Average Ratings 0 Ratings

Total
ease
features
design
support

No User Reviews. Be the first to provide a review:

Write a Review

Average Ratings 0 Ratings

Total
ease
features
design
support

No User Reviews. Be the first to provide a review:

Write a Review

Description

CodeSonar uses a unified dataflow with symbolic execution analysis to examine the entire application's computations. CodeSonar's static analyze engine is extremely deep and does not rely on pattern matching or similar approximations. It finds 3-5 times more defects than other static analysis tools. SAST tools are able to be easily integrated into any team's software development process, unlike many other tools such as testing tools and compilers. SAST technologies such as CodeSonar attach to existing build environments to add analysis information. CodeSonar works in the same way as a compiler. However, CodeSonar creates an abstraction model of your entire program, instead of creating object codes. CodeSonar's symbolic execution engine analyzes the derived model and makes connections between them.

Description

The hevm project serves as a tailored implementation of the Ethereum Virtual Machine (EVM) designed for tasks like symbolic execution, unit testing, and debugging of smart contracts. Created by DappHub, it seamlessly integrates with the suite of tools offered by the same developer. The hevm command line interface enables users to symbolically execute smart contracts, conduct unit tests, debug contracts interactively while displaying the Solidity source code, or execute any arbitrary EVM code. It allows computations to be carried out using a local state established within a testing framework or retrieved from live networks through RPC calls. Users can initiate symbolic execution with specified parameters to detect assertion violations and can also customize certain function signature arguments while keeping others abstract. Notably, hevm adopts an eager approach to symbolic execution, meaning that it initially strives to investigate all branches of the program. This comprehensive method enhances the reliability and robustness of smart contract development and testing.

API Access

Has API Yes 

API Access

Has API No 

Screenshots View All

Screenshots View All

Integrations

AWS GovCloud Yes 
Amazon Web Services (AWS) Yes 
C Yes 
C# Yes 
C++ Yes 
CodeSentry Yes 
Docker Yes 
Ethereum No 
GitHub Yes 
GitLab Yes 
Go Yes 
Java Yes 
JavaScript Yes 
Jenkins Yes 
Jira Yes 
Python Yes 
Qlik Sense Yes 
Rust Yes 
Seeker Yes 
TypeScript Yes 

Integrations

AWS GovCloud No 
Amazon Web Services (AWS) No 
C No 
C# No 
C++ No 
CodeSentry No 
Docker No 
Ethereum Yes 
GitHub No 
GitLab No 
Go No 
Java No 
JavaScript No 
Jenkins No 
Jira No 
Python No 
Qlik Sense No 
Rust No 
Seeker No 
TypeScript No 

Pricing Details

No price information available.
Free Trial No 
Free Version No 

Pricing Details

Free
Free Trial No 
Free Version Yes 

Deployment

Web-Based Yes 
On-Premises No 
iPhone App No 
iPad App No 
Android App No 
Windows No 
Mac No 
Linux No 
Chromebook No 

Deployment

Web-Based No 
On-Premises No 
iPhone App No 
iPad App No 
Android App No 
Windows Yes 
Mac Yes 
Linux Yes 
Chromebook No 

Customer Support

Business Hours No 
Live Rep (24/7) No 
Online Support Yes 

Customer Support

Business Hours No 
Live Rep (24/7) No 
Online Support Yes 

Types of Training

Training Docs Yes 
Webinars No 
Live Training (Online) No 
In Person No 

Types of Training

Training Docs Yes 
Webinars No 
Live Training (Online) No 
In Person No 

Vendor Details

Company Name

CodeSecure

Country

United States

Website

www.grammatech.com/products/source-code-analysis

Vendor Details

Company Name

DappHub

Website

github.com/dapphub/dapptools/blob/master/src/hevm/README.md

Product Features

Static Application Security Testing (SAST)

Application Security No 
Dashboard No 
Debugging No 
Deployment Management No 
IDE No 
Multi-Language Scanning No 
Real-Time Analytics No 
Source Code Scanning No 
Vulnerability Scanning No 

Static Code Analysis

Analytics / Reporting No 
Code Standardization / Validation No 
Multiple Programming Language Support No 
Provides Recommendations No 
Standard Security/Industry Libraries No 
Vulnerability Management No 

Product Features

Alternatives

Flawnter Reviews

Flawnter

CyberTest

Alternatives

Echidna Reviews

Echidna

Crytic
SonarQube Cloud Reviews

SonarQube Cloud

SonarSource
Tayt Reviews

Tayt

Crytic
SonarQube Server Reviews

SonarQube Server

SonarSource
Mayhem Reviews

Mayhem

ForAllSecure