Average Ratings 0 Ratings
Average Ratings 0 Ratings
Description
OpenText Static Application Security Testing (SAST) provides precise identification and remediation of application security flaws directly within source code, helping organizations reduce risks early in development. The platform supports over 33 major programming languages and frameworks, enabling broad language coverage for diverse development environments. It integrates smoothly with widely used CI/CD pipelines and developer tools such as Jenkins, Atlassian Bamboo, Azure DevOps, and Microsoft Visual Studio, ensuring security fits naturally into existing workflows. AI-driven analysis prioritizes vulnerabilities and dramatically reduces false positives by customizing rules and scan depths, speeding up development cycles by up to 25%. OpenText SAST meets compliance benchmarks like OWASP 1.2b, offering developers detailed guidance to efficiently fix issues and improve code quality. Its flexible deployment options include multi-tenant SaaS, private cloud, and on-premises installations, allowing organizations to scale securely and according to their infrastructure needs. Backed by a dedicated Software Security Research team, the solution receives agile updates to stay current with emerging threats. Customers praise the tool for reducing manual code review efforts while increasing vulnerability detection accuracy.
Description
The Puma Scan Professional End User Edition enables developers to utilize Puma Scan through a Visual Studio extension, featuring improved capabilities, reduced false positives, and various support options. This edition’s license is valid for one year, with the possibility of annual renewal. In contrast, the Server Edition facilitates command line scanning and can be integrated into your build server, all without needing Visual Studio's overhead. A single Server license can be employed across five build agents within the same organization, and additional Build Agent Bundles are available in sets of five for larger needs. Furthermore, the Azure DevOps Extension introduces a Puma Scan build task into your Azure DevOps pipelines, enhancing your development workflow. With Azure DevOps Standard licenses, you can scan up to 20 build pipelines, while Azure DevOps Unlimited licenses permit unrestricted scanning across a single organization, ensuring comprehensive coverage for your projects. This flexibility allows organizations to choose the best licensing option based on their specific scanning requirements.
API Access
Has API
No
API Access
Has API
Yes
Integrations
Azure DevOps Server
Yes
Visual Studio
Yes
Bamboo
Yes
Black Duck
Yes
C#
No
Gradle
Yes
Harness
Yes
HivePro Uni5
Yes
JSON
No
Jenkins
Yes
Integrations
Azure DevOps Server
Yes
Visual Studio
Yes
Bamboo
No
Black Duck
No
C#
Yes
Gradle
No
Harness
No
HivePro Uni5
No
JSON
Yes
Jenkins
No
Pricing Details
No price information available.
Free Trial
Yes
Free Version
No
Pricing Details
$299 per year
Free Trial
Yes
Free Version
Yes
Deployment
Web-Based
Yes
On-Premises
Yes
iPhone App
No
iPad App
No
Android App
No
Windows
No
Mac
No
Linux
No
Chromebook
No
Deployment
Web-Based
Yes
On-Premises
No
iPhone App
No
iPad App
No
Android App
No
Windows
No
Mac
No
Linux
No
Chromebook
No
Customer Support
Business Hours
Yes
Live Rep (24/7)
No
Online Support
Yes
Customer Support
Business Hours
No
Live Rep (24/7)
No
Online Support
Yes
Types of Training
Training Docs
Yes
Webinars
No
Live Training (Online)
No
In Person
No
Types of Training
Training Docs
Yes
Webinars
No
Live Training (Online)
No
In Person
No
Vendor Details
Company Name
OpenText
Founded
1991
Country
Canada
Website
www.opentext.com/products/static-application-security-testing
Vendor Details
Company Name
Puma Security
Founded
2016
Country
United States
Website
pumasecurity.io/pricing/
Product Features
Application Security
Analytics / Reporting
Yes
Open Source Component Monitoring
Yes
Source Code Analysis
Yes
Third-Party Tools Integration
Yes
Training Resources
Yes
Vulnerability Detection
Yes
Vulnerability Remediation
Yes
Static Application Security Testing (SAST)
Application Security
No
Dashboard
No
Debugging
No
Deployment Management
No
IDE
No
Multi-Language Scanning
No
Real-Time Analytics
No
Source Code Scanning
No
Vulnerability Scanning
No
Static Code Analysis
Analytics / Reporting
No
Code Standardization / Validation
No
Multiple Programming Language Support
No
Provides Recommendations
No
Standard Security/Industry Libraries
No
Vulnerability Management
No
Product Features
Static Application Security Testing (SAST)
Application Security
No
Dashboard
No
Debugging
No
Deployment Management
No
IDE
No
Multi-Language Scanning
No
Real-Time Analytics
No
Source Code Scanning
No
Vulnerability Scanning
No
Static Code Analysis
Analytics / Reporting
No
Code Standardization / Validation
No
Multiple Programming Language Support
No
Provides Recommendations
No
Standard Security/Industry Libraries
No
Vulnerability Management
No