# Top Free Dynamic Application Security Testing (DAST) Software

## How Many Dynamic Application Security Testing (DAST) Software Products Does G2 Track?

**Total Products under this Category:** 101

### Category Stats (Aug 2026)

- **Average Rating:** 4.58/5 (↑0.02 vs Jul 2026) The average rating of products in this category, based on all submitted ratings
- **Top Trending Product:** TASKING Test & Verification Tools (+10.99%) - Among all products in this category, TASKING Test & Verification Tools recorded the largest rating increase compared to last month

_Last updated: August 24, 2026_

## How Does G2 Rank Dynamic Application Security Testing (DAST) Software Products?

**Why You Can Trust G2's Software Rankings:**

- 30 Analysts and Data Experts
- 4,200+ Authentic Reviews
- 101+ Products
- Unbiased Rankings

G2's software rankings are built on verified user reviews, rigorous moderation, and a consistent research methodology maintained by a team of analysts and data experts. Each product is measured using the same transparent criteria, with no paid placement or vendor influence. While reviews reflect real user experiences, which can be subjective, they offer valuable insight into how software performs in the hands of professionals. Together, these inputs power the G2 Score, a standardized way to compare tools within every category.

## G2 Grid® for Dynamic Application Security Testing (DAST) Software
 ![G2 Grid® for Dynamic Application Security Testing (DAST) Software plotting products by satisfaction and market presence](https://www.g2.com/categories/dynamic-application-security-testing-dast/grids.png?focus%5B%5D=1259627&focus%5B%5D=154599&focus%5B%5D=32486&focus%5B%5D=19003&focus%5B%5D=32494&focus%5B%5D=32484&focus%5B%5D=1332841&focus%5B%5D=27706)

Highlighted products: Aikido Security, Astra Pentest, Burp Suite, GitLab, Tenable Nessus, Invicti, Qodex.ai, and Intruder.

Underlying data: [Grid® JSON](https://www.g2.com/categories/dynamic-application-security-testing-dast/grids.json?focus%5B%5D=aikido-security&focus%5B%5D=astra-pentest&focus%5B%5D=burp-suite&focus%5B%5D=gitlab&focus%5B%5D=tenable-nessus&focus%5B%5D=invicti&focus%5B%5D=qodex-ai&focus%5B%5D=intruder)

**Sponsored**

### Aikido Security

Aikido Security is the developer-first security platform that unifies code, cloud, protection, and attack testing in one suite of best-in-class products. Built by developers for developers, Aikido helps teams of any size ship secure software faster, automate protection, and simulate real-world attacks with AI-driven precision. The platform’s proprietary AI cuts noise by 95%, delivers one-click fixes, and saves developers 10+ hours per week. Aikido Intel proactively uncovers vulnerabilities in open source packages before disclosure, helping secure more than 50,000 organizations worldwide, including Revolut, Niantic, Visma, Montblanc, and GoCardless.

[Visit website](https://www.g2.com/external_clickthroughs/record?secure%5Bad_program%5D=ppc&secure%5Bad_slot%5D=category_product_list_llm&secure%5Bcategory_id%5D=1521&secure%5Bchosen_at%5D=2026-08-26T09%3A14%3A18Z&secure%5Bdisplayable_resource_id%5D=1521&secure%5Bdisplayable_resource_type%5D=Category&secure%5Bmedium%5D=sponsored&secure%5Bplacement_reason%5D=page_category&secure%5Bplacement_resource_ids%5D%5B%5D=1521&secure%5Bprioritized%5D=false&secure%5Bproduct_id%5D=1259627&secure%5Bresource_id%5D=1521&secure%5Bresource_type%5D=Category&secure%5Bsource_type%5D=category_page&secure%5Bsource_url%5D=https%3A%2F%2Fwww.g2.com%2Fcategories%2Fdynamic-application-security-testing-dast%2Ffree&secure%5Btoken%5D=1d90d431daf20524813e2e6ae00bcbf6f227e20c8371c329a0242fc02d9517a0&secure%5Burl%5D=https%3A%2F%2Fwww.aikido.dev%2Fattack%2Fsurface-monitoring-dast%3Futm_source%3Dg2%26utm_campaign%3Dg2-promoted-listing-dast%26utm_medium%3Dcpc&secure%5Burl_type%5D=custom_url)

