We performed a comparison between Kiuwan and SonarCloud based on real PeerSpot user reviews.
Find out in this report how the two Application Security Testing (AST) solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI."Software analytics for a lot of different languages including ABAP."
"The solution has a continuous integration process."
"The most valuable feature of the solution stems from the fact that it is quick when processing and giving an output or generating a report."
"We use Kiuwan to locate the source of application vulnerabilities."
"I personally like the way it breaks down security vulnerabilities with LoC at first glance."
"I've found the reporting features the most helpful."
"I find it immensely helpful because it's not just about generating code; it's about ensuring efficiency in the execution."
"The feature that I have found the most valuable in Kiuwan is the speed of scanning. Compared to other SaaS tools I have used, Kiuwan is much quicker in performing scans. I have not yet used it on a large code base, but from what I have experienced, it is efficient and accurate. Additionally, I have used it both manually and in an automated pipeline, and both methods have been effective. The speed of scanning is what makes it valuable to me."
"The reports from SonarCloud are very good."
"Recently, they introduced support for mono reports and microservices, which is a noteworthy development as it provides a more detailed view of each service."
"The most valuable feature of SonarCloud is its overall performance."
"The solution provides continuous code analysis which has improved the quality of our code. It can raise alarms on vulnerabilities with immediate reports on the dashboard. Few things are false positives and we can customize the rules."
"The most valuable features of SonarCloud are the ability to discover vulnerabilities, security weak points, security hotspots, and all the feedback that comes into the feature branch. You can deploy the code with the security, you can eliminate the problem at the developer level rather than identifying the problem in the productions."
"For what it is meant to do, it works pretty well."
"The solution can be installed locally."
"I'm not implementing the solutions. However, I've talked to the people who deploy the tools, and they are happy with how easy setting up SonarCloud is."
"The solution seems to give us a lot of false positives. This could be improved quite a bit."
"The configuration hasn't been that good."
"Kiuwan's support has room for improvement. You can only open a ticket is through email, and the support team is outside of our country. They should have a support number or chat."
"Perhaps more languages supported."
"DIfferent languages, such Spanish, Portuguese, and so on."
"The QA developer and security could be improved."
"Integration of the programming tools could be improved."
"It could improve its scalability abilities."
"SonarCloud can improve the false positives. Sometimes the gates sometimes act a little weird. We then need to manually go and mark the false positive."
"SonarCloud's UI needs enhancement."
"We had some issues with the scanner."
"It would be helpful if notifications could go out to an extra person."
"The solution needs to improve its customization and flexibility."
"I've been told by the developers that the solution is too limited. It's not testing enough within the containers."
"CI/CD pipeline is part of a whole chain of design, development, and production, and it's becoming increasingly crucial to optimize the various tools across different stages. However, it's still a silo approach because the full integration is missing. This isn't just an issue with SonarCloud. It's a general problem with tooling."
"The reports could improve by providing more information. We are not able to use the reports in our operation until they are improved. Additionally, if the vendor provided more customization capabilities it would be a benefit."
Kiuwan is ranked 16th in Application Security Testing (AST) with 23 reviews while SonarCloud is ranked 10th in Application Security Testing (AST) with 10 reviews. Kiuwan is rated 8.6, while SonarCloud is rated 8.4. The top reviewer of Kiuwan writes "Though a stable tool, the UI needs improvement". On the other hand, the top reviewer of SonarCloud writes "Beneficial vulnerability discovery, simple to maintain, and proactive support". Kiuwan is most compared with SonarQube, Checkmarx One, Veracode, Snyk and OWASP Zap, whereas SonarCloud is most compared with SonarQube, Veracode, Checkmarx One, OWASP Zap and PortSwigger Burp Suite Professional. See our Kiuwan vs. SonarCloud report.
See our list of best Application Security Testing (AST) vendors.
We monitor all Application Security Testing (AST) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.