Average Ratings 0 Ratings
Average Ratings 0 Ratings
Description
Modern software development must be as fast as the business. The modern AppSec toolbox lacks integration, which creates complexity that slows down software development life cycles. Contrast reduces the complexity that hinders today's development teams. Legacy AppSec uses a single-size-fits all approach to vulnerability detection and remediation that is inefficient, costly, and expensive. Contrast automatically applies the most efficient analysis and remediation technique, greatly improving efficiency and effectiveness. Separate AppSec tools can create silos that hinder the collection of actionable intelligence across an application attack surface. Contrast provides centralized observability, which is crucial for managing risks and capitalizing upon operational efficiencies. This is both for security and development teams. Contrast Scan is a pipeline native product that delivers the speed, accuracy and integration required for modern software development.
Description
PVS-Studio is a static application security testing tool that enhances code quality, security, and safety. It helps find errors and potential vulnerabilities in C, C++, C#, Java, JavaScript, TypeScript and Go code. It works on Windows, Linux, and macOS.
Pros:
- Various analysis types: intermodular, incremental, data flow analysis, taint analysis;
- Integrates into cloud platforms;
- Works offline & on-premise;
- Provides cross-platform integration;
- Offers ways to handle false positives;
- Quick technical support directly from developers;
- 1200+ diagnostics with descriptions and examples;
- Provides compliance with safety & security standards: OWASP TOP 10, MISRA C/C++, CWE, SEI CERT;
- Provides detailed reports and reminders for developers and managers;
- Efficiently handles legacy code (baselining of analyzer results);
- Active support of the Open Source Community, analysis of open-source projects;
- Has integration with popular IDEs, code quality platforms, CI/CD, build systems.
Good option for:
- game developers (Unity & UE integration included)
- embedded developers (embedded platform support);
- DevSecOps experts (CLI)
- project managers (code quality platform integration included)
- FinTech (compliance with OWASP ASVS)
- mature projects (seamless legacy handling)
API Access
Has API
API Access
Has API
Integrations
.NET
Apache Maven
Docker
GitHub
GitLab
Gradle
Java
JavaScript
Jenkins
Visual Studio
Integrations
.NET
Apache Maven
Docker
GitHub
GitLab
Gradle
Java
JavaScript
Jenkins
Visual Studio
Pricing Details
$0
Pricing is flexible with options to license by developer or license specific products within the platform.
Free Trial
Free Version
Pricing Details
Trial version and pricing can be found on the website PVS-Studio or be requested via the contact form.
Free Trial
Free Version
Deployment
Web-Based
On-Premises
iPhone App
iPad App
Android App
Windows
Mac
Linux
Chromebook
Deployment
Web-Based
On-Premises
iPhone App
iPad App
Android App
Windows
Mac
Linux
Chromebook
Customer Support
Business Hours
Live Rep (24/7)
Online Support
Customer Support
Business Hours
Live Rep (24/7)
Online Support
Types of Training
Training Docs
Webinars
Live Training (Online)
In Person
Types of Training
Training Docs
Webinars
Live Training (Online)
In Person
Vendor Details
Company Name
Contrast Security
Founded
2012
Country
United States
Website
www.contrastsecurity.com/platform
Vendor Details
Company Name
PVS-Studio
Founded
2008
Country
Kazakhstan
Website
pvs-studio.com/en/pvs-studio/
Product Features
Application Security
Analytics / Reporting
Open Source Component Monitoring
Source Code Analysis
Third-Party Tools Integration
Training Resources
Vulnerability Detection
Vulnerability Remediation
Automated Testing
Hierarchical View
Move & Copy
Parameterized Testing
Requirements-Based Testing
Security Testing
Supports Parallel Execution
Test Script Reviews
Unicode Compliance
Cloud Workload Protection
Anomaly Detection
Asset Discovery
Cloud Gap Analysis
Cloud Registry
Data Loss Prevention (DLP)
Data Security
Governance
Logging & Reporting
Machine Learning
Security Audit
Workload Diversity
Static Application Security Testing (SAST)
Application Security
Dashboard
Debugging
Deployment Management
IDE
Multi-Language Scanning
Real-Time Analytics
Source Code Scanning
Vulnerability Scanning
Product Features
Application Development
Access Controls/Permissions
Code Assistance
Code Refactoring
Collaboration Tools
Compatibility Testing
Data Modeling
Debugging
Deployment Management
Graphical User Interface
Mobile Development
No-Code
Reporting/Analytics
Software Development
Source Control
Testing Management
Version Control
Web App Development
Automated Testing
Hierarchical View
Move & Copy
Parameterized Testing
Requirements-Based Testing
Security Testing
Supports Parallel Execution
Test Script Reviews
Unicode Compliance
DevOps
Approval Workflow
Dashboard
KPIs
Policy Management
Portfolio Management
Prioritization
Release Management
Timeline Management
Troubleshooting Reports
Source Code Management
Access Controls/Permissions
Bug Tracking
Build Automation
Change Management
Code Review
Collaboration
Continuous Integration
Repository Management
Version Control
Static Application Security Testing (SAST)
Application Security
Dashboard
Debugging
Deployment Management
IDE
Multi-Language Scanning
Real-Time Analytics
Source Code Scanning
Vulnerability Scanning