### [Aikido Security](https://www.g2.com/products/aikido-security/reviews)

Aikido Security is the developer-first security platform that unifies code, cloud, protection, and attack testing in one suite of best-in-class products. Built by developers for developers, Aikido helps teams of any size ship secure software faster, automate protection, and simulate real-world attacks with AI-driven precision. The platform’s proprietary AI cuts noise by 95%, delivers one-click fixes, and saves developers 10+ hours per week. Aikido Intel proactively uncovers vulnerabilities in open source packages before disclosure, helping secure more than 50,000 organizations worldwide, including Revolut, Niantic, Visma, Montblanc, and GoCardless.

**Average Rating:** 4.6/5.0

**Total Reviews:** 259

#### How Do G2 Users Rate Aikido Security?

- **Has the product been a good partner in doing business?:** 9.2/10 (Category avg: 9.2/10)
- **API / Integrations:** 8.3/10 (Category avg: 8.7/10)
- **Detection Rate:** 10.0/10 (Category avg: 8.7/10)
- **Test Automation:** 10.0/10 (Category avg: 8.8/10)

#### Who Is the Company Behind Aikido Security?

- **Seller:** [Aikido Security](https://www.g2.com/sellers/aikido-security)
- **Company Website:** aikido.dev
- **Year Founded:** 2022
- **HQ Location:** Ghent, Belgium
- **Twitter:** @AikidoSecurity  
11,770 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=79406802efc597500b142b19f023ee80eb82879906d7e1e458900293346529a9&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Faikido-security%2F&secure%5Burl_type%5D=linkedin_company_website)  
241 employees on LinkedIn®

#### Who Uses This Product?

- **Who Uses This:** Founder, CTO
- **Top Industries:** Computer Software, Information Technology and Services
- **Company Size:** 80% Small, 14% Medium

#### What Do G2 Reviewers Say About Aikido Security?

_AI-generated summary from verified user reviews_

##### Pros

- Users appreciate the **ease of use** of Aikido Security, thanks to its clear insights and seamless integration.
- Users appreciate Aikido Security's **robust security capabilities** , providing a comprehensive and seamless integration in their workflow.
- Users value the **intuitive dashboard** of Aikido Security, which simplifies security issue identification and management.
- Users value the **easy integrations** of Aikido Security, enhancing workflows with seamless connections to existing GitLab repositories.
- Users find Aikido's **easy setup** highly efficient, enabling quick implementation and immediate usability for security assessments.

##### Cons

- Users note the **lack of advanced features** in Aikido Security, such as dark mode and in-depth analysis options.
- Users find the **pricing structure expensive** for micro businesses, making upgrades difficult to justify.
- Users note the **limited features** of Aikido Security, wishing for more customization and advanced options.
- Users find the **pricing issues** challenging, especially for micro businesses, due to the steep upgrade costs.
- Users feel Aikido Security is **lacking features** like advanced reporting and deeper compliance analysis compared to competitors.

#### What Are Recent G2 Reviews of Aikido Security?

**["Seamless GitHub Integration with Solid Security Findings and Smart False-Positive Analysis"](https://www.g2.com/survey_responses/aikido-security-review-13109689)**

**Rating:** 4.5/5.0 stars

_— Jordan B._

[Read full review](https://www.g2.com/survey_responses/aikido-security-review-13109689)

**["Enterprise Security Without an Enterprise Security Team"](https://www.g2.com/survey_responses/aikido-security-review-13108704)**

**Rating:** 4.0/5.0 stars

_— Ian M._

[Read full review](https://www.g2.com/survey_responses/aikido-security-review-13108704)

### [Astra Pentest](https://www.g2.com/products/astra-pentest/reviews)

Astra Security is a leading continuous penetration testing platform that combines AI-powered autonomous pentesting with certified expert-led assessments. Powered by Attack AI, trained on 6.8M+ security findings and insights from 5,000+ real-world pentests. Astra deploys intelligent agents that continuously discover, validate, prioritize, and help remediate vulnerabilities at scale. While AI handles speed and scale, Astra’s certified security experts focus on what automation alone cannot: complex business logic flaws, multi-step attack chains, advanced exploit paths, and emerging AI/LLM-specific threats. Built for modern engineering teams, Astra integrates directly into CI/CD workflows, enabling continuous security validation between releases instead of relying on outdated annual pentests. The platform delivers comprehensive Autonomous Pentest powered by AI agents, DAST vulnerability scanner and human-driven pentests across web apps, AI/LLMs, mobile apps, APIs, cloud infrastructure. Astra is CREST-accredited, CERT-IN empaneled, and a PCI ASV-certified vendor. Our team also led the development of the OWASP APTS framework, helping shape the industry standard for continuous security testing. Today, 1,500+ organizations across 70+ countries trust Astra Security, including Ford, Loom, CompTIA, Hitachi, HackerRank, and OLX.

