Average Ratings 0 Ratings

Total
ease
features
design
support

No User Reviews. Be the first to provide a review:

Write a Review

Average Ratings 0 Ratings

Total
ease
features
design
support

No User Reviews. Be the first to provide a review:

Write a Review

Description

PVS-Studio is a static application security testing tool that enhances code quality, security, and safety. It helps find errors and potential vulnerabilities in C, C++, C#, Java, JavaScript, TypeScript and Go code. It works on Windows, Linux, and macOS. Pros: - Various analysis types: intermodular, incremental, data flow analysis, taint analysis; - Integrates into cloud platforms; - Works offline & on-premise; - Provides cross-platform integration; - Offers ways to handle false positives; - Quick technical support directly from developers; - 1200+ diagnostics with descriptions and examples; - Provides compliance with safety & security standards: OWASP TOP 10, MISRA C/C++, CWE, SEI CERT; - Provides detailed reports and reminders for developers and managers; - Efficiently handles legacy code (baselining of analyzer results); - Active support of the Open Source Community, analysis of open-source projects; - Has integration with popular IDEs, code quality platforms, CI/CD, build systems. Good option for: - game developers (Unity & UE integration included) - embedded developers (embedded platform support); - DevSecOps experts (CLI) - project managers (code quality platform integration included) - FinTech (compliance with OWASP ASVS) - mature projects (seamless legacy handling)

Description

Gitleaks serves as a static application security testing (SAST) tool designed to identify and mitigate hardcoded secrets, such as passwords, API keys, and tokens, within Git repositories. This user-friendly, comprehensive tool allows for the detection of secrets that may be embedded in your code, whether they are recent or from the past. You can install Gitleaks through various methods including Homebrew, Docker, or Go, and it is also available in binary format for a wide range of operating systems on its releases page. Furthermore, Gitleaks can be easily set up as a pre-commit hook in your repository, ensuring that secrets are checked before code is finalized. This added layer of security helps maintain the integrity of your codebase while preventing potential leaks of sensitive information.

API Access

Has API No 

API Access

Has API No 

Screenshots View All

Screenshots View All

Integrations

Docker Yes 
Archipelo No 
CircleCI Yes 
GitLab Yes 
Go No 
Gradle Yes 
HTML Yes 
Homebrew No 
IAR Embedded Workbench Yes 
IntelliJ IDEA Yes 
Java Yes 
JavaScript Yes 
Jenkins Yes 
Make Yes 
Platform.io Yes 
Qt Yes 
Rider Yes 
SonarQube Server Yes 
Unreal Engine Yes 
WebStorm Yes 

Integrations

Docker Yes 
Archipelo Yes 
CircleCI No 
GitLab No 
Go Yes 
Gradle No 
HTML No 
Homebrew Yes 
IAR Embedded Workbench No 
IntelliJ IDEA No 
Java No 
JavaScript No 
Jenkins No 
Make No 
Platform.io No 
Qt No 
Rider No 
SonarQube Server No 
Unreal Engine No 
WebStorm No 

Pricing Details

Trial version and pricing can be found on the website PVS-Studio or be requested via the contact form.
Free Trial Yes 
Free Version Yes 

Pricing Details

No price information available.
Free Trial No 
Free Version No 

Deployment

Web-Based No 
On-Premises Yes 
iPhone App No 
iPad App No 
Android App No 
Windows Yes 
Mac Yes 
Linux Yes 
Chromebook No 

Deployment

Web-Based Yes 
On-Premises No 
iPhone App No 
iPad App No 
Android App No 
Windows No 
Mac No 
Linux No 
Chromebook No 

Customer Support

Business Hours No 
Live Rep (24/7) Yes 
Online Support Yes 

Customer Support

Business Hours No 
Live Rep (24/7) No 
Online Support Yes 

Types of Training

Training Docs Yes 
Webinars Yes 
Live Training (Online) Yes 
In Person No 

Types of Training

Training Docs Yes 
Webinars No 
Live Training (Online) No 
In Person No 

Vendor Details

Company Name

PVS-Studio

Founded

2008

Country

Kazakhstan

Website

pvs-studio.com/en/pvs-studio/

Vendor Details

Company Name

gitleaks

Website

github.com/zricethezav/gitleaks

Product Features

Application Development

Access Controls/Permissions No 
Code Assistance No 
Code Refactoring Yes 
Collaboration Tools No 
Compatibility Testing No 
Data Modeling No 
Debugging Yes 
Deployment Management Yes 
Graphical User Interface No 
Mobile Development No 
No-Code No 
Reporting/Analytics Yes 
Software Development Yes 
Source Control No 
Testing Management Yes 
Version Control No 
Web App Development No 

Automated Testing

Hierarchical View No 
Move & Copy No 
Parameterized Testing Yes 
Requirements-Based Testing No 
Security Testing Yes 
Supports Parallel Execution Yes 
Test Script Reviews No 
Unicode Compliance No 

DevOps

Approval Workflow Yes 
Dashboard Yes 
KPIs Yes 
Policy Management No 
Portfolio Management No 
Prioritization Yes 
Release Management Yes 
Timeline Management No 
Troubleshooting Reports Yes 

Source Code Management

Access Controls/Permissions No 
Bug Tracking Yes 
Build Automation No 
Change Management Yes 
Code Review Yes 
Collaboration No 
Continuous Integration Yes 
Repository Management No 
Version Control Yes 

Static Application Security Testing (SAST)

Application Security Yes 
Dashboard Yes 
Debugging Yes 
Deployment Management Yes 
IDE Yes 
Multi-Language Scanning Yes 
Real-Time Analytics No 
Source Code Scanning Yes 
Vulnerability Scanning Yes 

Product Features

Static Application Security Testing (SAST)

Application Security No 
Dashboard No 
Debugging No 
Deployment Management No 
IDE No 
Multi-Language Scanning No 
Real-Time Analytics No 
Source Code Scanning No 
Vulnerability Scanning No 

Alternatives

Alternatives