Klocwork offers advanced static code analysis with integration capabilities for enhanced development efficiency, supporting various development environments and providing clear defect reports. It streamlines software development by reducing defects and improving code quality.
| Product | Mindshare (%) |
|---|---|
| Klocwork | 1.3% |
| SonarQube | 14.5% |
| Checkmarx One | 9.2% |
| Other | 75.0% |
| Title | Rating | Mindshare | Recommending | |
|---|---|---|---|---|
| SonarQube | 4.0 | 14.5% | 84% | 136 interviewsAdd to research |
| Snyk | 4.1 | 5.2% | 100% | 51 interviewsAdd to research |
| Company Size | Count |
|---|---|
| Small Business | 9 |
| Midsize Enterprise | 2 |
| Large Enterprise | 11 |
| Company Size | Count |
|---|---|
| Small Business | 150 |
| Midsize Enterprise | 71 |
| Large Enterprise | 300 |
Klocwork integrates seamlessly into CI/CD pipelines, providing real-time and incremental analysis to identify and rectify code defects quickly. It supports multiple integrated development environments (IDEs) and minimizes false positives in its analysis. While primarily supporting C/C++, Java, and C#, there is a need to expand language support and enhance its static analysis engine. The tool assists in adhering to industry standards with features like automated code parsing and MISRA compliance checks. Ease of setup and collaboration capabilities further promotes efficiency, although the dashboard could benefit from user-friendly updates and better integration with Agile tools.
What are the primary features of Klocwork?Klocwork is extensively implemented in industries that prioritize software quality and security standards, particularly in environments focused on C/C++ development on Linux systems. Its capabilities in automated code parsing, traffic analysis, and support for DevOps integration make it invaluable for industries requiring strict MISRA compliance and internal standards adherence. By aiding refactoring and detecting memory-related vulnerabilities, Klocwork contributes to the maintainability and security standards in these sectors.
ACCESS Co Ltd, Risk-AI, Winbond Electronics, Bristol-Myers Squibb Pharmaceutical Research Institute, University of Southern California, Alebra Technologies, SIMULIA, Risk Management Solutions, Brigham Young University, SRD, HRL
| Author info | Rating | Review Summary |
|---|---|---|
| Manager, Quality, Functional Safety, Cybersecurity Embedded Processing at a manufacturing company with 10,001+ employees | 3.5 | I use Klocwork for coding, static analysis, and compliance checks, integrating it into our CI/CD pipeline. It's user-friendly and enhances our development flow. However, its static analysis engine needs improvement, and competitors sometimes find more issues. It boosts compliance and efficiency. |
| Director - Quality Excellence at a manufacturing company with 501-1,000 employees | 4.5 | I use Klocwork to identify defects and vulnerabilities in code. Its reduced setup time and informative user interface are valuable, though it occasionally generates too many warnings. Despite this, it’s more efficient than Coverity for failure categorization. |
| Senior Software Engineering Manager at a tech vendor with 10,001+ employees | 4.5 | I use Klocwork to boost code quality and streamline development. It's stable, support is helpful, and setup is fairly simple. While there's room for improvement, I find its features effective and would rate it 9 out of 10. |
| Integration Supervisor Lead at a manufacturing company with 5,001-10,000 employees | 4.0 | I primarily use Klocwork for early vulnerability detection due to its faster setup and better debugging capabilities compared to Coverity. Despite too many warnings requiring expertise, its easy integration and quick setup make it advantageous. |
| Principle engineer at a manufacturing company with 10,001+ employees | 3.5 | We use Klocwork for compliance with DO-178 standards in the aerospace market, benefiting from solid support and insightful reporting. Integration was simple, improving our software quality and confidence, although streamlined update processes could enhance user experience. |
| Application Development Team Lead at Miura Pay | 3.0 | We primarily use Klocwork for static analysis, which is valuable for identifying potential security threats and errors. While it integrates well into our CI pipeline, improvements like Git notifications would enhance its utility. We chose Klocwork for its effectiveness and support. |
| Principal Software Engineer at Valeo | 4.0 | I use Klocwork for traffic analysis and code parsing to detect potential problems. It's easy to integrate and automate in our CI environment, but it generates many warnings requiring analysis. We also use Polyspace for areas needing higher quality verification. |
| Head - Solution Management Group at Meteonic Innovation Pvt. Ltd. | 4.5 | I value Klocwork for real-time defect detection and broad analysis. It's stable, scalable, with great support and competitive pricing. However, I believe its dashboard and reporting need improvement, and I'd like to see its Cahoots and architecture analysis features return. |