**Average Rating:** 4.6/5.0

**Total Reviews:** 233

#### How Do G2 Users Rate Astra Pentest?

- **Has the product been a good partner in doing business?:** 9.3/10 (Category avg: 9.2/10)
- **API / Integrations:** 8.3/10 (Category avg: 8.7/10)
- **Detection Rate:** 8.9/10 (Category avg: 8.7/10)
- **Test Automation:** 8.8/10 (Category avg: 8.8/10)

#### Who Is the Company Behind Astra Pentest?

- **Seller:** [ASTRA IT, Inc.](https://www.g2.com/sellers/astra-it-inc)
- **Company Website:** www.getastra.com
- **Year Founded:** 2018
- **HQ Location:** New Delhi, IN
- **Twitter:** @getastra  
694 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=fbe109060085ad9c09016ddbb00bd4f363004bed188f1fd0e5a11ea004d08c89&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fgetastra%2F&secure%5Burl_type%5D=linkedin_company_website)  
130 employees on LinkedIn®

#### Who Uses This Product?

- **Who Uses This:** CTO, CEO
- **Top Industries:** Computer Software, Information Technology and Services
- **Company Size:** 67% Small, 28% Medium

#### What Do G2 Reviewers Say About Astra Pentest?

_AI-generated summary from verified user reviews_

##### Pros

- Users commend Astra Pentest's **excellent customer support** , noting their responsiveness and flexibility throughout the process.
- Users appreciate the **user-friendly interface** of Astra Pentest, enhancing their experience with clear and efficient vulnerability management.
- Users praise the **comprehensive vulnerability detection** of Astra Pentest, which simplifies tracking and prioritizing security issues.
- Users commend Astra Pentest for its **efficient scanning and penetration testing** , enhancing security preparedness and team responsiveness.
- Users value the **vulnerability identification** of Astra Pentest, enhancing confidence in security and business growth.

##### Cons

- Users report **poor customer support** with Astra Pentest, noting slow email responses and lack of instant messaging options.
- Users find the **poor interface design** of Astra Pentest frustrating, leading to confusion and difficulties in usage.
- Users report **slow performance** with Astra Pentest, citing delays in results and instability during use.
- Users find the **UI challenging** , particularly with note-taking and clarity on rescan needs during pentests.
- Users face **false positives** in Astra Pentest, resulting in wasted time and frustration with findings that aren't applicable.

#### What Are Recent G2 Reviews of Astra Pentest?

**["Astra Security: Fast, Responsive Pentesting That Kept Our Launch on Track"](https://www.g2.com/survey_responses/astra-pentest-review-13250949)**

**Rating:** 5.0/5.0 stars

_— Pravin Y._

[Read full review](https://www.g2.com/survey_responses/astra-pentest-review-13250949)

**["Astra Security: Responsive, Professional VAPT Partner with Strong Collaboration"](https://www.g2.com/survey_responses/astra-pentest-review-13349485)**

**Rating:** 5.0/5.0 stars

_— Anil V._

[Read full review](https://www.g2.com/survey_responses/astra-pentest-review-13349485)

#### What Are G2 Users Discussing About Astra Pentest?

- [What is Astra Pentest used for?](https://www.g2.com/discussions/what-is-astra-pentest-used-for) - 2 comments

### [GitLab](https://www.g2.com/products/gitlab/reviews)

GitLab is the most comprehensive AI-Powered DevSecOps platform that enables software innovation by empowering development, security, and operations teams to build better software, faster. With GitLab, teams can create, deliver, and manage code quickly and continuously instead of managing disparate tools and scripts. GitLab helps your teams across the complete DevSecOps lifecycle, from developing, securing, and deploying software. What makes us truly different? - Flexibility: Consume as a service or manage your own deployment - Cloud-Agnostic: Deploy anywhere with no vendor lock-in - No rip and replace: Scale to a platform approach at your own pace

