What is Veracode Static Analysis?
Veracode Static Analysis provides fast, automated security feedback in the IDE and the pipeline, and conducts a full policy scan before deployment. It then provides clear guidance on what issues to focus on and how to fix them faster.
Company Details
Need Assistance?
We're here to help you with understanding our reports and the data inside to help you make decisions.
Get AssistanceVeracode Static Analysis Ratings
Real user data aggregated to summarize the product performance and customer experience.
Product scores listed below represent current data. This may be different from data contained in reports and awards, which express data as of their publication date.
89 Likeliness to Recommend
100 Plan to Renew
71 Satisfaction of Cost Relative to Value
Emotional Footprint Overview
Product scores listed below represent current data. This may be different from data contained in reports and awards, which express data as of their publication date.
+98 Net Emotional Footprint
The emotional sentiment held by end users of the software based on their experience with the vendor. Responses are captured on an eight-point scale.
How much do users love Veracode Static Analysis?
Pros
- Helps Innovate
- Continually Improving Product
- Reliable
- Performance Enhancing
How to read the Emotional Footprint
The Net Emotional Footprint measures high-level user sentiment towards particular product offerings. It aggregates emotional response ratings for various dimensions of the vendor-client relationship and product effectiveness, creating a powerful indicator of overall user feeling toward the vendor and product.
While purchasing decisions shouldn't be based on emotion, it's valuable to know what kind of emotional response the vendor you're considering elicits from their users.
Footprint
Negative
Neutral
Positive
Feature Ratings
Container Security Testing
Mobile Application Security Testing
Software Composition Analysis (SCA)
Interactive Application Security Testing (IAST)
Static Application Security Testing (SAST)
Vulnerability Scanning
Integrated Development Environment (IDE) plug-in
Policy Engine and Enforcements
Automated Workflow
False Positive Remediation
Risk Scoring
Vendor Capability Ratings
Product Strategy and Rate of Improvement
Quality of Features
Ease of Data Integration
Usability and Intuitiveness
Vendor Support
Availability and Quality of Training
Breadth of Features
Business Value Created
Ease of IT Administration
Ease of Customization
Ease of Implementation
Veracode Static Analysis Reviews
- Role: Information Technology
- Industry: Government
- Involvement: IT Leader or Manager
Submitted Sep 2024
We’ve used it for few yeas and it’s worked well..
Likeliness to Recommend
Pros
- Helps Innovate
- Continually Improving Product
- Performance Enhancing
- Saves Time
Amit C.
- Role: Industry Specific Role
- Industry: Healthcare
- Involvement: End User of Application
Submitted Mar 2024
This is an Amazing product
Likeliness to Recommend
What differentiates Veracode Static Analysis from other similar products?
Veracode scans files, classes, and small packages, Veracode Static Analysis can be used to test the entire application.
What is your favorite aspect of this product?
clear guidance on finding, prioritizing, and fixing issues
What recommendations would you give to someone considering this product?
It enabling you to discover and inventory all of your external web applications
Pros
- Helps Innovate
- Continually Improving Product
- Reliable
- Performance Enhancing
Rajat S.
- Role: Information Technology
- Industry: Engineering
- Involvement: IT Development, Integration, and Administration
Submitted Mar 2024
Veracode boasts a powerful scanning engine
Likeliness to Recommend
What differentiates Veracode Static Analysis from other similar products?
Unlike most SAST tools that require source code, Veracode can analyze compiled binaries. This is crucial for applications where source code isn't readily available, expanding its reach
What is your favorite aspect of this product?
Each vulnerability has a detailed explanation, helping developers understand the root cause and potential impact. Veracode prioritizes vulnerabilities based on severity and exploitability, allowing developers to focus on the most critical issues first.
What do you dislike most about this product?
Veracode is a commercial product with tiered pricing plans, which can be expensive for smaller teams or those with limited budgets. Setting up and configuring Veracode can be challenging for beginners, especially for teams unfamiliar with SAST tools. The comprehensive nature requires some learning curve.
What recommendations would you give to someone considering this product?
Consider your team's experience with SAST tools. If your team is new to these tools, the initial learning curve for Veracode might be steeper.
Pros
- Helps Innovate
- Continually Improving Product
- Reliable
- Performance Enhancing