

OpenText Core Application Security and Coverity Static compete in the application security domain. Coverity Static has the edge with superior functionalities that users find worth the initial investment despite its higher price, while OpenText Core Application Security is lauded for quicker response times and higher accuracy.
Features: OpenText Core Application Security provides quick compliance with HIPAA, static and dynamic integration, and centralized portal access. Additional features include efficient vulnerability tracking and rapid security consultations. Coverity Static excels with extensive programming language support, effective static code analyzers, and detailed reporting capabilities.
Room for Improvement: OpenText Core Application Security could enhance reporting clarity and better integrate with incident management systems; users also report false positives indicating a need for threat intelligence improvements. Coverity Static users desire improved IDE integration, reduced false positives, and better GUI responsiveness. Its high price and complex custom routines are also usability barriers.
Ease of Deployment and Customer Service: Both products offer diverse deployment options. OpenText provides an intuitive cloud-based system, while Coverity delivers a robust but more complex on-premises option. OpenText's customer service can be inconsistent, with complaints about unresponsive ticket handling. Coverity's customer service is generally responsive, though some users suggest communication could improve.
Pricing and ROI: OpenText Core Application Security is considered pricey per scan but delivers a strong ROI through automated features and thorough vulnerability management, helping reduce bug densities and improve security postures. Coverity Static's high costs due to its pricing model based on user numbers may deter expansive teams, despite its extensive feature set and potential ROI boost through comprehensive coverage.
| Product | Market Share (%) |
|---|---|
| Coverity Static | 4.7% |
| OpenText Core Application Security | 3.1% |
| Other | 92.2% |

| Company Size | Count |
|---|---|
| Small Business | 8 |
| Midsize Enterprise | 6 |
| Large Enterprise | 31 |
| Company Size | Count |
|---|---|
| Small Business | 17 |
| Midsize Enterprise | 8 |
| Large Enterprise | 44 |
Coverity gives you the speed, ease of use, accuracy, industry standards compliance, and scalability that you need to develop high-quality, secure applications. Coverity identifies critical software quality defects and security vulnerabilities in code as it’s written, early in the development process, when it’s least costly and easiest to fix. With the Code Sight integrated development environment (IDE) plugin, developers get accurate analysis in seconds in their IDE as they code. Precise actionable remediation advice and context-specific eLearning help your developers understand how to fix their prioritized issues quickly, without having to become security experts.
Coverity seamlessly integrates automated security testing into your CI/CD pipelines and supports your existing development tools and workflows. Choose where and how to do your development: on-premises or in the cloud with the Polaris Software Integrity Platform (SaaS), a highly scalable, cloud-based application security platform. Coverity supports more than 20 languages and 200 frameworks and templates.
OpenText Core Application Security offers robust features like static and dynamic scanning, real-time vulnerability tracking, and seamless integration with development platforms, designed to enhance code security and reduce operational costs.
OpenText Core Application Security is a cloud-based, on-demand service providing accurate and deep scanning capabilities with detailed reporting. Its integrations with development platforms ensure an enhanced security layer in the development lifecycle, benefiting users by lowering operational costs and facilitating efficient remediation. The platform addresses needs for intuitive interfaces, API support, and comprehensive vulnerability assessments, helping improve code security and accelerate time-to-market. Despite its strengths, challenges exist around false positives, report clarity, and language support, alongside confusing pricing and package options. Enhancements are sought in areas like CI/CD pipeline configuration, report visualization, scan times, and integration with third-party tools such as GitLab, container scanning, and software composition analysis.
What features define OpenText Core Application Security?Industries like mobile applications, e-commerce, and banking leverage OpenText Core Application Security for its ability to identify vulnerabilities such as SQL injections. Integrating seamlessly with DevSecOps and security auditing processes, this tool supports developers in writing safer code, ensuring secure application deployment and enhancing software assurance.
We monitor all Static Application Security Testing (SAST) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.