**Average Rating:** 4.5/5.0

**Total Reviews:** 887

#### How Do G2 Users Rate GitLab?

- **Has the product been a good partner in doing business?:** 8.8/10 (Category avg: 9.2/10)
- **API / Integrations:** 9.2/10 (Category avg: 8.7/10)
- **Detection Rate:** 9.0/10 (Category avg: 8.7/10)
- **Test Automation:** 9.1/10 (Category avg: 8.8/10)

#### Who Is the Company Behind GitLab?

- **Seller:** [GitLab Inc.](https://www.g2.com/sellers/gitlab-inc)
- **Company Website:** about.gitlab.com
- **Year Founded:** 2014
- **HQ Location:** San Francisco, California
- **Twitter:** @gitlab  
171,534 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=a712a3bc9d0c8f9d0d986490c4b4786dfb8085e13a770fa4c99cd9d01137c372&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2F5101804%2F&secure%5Burl_type%5D=linkedin_company_website)  
3,473 employees on LinkedIn®

#### Who Uses This Product?

- **Who Uses This:** Software Engineer, Senior Software Engineer
- **Top Industries:** Computer Software, Information Technology and Services
- **Company Size:** 37% Medium, 37% Small

#### What Do G2 Reviewers Say About GitLab?

_AI-generated summary from verified user reviews_

##### Pros

- Users value the **ease of use** in GitLab, enjoying its all-in-one DevOps capabilities and intuitive interface.
- Users value the **all-encompassing features** of GitLab, which enhance collaboration and streamline the DevOps workflow.
- Users love the **seamless CI/CD integration** of GitLab, simplifying automation and collaboration in DevOps workflows.
- Users praise the **seamless CI/CD integration** in GitLab, enhancing automation and collaboration within their DevOps workflow.
- Users value the **seamless integrations** in GitLab, resulting in efficient workflows and streamlined management across multiple functions.

##### Cons

- Users find the **complexity** of GitLab's setup and management to be a significant barrier to efficient use.
- Users find the **difficult learning** curve of GitLab challenging due to its complex interface and YAML syntax.
- Users find the **interface confusing** due to clutter and slow performance with large repositories, complicating their navigation.
- Users find the **complex user interface** challenging, especially with slow performance and difficulties in navigation and management.
- Users find the **learning curve steep** , particularly for those new to DevOps and managing extensive features.

#### What Are Recent G2 Reviews of GitLab?

**["All-in-One DevOps Platform That Streamlines CI/CD and Collaboration"](https://www.g2.com/survey_responses/gitlab-review-12894467)**

**Rating:** 4.5/5.0 stars

_— Kishor G._

[Read full review](https://www.g2.com/survey_responses/gitlab-review-12894467)

**["Reliable CI/CD and Code Collaboration in One Platform"](https://www.g2.com/survey_responses/gitlab-review-13273601)**

**Rating:** 4.0/5.0 stars

_— Manish R._

[Read full review](https://www.g2.com/survey_responses/gitlab-review-13273601)

#### What Are G2 Users Discussing About GitLab?

- [What is GitLab used for?](https://www.g2.com/discussions/what-is-gitlab-used-for) - 2 comments
- [Why GitLab is better than Jenkins?](https://www.g2.com/discussions/why-gitlab-is-better-than-jenkins) - 1 comment
- [Is GitLab paid?](https://www.g2.com/discussions/is-gitlab-paid) - 5 comments, 2 upvotes
- [Is GitLab free software?](https://www.g2.com/discussions/is-gitlab-free-software) - 4 comments, 1 upvote
- [What can GitLab do?](https://www.g2.com/discussions/what-can-gitlab-do) - 2 comments

### [Tenable Nessus](https://www.g2.com/products/tenable-nessus/reviews)

Built for security practitioners, by security professionals, Nessus products by Tenable are the de-facto industry standard for vulnerability assessment. Nessus performs point-in-time assessments to help security professionals quickly and easily identify and fix vulnerabilities, including software flaws, missing patches, malware, and misconfigurations - across a variety of operating systems, devices, and applications. With features such as pre-built policies and templates, customizable reporting, group “snooze” functionality, and real-time updates, Nessus is designed to make vulnerability assessment simple, easy, and intuitive. The result: less time and effort to assess, prioritize, and remediate issues.

