CodeSonar

CodeSonar

CodeSecure
+
+

Related Products

  • ZeroPath
    2 Ratings
    Visit Website
  • TrustInSoft Analyzer
    6 Ratings
    Visit Website
  • Aikido Security
    148 Ratings
    Visit Website
  • Parasoft
    140 Ratings
    Visit Website
  • Astra Pentest
    225 Ratings
    Visit Website
  • Wiz
    1,106 Ratings
    Visit Website
  • Criminal IP ASM
    18 Ratings
    Visit Website
  • Google Cloud Run
    317 Ratings
    Visit Website
  • Orca Security
    495 Ratings
    Visit Website
  • Docmosis
    48 Ratings
    Visit Website

About

Brakeman is a security scanner for Ruby on Rails applications. Unlike many web security scanners, Brakeman looks at the source code of your application. This means you do not need to set up your whole application stack to use it. Once Brakeman scans the application code, it produces a report of all security issues it has found. Brakeman requires zero setup or configuration once it is installed. Just run it. Because all Brakeman needs is source code, Brakeman can be run at any stage of development: you can generate a new application with rails new and immediately check it with Brakeman. Since Brakeman does not rely on spidering sites to determine all their pages, it can provide more complete coverage of an application. This includes pages which may not be ‘live’ yet. In theory, Brakeman can find security vulnerabilities before they become exploitable. Brakeman is specifically built for Ruby on Rails applications, so it can easily check configuration settings for best practices.

About

CodeSonar employs a unified dataflow and symbolic execution analysis that examines the computation of the complete application. By not relying on pattern matching or similar approximations, CodeSonar's static analysis engine is extraordinarily deep, finding 3-5 times more defects on average than other static analysis tools. Unlike many software development tools, such as testing tools, compilers, configuration management, etc., SAST tools can be integrated into a team's development process at any time with ease. SAST technologies like CodeSonar simply attach to your existing build environments to add analysis information to your verification process. Like a compiler, CodeSonar does a build of your code using your existing build environment, but instead of creating object code, CodeSonar creates an abstract model of your entire program. From the derived model, CodeSonar’s symbolic execution engine explores program paths, reasoning about program variables and how they relate.

Platforms Supported

Windows
Mac
Linux
Cloud
On-Premises
iPhone
iPad
Android
Chromebook

Platforms Supported

Windows
Mac
Linux
Cloud
On-Premises
iPhone
iPad
Android
Chromebook

Audience

Development teams interested in a security scanner for Ruby on Rails applications

Audience

Development teams interested in a Static Application Security Testing (SAST) solution

Support

Phone Support
24/7 Live Support
Online

Support

Phone Support
24/7 Live Support
Online

API

Offers API

API

Offers API

Screenshots and Videos

Screenshots and Videos

Pricing

No information available.
Free Version
Free Trial

Pricing

No information available.
Free Version
Free Trial

Reviews/Ratings

Overall 0.0 / 5
ease 0.0 / 5
features 0.0 / 5
design 0.0 / 5
support 0.0 / 5

This software hasn't been reviewed yet. Be the first to provide a review:

Review this Software

Reviews/Ratings

Overall 0.0 / 5
ease 0.0 / 5
features 0.0 / 5
design 0.0 / 5
support 0.0 / 5

This software hasn't been reviewed yet. Be the first to provide a review:

Review this Software

Training

Documentation
Webinars
Live Online
In Person

Training

Documentation
Webinars
Live Online
In Person

Company Information

Brakeman
Founded: 2014
brakemanscanner.org

Company Information

CodeSecure
United States
www.grammatech.com/products/source-code-analysis

Alternatives

YAG-Suite

YAG-Suite

YAGAAN

Alternatives

Flawnter

Flawnter

CyberTest
SonarQube Server

SonarQube Server

SonarSource
PT Application Inspector

PT Application Inspector

Positive Technologies
SonarQube Cloud

SonarQube Cloud

SonarSource

Categories

Categories

Integrations

GitHub
Seeker
ArmorCode
C
C#
CodeFactor
Docker
Eclipse IDE
Go
Java
Jenkins
Kotlin
Nucleus
RuboCop
Ruby on Rails
SQL
Strobes RBVM
TypeScript
Visual Studio
Visual Studio Code

Integrations

GitHub
Seeker
ArmorCode
C
C#
CodeFactor
Docker
Eclipse IDE
Go
Java
Jenkins
Kotlin
Nucleus
RuboCop
Ruby on Rails
SQL
Strobes RBVM
TypeScript
Visual Studio
Visual Studio Code
Claim Brakeman and update features and information
Claim Brakeman and update features and information
Claim CodeSonar and update features and information
Claim CodeSonar and update features and information