)
41.5%
Enterprise(> 1000 emp.)
47.2%
Reviewers' Industry
CodeSonar
CodeSonar
Electrical/Electronic Manufacturing
15.4%
Computer Software
15.4%
Oil & Energy
7.7%
Medical Devices
7.7%
Marketing and Advertising
7.7%
Other
46.2%
Semgrep
Semgrep
Information Technology and Services
24.5%
Computer Software
20.8%
Financial Services
15.1%
Computer & Network Security
5.7%
Semiconductors
5.7%
Other
28.3%
Alternatives
CodeSonar
CodeSonar Alternatives
SonarQube
SonarQube
Add SonarQube
Coverity
Coverity
Add Coverity
GitHub
GitHub
Add GitHub
GitLab
GitLab
Add GitLab
Semgrep
Semgrep Alternatives
SonarQube
SonarQube
Add SonarQube
Snyk
Snyk
Add Snyk
GitHub
GitHub
Add GitHub
GitLab
GitLab
Add GitLab
Discussions
CodeSonar
CodeSonar Discussions
What is the easiest way to setup CodeSonar using Azure DevOps
2 Comments
Mark H.
MH
Hi James, Thanks for your question. Think of CodeSonar as a three layer architecture. There are build, analysis and storage layers. All layers can be...Read more
How does CodeSonar work?
1 Comment
Official Response from CodeSonar
Depends on how detailed you want to be. CodeSonar functions by watching a customer’s build and determining what code might run when a program executes. We...Read more
Is CodeSonar open source?
1 Comment
Official Response from CodeSonar
No. CodeSonar is a proprietary technology, provided under a commercial license.Read more
Semgrep
Semgrep Discussions
Monty the Mongoose crying
Semgrep has no discussions with answers