+
+

Related Products

  • Feroot
    32 Ratings
    Visit Website
  • Parasoft
    148 Ratings
    Visit Website
  • TrustInSoft Analyzer
    6 Ratings
    Visit Website
  • Aikido Security
    239 Ratings
    Visit Website
  • Jscrambler
    40 Ratings
    Visit Website
  • Google Cloud Run
    349 Ratings
    Visit Website
  • BrandMail
    327 Ratings
    Visit Website
  • Resco Inspections+
    68 Ratings
    Visit Website
  • ManageEngine ServiceDesk Plus
    1,947 Ratings
    Visit Website
  • UENI
    9,369 Ratings
    Visit Website

About

Modern security teams are “paving the road” for developers — enforcing code guardrails on every commit. r2c’s Semgrep can eliminate vulnerability classes organization-wide. Scale your security team with lightweight static analysis. Semgrep is a fast, open-source, static analysis tool that excels at expressing code standards — without complicated queries — and surfacing bugs early in the development flow. Precise rules look like the code you’re searching; no more traversing abstract syntax trees or wrestling with regexes. Start right away with 900+ rules and SaaS infrastructure to get fast results in your editor, at commit-time, or in CI. When off-the-shelf rules aren’t enough, quickly and intuitively write custom rules to express your unique code standards. Rules look like the code you’re searching. For example, rules for Go look like Go. Find function calls, class or method definitions, and more without having to understand abstract syntax trees or wrestle with regexes.

About

Platform for detecting security vulnerabilities and analyzing code quality of applications. bugScout was born in 2010, with the objective of promoting global application security through audit and DevOps processes. Our purpose is to promote a culture of safe development and thus provide protection for your company’s information, assets and reputation. Designed by ethical hackers and reputable security auditors, bugScout® follows international security rules and standards and is at the forefront of cybercrime techniques to keep our customers’ applications safe and secure. We combine security with quality, offering the lowest false positive rate on the market and the fastest analysis. Lightest platform on the market, 100% integrated with SonarQube. A platform that unites SAST and IAST, promoting the most complete and versatile source code audit on the market for the detection of Application Security Vulnerabilities.

Platforms Supported

Windows
Mac
Linux
Cloud
On-Premises
iPhone
iPad
Android
Chromebook

Platforms Supported

Windows
Mac
Linux
Cloud
On-Premises
iPhone
iPad
Android
Chromebook

Audience

Developer teams that want to ensure security on every code commit

Audience

Development teams interested in a Static Application Security Testing (SAST) and Interactive Application Security Testing (IAST) solution

Support

Phone Support
24/7 Live Support
Online

Support

Phone Support
24/7 Live Support
Online

API

Offers API

API

Offers API

Screenshots and Videos

Screenshots and Videos

Pricing

$40 per month
Free Version
Free Trial

Pricing

No information available.
Free Version
Free Trial

Reviews/Ratings

Overall 0.0 / 5
ease 0.0 / 5
features 0.0 / 5
design 0.0 / 5
support 0.0 / 5

This software hasn't been reviewed yet. Be the first to provide a review:

Review this Software

Reviews/Ratings

Overall 0.0 / 5
ease 0.0 / 5
features 0.0 / 5
design 0.0 / 5
support 0.0 / 5

This software hasn't been reviewed yet. Be the first to provide a review:

Review this Software

Training

Documentation
Webinars
Live Online
In Person

Training

Documentation
Webinars
Live Online
In Person

Company Information

r2c
Founded: 2003
United Kingdom
r2c.dev/

Company Information

bugScout
Founded: 2010
Spain
bugscout.io/en/

Alternatives

Alternatives

CodeSonar

CodeSonar

CodeSecure
CodeQL

CodeQL

GitHub
SonarQube Server

SonarQube Server

SonarSource
Jsmon

Jsmon

Jsmon Inc.
PT Application Inspector

PT Application Inspector

Positive Technologies

Categories

Categories

Integrations

Amazon Web Services (AWS)
Apache Maven
AppVeyor
Archipelo
Azure DevOps Server
Betterscan.io
Cider
Claude Code
DefectDojo
GitHub
GitLab
Java
Kondukto
Kotlin
Logilica
MCPTotal
Metorial
Pixee
Python
SonarQube Server

Integrations

Amazon Web Services (AWS)
Apache Maven
AppVeyor
Archipelo
Azure DevOps Server
Betterscan.io
Cider
Claude Code
DefectDojo
GitHub
GitLab
Java
Kondukto
Kotlin
Logilica
MCPTotal
Metorial
Pixee
Python
SonarQube Server
Claim Semgrep and update features and information
Claim Semgrep and update features and information
Claim bugScout and update features and information
Claim bugScout and update features and information