Try our new research platform with insights from 80,000+ expert users
GitHub Code Scanning Logo

GitHub Code Scanning Reviews

Vendor: GitHub
4.3 out of 5

What is GitHub Code Scanning?

Featured GitHub Code Scanning reviews

GitHub Code Scanning mindshare

As of August 2025, the mindshare of GitHub Code Scanning in the Static Application Security Testing (SAST) category stands at 1.3%, up from 0.3% compared to the previous year, according to calculations based on PeerSpot user engagement data.
Static Application Security Testing (SAST) Market Share Distribution
ProductMarket Share (%)
GitHub Code Scanning1.3%
SonarQube Server (formerly SonarQube)22.1%
Checkmarx One10.0%
Other66.6%
Static Application Security Testing (SAST)

PeerResearch reports based on GitHub Code Scanning reviews

TypeTitleDate
CategoryStatic Application Security Testing (SAST)Aug 31, 2025Download
ProductReviews, tips, and advice from real usersAug 31, 2025Download
ComparisonGitHub Code Scanning vs SonarQube Server (formerly SonarQube)Aug 31, 2025Download
ComparisonGitHub Code Scanning vs VeracodeAug 31, 2025Download
ComparisonGitHub Code Scanning vs Checkmarx OneAug 31, 2025Download
Suggested products
TitleRatingMindshareRecommending
SonarQube Server (formerly SonarQube)4.022.1%81%116 interviewsAdd to research
Veracode4.07.8%90%203 interviewsAdd to research
 
 
Key learnings from peers

Valuable Features

Room for Improvement

Pricing

Popular Use Cases

Deployment

Scalability

Top industries

By visitors reading reviews
Computer Software Company
13%
Financial Services Firm
11%
Manufacturing Company
10%
Government
6%
Transportation Company
6%
Healthcare Company
5%
Insurance Company
5%
Comms Service Provider
5%
Retailer
5%
University
4%
Construction Company
4%
Performing Arts
4%
Media Company
3%
Energy/Utilities Company
3%
Educational Organization
3%
Newspaper
2%
Consumer Goods Company
2%
Non Profit
2%
Legal Firm
2%
Aerospace/Defense Firm
1%
Outsourcing Company
1%
Real Estate/Law Firm
1%
Pharma/Biotech Company
1%
 
GitHub Code Scanning Reviews Summary
Author infoRatingReview Summary
Software Development Manager at Amazon4.0I've used GitHub Code Scanning for three to four years to identify code vulnerabilities, with automated AI agents highlighting issues. It's effective but could improve by providing better documentation. My team of 35-40 developers benefits significantly from this tool.
Senior Engineering Manager at a logistics company with 10,001+ employees3.5We use GitHub Code Scanning for static code analysis to identify vulnerabilities before production. Its integration with GitHub Actions aids in code management. Real-time vulnerability highlights during code merges could improve its effectiveness. SonarQube is a comparable alternative.
soln architect at a newspaper with 11-50 employees4.5We use GitHub Code Scanning to improve code quality by identifying logical errors, not just syntax issues. Its simplicity and automation enhance our development process, although we wish it could summarize extensive reports to highlight issues like outdated libraries.
Data Engineer at a tech services company with 201-500 employees4.0I've used GitHub Code Scanning for six months and find it reliable for detecting code differences and errors, but I wish it offered more transparency in data paths and better script validation. Integration and automation work well.
Senior developer at FIL5.0We primarily use GitHub Code Scanning for source code management and have seen a return on investment, appreciating its capabilities over Bitbucket. We believe it could be improved with more templates to enhance its functionality.
Consulting & Solutions, BA/BD in Enterprise IT on Open Source, Red Hat & EDB at KEEN AND ABLE COMPUTERS PVT LTD4.5GitHub Code Scanning is a tool that helps me understand which ports are allowed by scanning systems for open ports, enhancing security by identifying vulnerabilities in port communication with applications, crucial for compliance with policies restricting attack-prone ports.