**Average Rating:** 4.5/5.0

**Total Reviews:** 292

#### How Do G2 Users Rate Tenable Nessus?

- **Has the product been a good partner in doing business?:** 8.7/10 (Category avg: 9.2/10)

#### Who Is the Company Behind Tenable Nessus?

- **Seller:** [Tenable](https://www.g2.com/sellers/tenable)
- **Company Website:** www.tenable.com
- **HQ Location:** Columbia, MD
- **Twitter:** @TenableSecurity  
87,752 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=029266d223c06e6b09e6d209209f15aad3bbad59d05069b38d5ec2757e74adef&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2F25452%2F&secure%5Burl_type%5D=linkedin_company_website)  
2,350 employees on LinkedIn®
- **Ownership:** NASDAQ: TENB

#### Who Uses This Product?

- **Who Uses This:** Security Engineer, Network Engineer
- **Top Industries:** Information Technology and Services, Computer & Network Security
- **Company Size:** 40% Medium, 34% Large

#### What Do G2 Reviewers Say About Tenable Nessus?

_AI-generated summary from verified user reviews_

##### Pros

- Users appreciate the **extensive vulnerability identification** capabilities of Tenable Nessus, enhancing their security risk management efforts.
- Users value the **comprehensive vulnerability detection** in Tenable Nessus, enhancing their ability to manage security risks effectively.
- Users value the **ease of use** of Tenable Nessus, appreciating its simple setup and user-friendly interface.
- Users praise the **automated scanning** of Tenable Nessus for its thoroughness and comprehensive vulnerability reporting.
- Users value the **extensive reporting and automation** capabilities of Tenable Nessus for better asset scanning.

##### Cons

- Users note that **slow scanning** can take 2-3 days and may disrupt production environments due to high resource usage.
- Users highlight the **high costs** of maintaining Tenable Nessus, which can be a barrier for many organizations.
- Users find the **limited features** of Tenable Nessus restrictive, especially regarding host capacity and mobile app testing.
- Users find the **complexity of licensing** and features in Tenable Nessus challenging, impacting overall usability and resource management.
- Users report that **false positives** from Nessus can create additional workload and complicate vulnerability management processes.

#### What Are Recent G2 Reviews of Tenable Nessus?

**["Self-Contained Nessus Scanning with Full Control in Offline Environments"](https://www.g2.com/survey_responses/tenable-nessus-review-12937668)**

**Rating:** 4.0/5.0 stars

_— Verified User in Higher Education_

[Read full review](https://www.g2.com/survey_responses/tenable-nessus-review-12937668)

**["Reliable and Efficient Vulnerability Management Tool"](https://www.g2.com/survey_responses/tenable-nessus-review-12989192)**

**Rating:** 5.0/5.0 stars

_— Mohsin H._

[Read full review](https://www.g2.com/survey_responses/tenable-nessus-review-12989192)

#### What Are G2 Users Discussing About Tenable Nessus?

- [What is Nessus used for?](https://www.g2.com/discussions/what-is-nessus-used-for) - 1 comment
- [What types of vulnerabilities are scanned by Nessus?](https://www.g2.com/discussions/what-types-of-vulnerabilities-are-scanned-by-nessus)
- [Is there a free version of Nessus?](https://www.g2.com/discussions/is-there-a-free-version-of-nessus) - 2 comments
- [What is an advantage of using Nessus?](https://www.g2.com/discussions/what-is-an-advantage-of-using-nessus)
- [What does Nessus scan for?](https://www.g2.com/discussions/what-does-nessus-scan-for) - 1 comment

### [Qodex.ai](https://www.g2.com/products/qodex-ai/reviews)

Qodex is a continuous testing platform that runs your test scenarios against your real app on every pull request and deploy, then shows you exactly what broke with the failing request, response, and screenshot.

