Logo of Coverity

Coverity

Website LinkedIn Twitter

Last updated on

Company health

Employee growth
9% increase in the last year
Web traffic
26% decrease in the last quarter

Ratings

G2
4.2/5
(56)
Glassdoor
4.0/5
(4056)

Coverity description

Coverity is a tool that helps find and fix security flaws and coding errors within software. It examines your code for potential problems, explains the cause of each issue, and makes it easy for developers to fix them. This helps companies release more secure software and comply with industry coding standards. Coverity is known for its speed, accuracy, and ability to work with large, complex codebases.


Who is Coverity best for

Coverity is ideal for enterprise software developers seeking to enhance code security and quality. Users praise its ability to detect complex C++ bugs and integrate with CI/CD pipelines. However, some find the frequency of false positives and resource intensiveness challenging. Coverity analyzes code for vulnerabilities, explains the issues, and helps developers fix them, ensuring secure software releases and compliance with coding standards.

  • Best for enterprise companies.

  • Suitable for any industry.


Coverity features

Supported

Coverity analyzes every line of code and all possible execution paths to ensure thorough testing and identification of potential issues.

Supported

Coverity provides clear and concise explanations of the root cause of each identified defect, which helps developers understand and fix bugs more efficiently.

Supported

Coverity integrates seamlessly with popular development platforms and tools, allowing developers to incorporate it into their existing workflows.

Supported

Coverity supports a wide range of programming languages, including Java, C/C++, C#, JavaScript, Ruby, and Python, making it versatile for various projects.

Supported

Coverity offers a free static analysis service specifically for open-source projects, enabling them to benefit from its capabilities.

Supported

Coverity helps enhance software quality and security by proactively identifying potential vulnerabilities and bugs during the development process.

Supported

Coverity provides a user-friendly web interface that simplifies project management, build submission, and analysis result viewing.


Coverity reviews

We've summarised 56 Coverity reviews (Coverity G2 reviews) and summarised the main points below.

Pros of Coverity
  • Excellent at detecting complex C++ bugs, especially memory-related issues.
  • Provides detailed and helpful explanations of identified defects.
  • Integrates well with CI/CD pipelines for automated code analysis.
  • Helps enforce coding standards and improve code quality.
  • Centralized reporting and issue tracking facilitates team collaboration.
Cons of Coverity
  • False positives can be frequent, requiring manual review.
  • Can be slow and resource-intensive, especially for large projects.
  • UI/UX could be improved for better navigation and clarity.
  • Limited language support beyond C/C++ reduces its applicability.
  • Reporting features could be enhanced with more customization options and faster generation times.

Coverity alternatives

  • Logo of SonarQube
    coverity vs SonarQube
    Automated code analysis for cleaner, safer, and more reliable software.
    Read more
  • Logo of Snyk
    Snyk
    Finds and fixes security holes in your code and infrastructure.
    Read more
  • Logo of Clang
    Clang
    Finds hidden bugs in your C/C++ code before they cause trouble.
    Read more
  • Logo of CodeSonar
    CodeSonar
    Finds and fixes hidden code bugs for safer, higher quality software.
    Read more
  • Logo of SonarLint
    SonarLint
    Catches coding bugs and vulnerabilities before they cause trouble.
    Read more
  • Logo of Codacy
    coverity vs Codacy
    Automated code reviews for cleaner, safer, healthier code.
    Read more

Coverity FAQ

  • What is Coverity and what does Coverity do?

    Coverity is a static analysis tool that identifies security vulnerabilities and code defects in software. It scans codebases, pinpoints potential issues, clarifies the root cause, and offers remediation guidance, enabling developers to build more secure and reliable software. It's known for its speed and accuracy in analyzing complex projects.

  • How does Coverity integrate with other tools?

    Coverity integrates seamlessly with CI/CD pipelines for automated code analysis. It supports various development tools and environments, facilitating centralized reporting and issue tracking for improved team collaboration.

  • What the main competitors of Coverity?

    Top alternatives to Coverity include Semgrep, Snyk, SonarQube, and GitGuardian. These competitors offer similar code analysis and security vulnerability detection capabilities, catering to various development needs and preferences.

  • Is Coverity legit?

    Coverity is a legitimate and safe tool for detecting security flaws and coding errors. It's known for its speed and accuracy with large codebases and integrates well with CI/CD pipelines. However, users note frequent false positives and resource-intensive scanning.

  • How much does Coverity cost?

    Synopsys does not publicly disclose Coverity pricing. Contact their sales team for a quote tailored to your specific needs and to determine if the product is worth the investment.

  • Is Coverity customer service good?

    Customer reviews suggest Coverity's support has declined. One user stated it's "useless since the takeover by Synopsys." While the product is praised for finding C++ bugs, the lack of support is a concern.


Reviewed by

MK
Michal Kaczor
CEO at Gralio

Michal has worked at startups for many years and writes about topics relating to software selection and IT management. As a former consultant for Bain, a business advisory company, he also knows how to understand needs of any business and find solutions to its problems.

TT
Tymon Terlikiewicz
CTO at Gralio

Tymon is a seasoned CTO who loves finding the perfect tools for any task. He recently headed up the tech department at Batmaid, a well-known Swiss company, where he managed about 60 software purchases, including CX, HR, Payroll, Marketing automation and various developer tools.

NEW: Introducing Gralio Screen Buddy

An AI tool that observes your work, finds inefficiencies, and suggests smarter ways to do things. Maybe you can use your tools better, automate tasks, or switch software.

For Individuals
Streamline your daily tasks, get helpful AI tips, and find the right tools for your workflow.
For Businesses
See how your team really works, uncover automation opportunities, and get software recommendations tailored to your processes.