

GitHub and Klocwork operate in the realm of software development tools. GitHub appears to lead with its superior collaboration and integration features, while Klocwork excels in static code analysis and early defect detection.
Features: GitHub is recognized for its comprehensive collaboration tools, seamless integration with popular software like Jenkins and Jira, and strong open-source project support. Klocwork is strong in static code analysis, offering incremental and on-the-fly analysis, which helps identify errors early. It also supports custom checkers and industry-standard compliance, making it valuable for maintaining code quality.
Room for Improvement: GitHub could boost its project management capabilities and simplify its user interface to better support non-technical users. It also needs smoother integration with various tools and enhanced automation and security features. Klocwork can improve by expanding language support and refining its false positive rates in analysis notifications. Enhancing licensing flexibility and integration with modern DevOps tools also presents opportunities.
Ease of Deployment and Customer Service: GitHub benefits from its cloud-based infrastructure, which facilitates easy deployment and offers flexibility for remote work, though its customer support could be more responsive. Klocwork is primarily on-premises, ensuring solid technical support and customer communication, though its complex deployment and licensing process can be challenging.
Pricing and ROI: GitHub provides a free tier for public repositories and affordable options for private use, offering significant ROI for startups and small enterprises through operational efficiencies. Klocwork's pricing reflects its specialized capabilities, placing it on the higher end, yet it delivers substantial ROI in environments where code quality and compliance are key drivers.
The main ROI factors include efficiency and how we meet compliance standards for various automotive requirements.
The technical support from GitHub is generally good, and they communicate effectively.
Some forums help you get answers faster since you just type in your concern and see resolutions from other engineers.
I have not used GitHub's technical support extensively because there are many resources and a robust knowledge base available due to the large user community.
The customer support team is very responsive, proactive, and engages in conversations to ensure our needs are met.
The issue is not about the knowledge of the support but about the prioritization of the tickets they handle.
During the initial phase, there was a need for follow-ups and clarifications.
We have never had a problem with scalability, so I would rate it at least eight to nine.
GitHub is more scalable than on-prem solutions, allowing for cloud-based scaling which is beneficial for processing large workloads efficiently.
Klocwork supports our scalability needs without issues, even as project volumes increase.
The program-to-program enablement is scalable.
If a skilled developer uses it, it is ten out of ten for stability.
It provides a reliable environment for code management.
GitHub is mostly stable, but there can be occasional hiccups.
Installation is easy, and the solution is stable.
When working with the CI/CD pipeline and somebody is writing the workflow file, it would be best to include the AI feature so if they write incorrect code, it will notify me about it in the same dashboard, eliminating the need to use third-party tools to review the file.
I am providing this feedback for Copilot because it seems more widespread and more companies allow it rather than Amp, and it would be beneficial if they catch up with Amp on this capability.
Security could make GitHub better. OWASP Top Ten security advisors could be integrated on GitHub, and it could provide checks and advice.
There are too many warnings, and it requires expertise to determine the correct category for them.
Klocwork sometimes provides too many additional warnings which require expertise to manage.
We would like Klocwork to connect to Git and notify developers of issues tied to specific commits.
Normally, GitHub is not expensive, but it would be welcome if it reduces costs for developing countries.
The pricing of GitHub is reasonable, with the cost being around seven dollars per user per month for private repositories.
The pricing of GitHub depends on the choice of solutions, such as building one's own GitHub Runners to save money or using GitHub's Runners with extra costs.
It is less expensive than Coverity.
The solution is not very cheap, however, it is less expensive than Coverity.
Klocwork was competitively priced, making it a cost-effective solution for us.
The pull request facility for code review.
GitHub Actions allow for creating multiple jobs that run in different stages such as build, test, and deploy, which enable better visibility and control over the deployment pipeline.
For branching, it works well, especially in an agile environment.
The most valuable feature of Klocwork is the static analysis tools, which help identify potential security threats and errors.
Its integration with the CI/CD pipeline has helped streamline the software development process.
It takes just half a day to set up.
| Product | Mindshare (%) |
|---|---|
| GitHub | 1.6% |
| Klocwork | 1.3% |
| Other | 97.1% |

| Company Size | Count |
|---|---|
| Small Business | 42 |
| Midsize Enterprise | 14 |
| Large Enterprise | 52 |
| Company Size | Count |
|---|---|
| Small Business | 12 |
| Midsize Enterprise | 2 |
| Large Enterprise | 12 |
GitHub is a web-based Git repository hosting service. It offers all of the distributed revision control and source code management (SCM) functionality of Git as well as adding its own features. Unlike Git, which is strictly a command-line tool, GitHub provides a Web-based graphical interface and desktop as well as mobile integration. It also provides access control and several collaboration features such as bug tracking, feature requests, task management, and wikis for every project.
Klocwork detects security, safety, and reliability issues in real-time by using this static code analysis toolkit that works alongside developers, finding issues as early as possible, and integrates with teams, supporting continuous integration and actionable reporting.
We monitor all Application Security Tools reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.