**Average Rating:** 4.9/5.0

**Total Reviews:** 60

#### How Do G2 Users Rate Qodex.ai?

- **Has the product been a good partner in doing business?:** 9.4/10 (Category avg: 9.2/10)
- **API / Integrations:** 8.3/10 (Category avg: 8.7/10)
- **Detection Rate:** 8.3/10 (Category avg: 8.7/10)
- **Test Automation:** 10.0/10 (Category avg: 8.8/10)

#### Who Is the Company Behind Qodex.ai?

- **Seller:** [QodexAI](https://www.g2.com/sellers/qodexai)
- **Company Website:** www.qodex.ai
- **Year Founded:** 2023
- **HQ Location:** San Francisco, California
- **LinkedIn® Page:** [linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=d038e99b692165644ae7d01154b91132e72eb2c204e81cb300af5f1c72c22ce8&secure%5Burl%5D=https%3A%2F%2Flinkedin.com%2Fcompany%2Fqodexai&secure%5Burl_type%5D=linkedin_company_website)  
13 employees on LinkedIn®

#### Who Uses This Product?

- **Top Industries:** Computer Software, Information Technology and Services
- **Company Size:** 75% Small, 20% Medium

#### What Do G2 Reviewers Say About Qodex.ai?

_AI-generated summary from verified user reviews_

##### Pros

- Users highlight the **ease of use** of Qodex.ai, enabling quick learning and efficient API testing for all skill levels.
- Users appreciate the **automation of testing** in Qodex.ai, greatly reducing testing time and enhancing reliability.
- Users value the **easy interface for writing test cases** , streamlining the testing process and enhancing efficiency.
- Users appreciate the **testing efficiency** of Qodex.ai, streamlining the testing process and reducing shipment time significantly.
- Users appreciate the **effortless automation** of Qodex.ai, which streamlines API testing and enhances team productivity.

##### Cons

- Users note that the **slow loading** of the UI can hinder their experience and requires improvement.
- Users find the **poor documentation** hampers their ability to fully utilize Qodex.ai's advanced features effectively.
- Users report **slow performance** with Qodex.ai, noting delays in UI loading and chatbot response times.
- Users report **bug issues** including repeated test cases, and suggest improvements in bug classification and accuracy.
- Users report **bugs related to test cases** and suggest improvements for prioritizing and flagging issues effectively.

#### What Are Recent G2 Reviews of Qodex.ai?

**["Effortless AI Testing Automation That Accelerates Development"](https://www.g2.com/survey_responses/qodex-ai-review-12088697)**

**Rating:** 4.5/5.0 stars

_— Abhilash S._

[Read full review](https://www.g2.com/survey_responses/qodex-ai-review-12088697)

**["Effortless Automation and Insightful AI Testing with Qodex.ai"](https://www.g2.com/survey_responses/qodex-ai-review-12065938)**

**Rating:** 4.5/5.0 stars

_— Anshuk K._

[Read full review](https://www.g2.com/survey_responses/qodex-ai-review-12065938)

### [Intruder](https://www.g2.com/products/intruder/reviews)

Intruder's continuous exposure management platform helps security, IT, and engineering teams stop breaches before they start. By unifying AI penetration testing, attack surface monitoring, cloud security, and vulnerability management in one intuitive platform, Intruder gives stretched teams an always-on security source of truth. Our approach focuses on continuous automated scanning using expertise and agentic solutions to ensure that the findings we deliver are accurate, prioritized by real-world risk, and ready to act on. Founded in 2015 by Chris Wallis, a former ethical hacker turned corporate blue teamer, Intruder is now protecting over 3,000 companies worldwide. Intruder has been awarded multiple accolades, was selected for GCHQ’s Cyber Accelerator, included on Deloitte’s Tech Fast 50 2023 list as the fastest-growing cybersecurity company in the UK and was named in G2’s 2026 Best Software Awards.

**Average Rating:** 4.8/5.0

**Total Reviews:** 210

#### How Do G2 Users Rate Intruder?

- **Has the product been a good partner in doing business?:** 9.7/10 (Category avg: 9.2/10)
- **API / Integrations:** 8.9/10 (Category avg: 8.7/10)
- **Detection Rate:** 9.5/10 (Category avg: 8.7/10)
- **Test Automation:** 8.8/10 (Category avg: 8.8/10)

#### Who Is the Company Behind Intruder?

- **Seller:** [Intruder](https://www.g2.com/sellers/intruder)
- **Company Website:** www.intruder.io
- **Year Founded:** 2015
- **HQ Location:** London
- **Twitter:** @intruder\_io  
979 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=f067752387faaf8e51f29bfa65216c4d098142c0465fc0e1e9614d24e55d97f8&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2F6443623%2F&secure%5Burl_type%5D=linkedin_company_website)  
84 employees on LinkedIn®

