

Checkmarx One and GitHub Code Scanning compete in the code security category. GitHub Code Scanning seems to have the upper hand, offering enhanced features that justify its higher cost.
Features: Checkmarx One offers excellent integration capabilities and robust analysis tools. Its competitive pricing makes it appealing. GitHub Code Scanning provides a seamless coding experience and highlights vulnerabilities efficiently. It captures more diverse vulnerabilities, which makes it favored for thorough security needs.
Room for Improvement: Checkmarx One requires enhancements in speed and more streamlined reporting. Users also seek better clarity in its outputs. GitHub Code Scanning could benefit from deeper scanning capabilities and a broader range of language support. Users also mention the need for a more intuitive interface to maximize its potential.
Ease of Deployment and Customer Service: Checkmarx One is noted for simple deployment with excellent customer service, providing clear guidance. GitHub Code Scanning has a more complex initial setup but is supported by a strong community. Users appreciate Checkmarx One's easy setup and GitHub's community resources.
Pricing and ROI: Checkmarx One offers budget-friendly setup costs and provides good ROI due to its comprehensive features. GitHub Code Scanning has higher initial costs, but users find its ROI satisfactory, thanks to its feature-rich platform. While Checkmarx One is cost-effective, many find GitHub Code Scanning's extensive functionality worth the investment.
| Product | Mindshare (%) |
|---|---|
| Checkmarx One | 9.7% |
| GitHub Code Scanning | 1.4% |
| Other | 88.9% |

| Company Size | Count |
|---|---|
| Small Business | 32 |
| Midsize Enterprise | 9 |
| Large Enterprise | 46 |
Checkmarx One delivers robust security through seamless integration with SCM and CI/CD tools, ensuring reliable SAST and SCA. Primarily used by organizations for vulnerability detection, it supports cloud and on-premises deployment to enhance secure coding practices.
Checkmarx One provides organizations with comprehensive tools for secure software development, integrating effectively with CI/CD pipelines to scan thousands of applications. Its capabilities extend to identifying vulnerabilities in both code bases and third-party software. Enhancing workflow by supporting SCM solutions, it assists in maintaining secure coding standards and compliance. While excelling in various areas, it requires improvements in scan speed, reduction of false positives, and broader platform integration, particularly for COBOL and Swift. Its pricing model is noted as high, and demand exists for better tutorials and documentation.
What are the key features of Checkmarx One?Industries implement Checkmarx One for secure coding compliance and vulnerability management across varying environments, choosing between cloud and on-premises deployment based on requirements. Its extensive language support and integration with DevSecOps practices make it a popular choice for organizations aiming to enhance software security.
Code scanning is a feature that you use to analyze the code in a GitHub repository to find security vulnerabilities and coding errors. Any problems identified by the analysis are shown in GitHub.
We monitor all Static Application Security Testing (SAST) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.