What is Coverity SAST?
Coverity is a fast, accurate, and highly scalable static analysis (SAST) solution that helps development and security teams address security and quality defects early in the software development life cycle (SDLC), track and manage risks across the application portfolio, and ensure compliance with security and coding standards.
Company Details
Need Assistance?
We're here to help you with understanding our reports and the data inside to help you make decisions.
Get AssistanceCoverity SAST Ratings
Real user data aggregated to summarize the product performance and customer experience.
Product scores listed below represent current data. This may be different from data contained in reports and awards, which express data as of their publication date.
87 Likeliness to Recommend
100 Plan to Renew
75 Satisfaction of Cost Relative to Value
Emotional Footprint Overview
Product scores listed below represent current data. This may be different from data contained in reports and awards, which express data as of their publication date.
+99 Net Emotional Footprint
The emotional sentiment held by end users of the software based on their experience with the vendor. Responses are captured on an eight-point scale.
How much do users love Coverity SAST?
Pros
- Helps Innovate
- Continually Improving Product
- Reliable
- Performance Enhancing
How to read the Emotional Footprint
The Net Emotional Footprint measures high-level user sentiment towards particular product offerings. It aggregates emotional response ratings for various dimensions of the vendor-client relationship and product effectiveness, creating a powerful indicator of overall user feeling toward the vendor and product.
While purchasing decisions shouldn't be based on emotion, it's valuable to know what kind of emotional response the vendor you're considering elicits from their users.
Footprint
Negative
Neutral
Positive
Feature Ratings
Integrated Development Environment (IDE) plug-in
Container Security Testing
Mobile Application Security Testing
Policy Engine and Enforcements
Software Composition Analysis (SCA)
Static Application Security Testing (SAST)
Dynamic Application Security Testing (DAST)
Vulnerability Scanning
Risk Scoring
Interactive Application Security Testing (IAST)
SDLC Integration
Vendor Capability Ratings
Ease of Implementation
Ease of IT Administration
Breadth of Features
Ease of Data Integration
Ease of Customization
Usability and Intuitiveness
Quality of Features
Vendor Support
Availability and Quality of Training
Product Strategy and Rate of Improvement
Business Value Created
Coverity SAST Reviews
Timothy G.
- Role: Information Technology
- Industry: Engineering
- Involvement: IT Development, Integration, and Administration
Submitted Sep 2024
Fantastic product
Likeliness to Recommend
What differentiates Coverity SAST from other similar products?
Makes it easier to process information.
What is your favorite aspect of this product?
Really inexpensive and has a lot to offer within the OS.
What do you dislike most about this product?
Sometimes it has an ability to crash when overwhelmed with information transfers
What recommendations would you give to someone considering this product?
Use wisely
Pros
- Helps Innovate
- Continually Improving Product
- Performance Enhancing
- Enables Productivity
Ubaidul H.
- Role: Information Technology
- Industry: Technology
- Involvement: End User of Application
Submitted Jul 2026
Reliable and Accurate SAST Solution for Enterprise
Likeliness to Recommend
What differentiates Coverity SAST from other similar products?
Coverity SAST is efficient in identifying real code vulnerabilities and decreasing the number of false positives, which allows the workforce to focus on a fewer but more relevant set of issues. The tool has a variety of strong features and excellent support; thus, it is used by various organizations, including enterprise, medium-sized, and small companies. It helps in detecting and securing application code during the development stage. The profound code analysis, multilanguage processing, and detailed reports that this tool offers make it appropriate for meeting the requirements of different enterprises and ensuring the quality of code.
What is your favorite aspect of this product?
My favorite part of Coverity SAST is that it can find the most common and severe security issues with a low false positive rate, saving time for developers who have to triage and address them. The tool also has great integration into the CI/CD pipeline and is easy to adopt since it supports many programming languages.
What do you dislike most about this product?
One of the main disadvantages of Coverity SAST is that it may be complicated to set up and configure at first. Furthermore, analyzing large volumes of code may take a lot of time, and small businesses that do not have the necessary security budget may not get enough value for the money invested.
What recommendations would you give to someone considering this product?
I can suggest considering a number of different criteria when choosing the Coverity SAST tool. First and foremost, I would recommend analyzing the company’s security requirements and determining which languages to use. Furthermore, I think that the software should be studied and mastered to receive the best benefit. Finally, it might be a good idea to scan only some of the codes and adjust the preferences so that there are fewer false positives. Thus, such a static code analyzer will be very useful if there are many codes and strict safety standards in the company.
Pros
- Reliable
- Performance Enhancing
- Enables Productivity
- Trustworthy
Khaoula H.
- Role: Student Academic
- Industry: Technology
- Involvement: IT Development, Integration, and Administration
Submitted Jun 2026
Reliable and Effective SAST Solution for Improving
Likeliness to Recommend
What differentiates Coverity SAST from other similar products?
Coverity stands out due to its strong accuracy in detecting complex defects and security vulnerabilities, especially in large and mature codebases. It offers deep analysis capabilities and supports a wide range of programming languages, which makes it suitable for enterprise environments. Compared to other tools, it produces fewer false positives once properly tuned, which saves developers time during triage.
What is your favorite aspect of this product?
My favorite aspect is the quality and depth of the analysis results. The tool is very effective at identifying real issues that could impact security or reliability. I also appreciate how it integrates with development workflows and CI/CD pipelines, making it easier to catch issues early in the development lifecycle without disrupting productivity too much
What do you dislike most about this product?
The initial setup and configuration can be quite complex and time-consuming, especially for teams that are new to SAST tools. In addition, the user interface feels somewhat outdated and not as intuitive as some newer tools. Licensing and cost can also be a concern, particularly for smaller teams or organisations with limited budgets.
What recommendations would you give to someone considering this product?
I would recommend investing time in proper setup and tuning to reduce false positives and get the most value from the tool. It is also important to train developers on how to interpret and act on the findings. For larger teams or organisations with mature DevSecOps practices, Coverity can be a very effective solution, but smaller teams should carefully evaluate cost and complexity before adopting it.
Pros
- Continually Improving Product
- Reliable
- Enables Productivity
- Inspires Innovation