Back to the registry
Agent passport

Coco Code Coverage

Qt Group · Operations & Productivity

No attestation published

Certification per AWS Marketplace.

Provenance reach4 of 12 layers traced

Evidence tier Source Confirmed · 4 captures on record

User ratingNot rated0 reviews on the listing
Runs onUnknownSaaS
ProvenanceUnknown44% of the provenance layers this product can disclose
Evidence riskHighSign in to see the basis for this band.

What the publisher says

As described on AWS Marketplace.

Coco is a code coverage tool for software teams developing desktop applications and embedded systems. It instruments source code at the compiler level and captures exactly which statements, branches, and conditions are executed during testing.

Coco integrates natively with Jenkins, GitHub Actions, and GitLab CI, outputting coverage data in Cobertura XML, JUnit, SonarQube XML, and EMMA-XML formats so that CI pipelines can enforce threshold gates. It supports C, C++, C#, QML, Tcl, and Python (via Coverage.py) across desktop, embedded Linux, and bare-metal MCU targets.

Show the rest of the publisher’s description (1 more line)

With Coco, teams can generate audit-ready reports aligned with international safety and compliance standards including automotive ISO 26262 and aerospace DO-178C/DO-330. Coco is independently certified by SGS TUV Saar (Certificate No. FS/71/220/26/2113) for safety-related software verification up to ASIL D, the highest automotive safety integrity level, confirmed by external audit.

Highlights

Highlighted by the publisher on AWS Marketplace.

One Tool, Every Test: Measure coverage across your entire QA spectrum - from automated unit and integration tests to manual exploratory sessions and GUI-driven workflows. Coco captures every executed code path, regardless of the testing method, and merges them into a single, unified source of truth.

Coco covers C, C++, C#, QML, Tcl, and Python in a single instrumentation database. On embedded targets it collects coverage through GDB, serial, TCP/IP, CAN bus, or ARM semihosting including RTOS-based systems and bare-metal MCUs. Used widely in industries including automotive, aerospace, medical and industrial automation.

Coco's Patch Analysis maps every changed line against existing coverage data and identifies which tests executed those paths without re-running the full suite. The CRAP metric (Change Risk Anti-Patterns) combines cyclomatic complexity with coverage gaps to rank every function by risk, so engineers know exactly where one new test reduces the most exposure. Results are exportable for sprint planning, QA reviews, and certification evidence.

Agent build and provenance

See the full provenance

The layer-by-layer build, the evidence behind each claim, the risk basis and the cross-marketplace links are open to any account. Some rows are disclosed, some the source leaves Unknown; a free account shows you which.

Compliance

Government
  • FedRAMPConfirmedNot listed90%, registry-checkedNo FedRAMP Marketplace entry matched this vendor's domain, checked 2026-08-27registry recordas observed 2026-08-27

Confirmed means matched to a public authoritative registry. Claimed means the vendor or its listing states it, not yet cross-checked. A framework not shown was not found in any source we hold, which is not evidence against it. Not listed means a scoped registry check found no match for this vendor's domain: a No is a scoped registry check, not a compliance judgment. Confidence bands: 95% domain-verified, 90% registry-checked, 80% self-attested, 70% weak signal. Self-attested items marked “vendor's site” are gathered from the vendor's own website and are not verified by us.

Vendor

External enrichment

CompanyQt Group PlcAutomated

Plans and pricing as listed

1 listed
Process License (Pack of 5)
  • Hosts
$9,200.00
P12M

Refund terms

As stated by the publisher on AWS Marketplace.

As per the Qt Frame Agreement below, all fees under this Agreement are non-cancellable and non-refundable. https://www.qt.io/terms-conditions

Sources

Marketplace listingaws.amazon.comSource
App certificationaws.amazon.comSource
CustomEulaCustomEulaSource

Publisher resources

4 links
See product videowww.youtube.comSource
Product datasheet (PDF)www.qt.ioSource
Documentation & user guidedoc.qt.ioSource
Product overview videowww.qt.ioSource

Linked repositories

RepositoriesUnknownUnknown

Unknown means this listing does not publish a repository. It is not a statement that the code is closed, and a linked repository is not a claim that the publisher wrote it: the registry computes that relationship privately and does not publish it.

Pricing
Paid
1 plan listed
Delivery
SaaS
Product datasheet (PDF): https://www.qt.io/hubfs/Coco%20Product%20Overview_2026.pdf?hsLang=en Documentation & user guide: https://doc.qt.io/coco/ Product overview video: https://www.qt.io/quality-assurance/coco#coco-demo-webinar https://account.qt.io/
Open the source listing ↗

Evidence risk is the share of the build you cannot see before you deploy, not a security rating. Sign in to see the layer-by-layer basis for this band.