19+ Code Security Tools

Code security tools help developers find vulnerabilities, exposed secrets, risky dependencies, and insecure code patterns before software ships. They are useful for reviewing codebases, prioritizing fixes, and improving application security within development workflows.

Quality checked by Siteefy Team
Unranked for now

This page has no votes or discussion yet. Add the first signal to help rank these tools.

20

Tools listed

0

Community votes

0

Discussion posts

Top picks for Code Security

No ranking yet: vote on any tool below to create it.

OX Security

A code-first application security platform that integrates detection and response across the software development lifec…

Paid
Save

Why it fitsOX Security fits code security because it identifies and prioritizes vulnerabilities across code, dependencies, pipelines, containers, and software supply-chain assets inside development workflows.

Legit Security

AI-native application security posture management and AI-generated code protection integrated into developer workflows.

Paid
Save

Why it fitsLegit Security fits code security because it scans source code and AI-generated code for vulnerabilities, secrets, and policy violations while helping teams prioritize and remediate AppSec risks.

Cycode

Cycode is an agentic development security platform that integrates control, context, and autonomy to secure AI-driven s…

Paid
Save

Why it fitsCycode fits code security because it combines application security testing, supply-chain security, secrets detection, IaC scanning, and automated remediation across software development workflows.

All Code Security tools17more

Apiiro
Save

Why it fits: Apiiro fits code security because it analyzes code, design, and runtime context to find, prioritize, and remediate application and supply-chain risks inside software development workflows.

paidCustom pricingRate it
Contrast Security
Save

Why it fits: Contrast Security fits code security because it tests running applications and APIs, detects exploitable vulnerabilities in code, blocks attacks, and gives developers remediation guidance inside development and production workflows.

paidCustom pricingRate it
Aikido Security
Save

Why it fits: Aikido Security fits code security because it scans source code, dependencies, secrets, containers, cloud configuration, and runtime risk to find and fix vulnerabilities before release.

paidCustom pricingRate it
Endor Labs
Save

Why it fits: Endor Labs fits code security because it detects vulnerabilities in source code, dependencies, secrets, containers, and software supply chains inside development workflows.

freemiumCustom pricingRate it
JFrog Xray
Save

Why it fits: JFrog Xray fits code security because it scans dependencies, binaries, and software artifacts for vulnerabilities, license issues, and supply-chain risk before release.

paidFrom $150/moRate it
HCL AppScan
Save

Why it fits: HCL AppScan fits code security because it scans code, APIs, open source components, containers, and secrets for vulnerabilities across the development lifecycle.

paidFrom $29.99Rate it
OpenText Fortify
Save

Why it fits: OpenText Fortify fits code security because it scans source code, running applications, mobile apps, and open source components for vulnerabilities before release.

paidCustom pricingRate it
Black Duck

Why it fits: Black Duck fits code security because it scans proprietary code, open source components, and applications for vulnerabilities and compliance risks before release.

paidRate it
Mend.io

Why it fits: Mend.io fits code security because it finds vulnerable dependencies, insecure code risk, and AI/application security issues across development workflows.

paidRate it
GitHub Advanced Security

Why it fits: GitHub Advanced Security fits code security because it brings code scanning, secret scanning, and dependency vulnerability detection into GitHub development workflows.

paidRate it
Veracode

Why it fits: Veracode fits code security because it scans application code, identifies software vulnerabilities, and helps teams prioritize and remediate security risk.

paidRate it
Checkmarx One

Why it fits: Checkmarx One fits code security because it scans application code, dependencies, and runtime context to find vulnerabilities and prioritize remediation.

SonarQube

Why it fits: SonarQube fits code security because it scans source code for vulnerabilities, security hotspots, bugs, and risky patterns inside development workflows.

freemiumRate it
GitGuardian

Why it fits: GitGuardian fits code security because it detects exposed secrets, leaked credentials, and risky machine identities in code and developer workflows.

freemiumRate it
Semgrep

Why it fits: Semgrep is a purpose-built code security platform for scanning code, dependencies, and secrets for vulnerabilities before software ships.

paidRate it
Snyk

Why it fits: Snyk is a purpose-built code security platform for finding vulnerabilities, exposed secrets, risky dependencies, and insecure code before software ships.

Kluster.ai

Why it fits: Kluster.ai fits code security because it helps developers identify vulnerabilities, insecure code patterns, exposed secrets, or risky dependencies in software projects.

paidRate itAlso forAI Code Review

Know a better tool for Code Security?

This page grows from what readers add. Start a discussion about what works, or point us at a tool that belongs here.

Join the discussion

Ask what a listing cannot answer, or tell the next reader what actually worked for Code Security. Comments are public, and the ones people back rise to the top.

Community Discussion

Share your thoughts about the best tools for Code Security

Join the discussion

Sign in to share your experience.

No comments yet

Be the first to share your experience.