App store for web apps

Find the right software and services.

WebCatalog Desktop

Turn websites into desktop apps with WebCatalog Desktop, and access a wealth of exclusive apps for Mac, Windows. Use spaces to organize apps, switch between multiple accounts with ease, and boost your productivity like never before.

Top Static Application Security Testing (SAST) Software

Static Application Security Testing (SAST) software examines an application's code to find security vulnerabilities without running the code. These tools are commonly used by companies with continuous delivery practices to detect issues before deployment. SAST tools offer details on vulnerabilities and provide remediation suggestions for development teams to address. While there is some overlap with static code analysis tools, SAST products are specifically geared towards security testing. In contrast, static code analysis tools typically offer a broader range of features, including various analytical methods, test management, and team collaboration.

Submit New App


GitHub

GitHub

github.com

GitHub is a platform for hosting and collaborating on software development projects, offering version control, project management, and social coding features.

GitLab

GitLab

about.gitlab.com

GitLab is a web-based tool for managing code repositories, issue tracking, and CI/CD pipelines, supporting collaboration throughout the software development lifecycle.

Codacy

Codacy

codacy.com

Codacy is a code review tool that automates code quality analysis, helping teams identify issues early and improve code health across multiple programming languages.

SonarCloud

SonarCloud

sonarcloud.io

SonarCloud is a cloud service for continuous code quality and security analysis, integrating with major version control and CI/CD platforms to provide real-time feedback.

Snyk

Snyk

snyk.io

Snyk is a developer security platform that helps identify and fix vulnerabilities in code, open source, containers, and cloud infrastructure.

DeepSource

DeepSource

deepsource.com

DeepSource analyzes code for security, performance, and bugs, automating reviews and assessments to enhance software quality and streamline development workflows.

Semgrep

Semgrep

semgrep.dev

Semgrep is a customizable security platform that scans code for vulnerabilities, integrates with development workflows, and provides actionable results for developers.

Embold

Embold

embold.io

Embold is a tool that analyzes code to identify and resolve issues, helping developers improve code quality and reduce technical debt in their projects.

OX Security

OX Security

ox.security

OX Security is an Active Application Security Posture Management platform that integrates various security tools to improve application security throughout development.

CodeScan

CodeScan

codescan.io

CodeScan Shield enhances code quality and compliance for Salesforce through two modules: CodeScan for code analysis and OrgScan for policy enforcement.

The Code Registry

The Code Registry

thecoderegistry.com

The Code Registry is an AI-driven platform that analyzes software code for quality and security, helping businesses manage projects and risks more effectively.

Cycode

Cycode

cycode.com

Cycode is a software supply chain security platform that ensures visibility and integrity throughout the software development lifecycle by scanning for vulnerabilities and managing dependencies.

CodeThreat

CodeThreat

codethreat.com

CodeThreat is a static analysis tool that identifies and prioritizes security vulnerabilities in code, supporting secure development practices.

Aikido Security

Aikido Security

aikido.dev

Aikido Security is a platform for code scanning and cloud vulnerability assessments, integrating various security tools for comprehensive protection throughout the software development lifecycle.

GuardRails

GuardRails

guardrails.io

GuardRails is a security platform that scans for vulnerabilities in code, providing real-time fixes and training to enhance security in development workflows.

JFrog

JFrog

jfrog.com

JFrog is a DevOps platform for managing software delivery, providing artifact management, CI/CD automation, and security across multiple deployment environments.

GitGuardian

GitGuardian

gitguardian.com

GitGuardian detects and prevents the exposure of sensitive information like secrets in code repositories, integrating seamlessly with development workflows.

Data Theorem

Data Theorem

datatheorem.com

Data Theorem offers integrated solutions for closing, escrow accounting, imaging, transaction management, e-signing, and digital marketplaces in both on-premise and hosted formats.

Hubbl Diagnostics

Hubbl Diagnostics

hubbl.com

Hubbl Diagnostics offers automated, AI-driven insights for Salesforce organizations to monitor performance, enhance security, and improve operational efficiency.

© 2025 WebCatalog, Inc.

Top Static Application Security Testing (SAST) Software - WebCatalog