CodeQL

CodeQL

GitHub
+
+

Related Products

  • ZeroPath
    2 Ratings
    Visit Website
  • TrustInSoft Analyzer
    6 Ratings
    Visit Website
  • Parasoft
    139 Ratings
    Visit Website
  • SoftCo AP Automation
    56 Ratings
    Visit Website
  • Aikido Security
    148 Ratings
    Visit Website
  • Vertex AI
    827 Ratings
    Visit Website
  • Google Cloud BigQuery
    1,939 Ratings
    Visit Website
  • Windsurf Editor
    159 Ratings
    Visit Website
  • Twilio
    1,357 Ratings
    Visit Website
  • JetBrains Junie
    12 Ratings
    Visit Website

About

Discover vulnerabilities across a codebase with CodeQL, our industry-leading semantic code analysis engine. CodeQL lets you query code as though it were data. Write a query to find all variants of a vulnerability, eradicating it forever. Then share your query to help others do the same. CodeQL is free for research and open source. Run real queries on popular open source codebases using CodeQL for Visual Studio Code. See how powerful it is to discover a bad pattern and then find similar occurrences across the entire codebase. You can create CodeQL databases yourself for any project that's under an OSI-approved open source license. GitHub CodeQL can only be used on codebases that are released under an OSI-approved open source license, to perform academic research, or to generate CodeQL databases for or during automated analysis. Download and add the project’s CodeQL database to VS Code, or create a CodeQL database using the CodeQL CLI.

About

With AI-powered remediation, static analysis, secret scanning, and software composition analysis, GitHub Advanced Security helps developers and security teams work together to eliminate security debt and keep new vulnerabilities out of code. Code scanning with Copilot Autofix detects vulnerabilities, provides contextual explanations, and suggests fixes in the pull request and for historical alerts. Solve your backlog of application security debt. Security campaigns target and generate autofixes for up to 1,000 alerts at a time, rapidly reducing the risk of application vulnerabilities and zero-day attacks. Secret scanning with push protection guards over 200 token types and patterns from more than 150 service providers, even elusive secrets like passwords and PII. Powered by security experts and a global community of more than 100 million developers, GitHub Advanced Security provides the insights and automation you need to ship more secure software on schedule.

Platforms Supported

Windows
Mac
Linux
Cloud
On-Premises
iPhone
iPad
Android
Chromebook

Platforms Supported

Windows
Mac
Linux
Cloud
On-Premises
iPhone
iPad
Android
Chromebook

Audience

Developers searching for a solution to find vulnerabilities across their codebase

Audience

DevSecOps teams requiring a tool to code, detect, prevent, and fix vulnerabilities without leaving their flow

Support

Phone Support
24/7 Live Support
Online

Support

Phone Support
24/7 Live Support
Online

API

Offers API

API

Offers API

Screenshots and Videos

Screenshots and Videos

Pricing

Free
Free Version
Free Trial

Pricing

$49 per month per user
Free Version
Free Trial

Reviews/Ratings

Overall 0.0 / 5
ease 0.0 / 5
features 0.0 / 5
design 0.0 / 5
support 0.0 / 5

This software hasn't been reviewed yet. Be the first to provide a review:

Review this Software

Reviews/Ratings

Overall 0.0 / 5
ease 0.0 / 5
features 0.0 / 5
design 0.0 / 5
support 0.0 / 5

This software hasn't been reviewed yet. Be the first to provide a review:

Review this Software

Training

Documentation
Webinars
Live Online
In Person

Training

Documentation
Webinars
Live Online
In Person

Company Information

GitHub
Founded: 2008
United States
codeql.github.com

Company Information

GitHub
Founded: 2008
United States
github.com/enterprise/advanced-security

Alternatives

Dependabot

Dependabot

GitHub

Alternatives

Xygeni

Xygeni

Xygeni Security

Categories

Categories

Integrations

GitHub
Java
Azure DevTest Labs
C#
C++
GitHub Copilot
Go
JavaScript
Kotlin
Microsoft Defender for Cloud
OpsLevel
Opsera
Qualio
Ruby
Swift
TypeScript
Visual Studio Code

Integrations

GitHub
Java
Azure DevTest Labs
C#
C++
GitHub Copilot
Go
JavaScript
Kotlin
Microsoft Defender for Cloud
OpsLevel
Opsera
Qualio
Ruby
Swift
TypeScript
Visual Studio Code
Claim CodeQL and update features and information
Claim CodeQL and update features and information
Claim GitHub Advanced Security and update features and information
Claim GitHub Advanced Security and update features and information