#### Who Uses This Product?

- **Who Uses This:** CTO, Director
- **Top Industries:** Computer Software, Information Technology and Services
- **Company Size:** 57% Small, 36% Medium

#### What Do G2 Reviewers Say About Intruder?

_AI-generated summary from verified user reviews_

##### Pros

- Users value the **ease of use** of Intruder, with quick setup and intuitive system design enhancing their experience.
- Users value the **clarity and prioritization** of Intruder's findings, enabling effective risk management and actionable insights.
- Users value the **quick and efficient customer support** from Intruder, enhancing their overall scanning experience.
- Users appreciate the **intuitive interface** of Intruder, finding it easy to set up and navigate.
- Users value the **efficient vulnerability identification** from Intruder, enhancing their cybersecurity management effortlessly.

##### Cons

- Users find the product **expensive** due to high costs for add-ons and fees per endpoint scanned.
- Users find the **slow scanning** process frustrating, leading to inefficiencies and missed vulnerabilities during security assessments.
- Users find **licensing issues** challenging, particularly regarding costs and constraints that affect system configurations.
- Users experience **false positives** which can obscure the detection of critical vulnerabilities in security monitoring.
- Users find the **limited features** of Intruder less accommodating for specific reporting and customization needs.

#### What Are Recent G2 Reviews of Intruder?

**["Effortless Vulnerability Management with Automated Scanning"](https://www.g2.com/survey_responses/intruder-review-13350331)**

**Rating:** 4.5/5.0 stars

_— Prashant J._

[Read full review](https://www.g2.com/survey_responses/intruder-review-13350331)

**["Reliable Service with Flexible Plans and Strong Support"](https://www.g2.com/survey_responses/intruder-review-13110046)**

**Rating:** 4.0/5.0 stars

_— Ossama M._

[Read full review](https://www.g2.com/survey_responses/intruder-review-13110046)

#### What Are G2 Users Discussing About Intruder?

- [Who developed intruder?](https://www.g2.com/discussions/who-developed-intruder)
- [What is an intruder in cyber security?](https://www.g2.com/discussions/what-is-an-intruder-in-cyber-security)
- [Is intruder IO safe?](https://www.g2.com/discussions/is-intruder-io-safe) - 1 comment
- [What is intruder software?](https://www.g2.com/discussions/what-is-intruder-software) - 1 comment

### [Harness Platform](https://www.g2.com/products/harness-platform/reviews)

Simplify your developer experience with the world's first AI-augmented software delivery platform. Upgrade your software delivery with Harness' innovative CI/CD, Feature Flags, Infrastructure as Code Management, and Chaos Engineering tools. We are a software delivery platform that helps developers and infrastructure engineers build and ship code for cloud and on-premise projects. We automate the continuous integration and continuous delivery (CI/CD) process to help teams build faster, ship more frequently, and improve quality, efficiency, and governance. We help companies in four key areas: Number one, we accelerate innovation through DevOps modernization. We provide an approach for software delivery that automates processes, reduces manual interventions, consolidates tools, and accelerates time-to-market for new products, features, and fixes. Number two, we improve developer experience. We give you the ability to attract, retain, and onboard high-caliber engineering talent while fostering a culture of continuous innovation and improvement. Number three, we secure software delivery. We give you the ability to integrate security into every phase of the SDLC. And last but not least is, we optimize cloud costs. We give you the ability to eliminate waste and to ensure that appropriate cloud resources are allocated at the right place at the right time.

**Average Rating:** 4.6/5.0

**Total Reviews:** 316

#### How Do G2 Users Rate Harness Platform?

- **Has the product been a good partner in doing business?:** 9.2/10 (Category avg: 9.2/10)

#### Who Is the Company Behind Harness Platform?

- **Seller:** [Harness](https://www.g2.com/sellers/harness-25016f40-e80f-4417-bea8-39412055d17a)
- **Company Website:** harness.io
- **Year Founded:** 2018
- **HQ Location:** San Francisco
- **Twitter:** @HarnessWealth  
1,389 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=fbec562b1d7a892f3293de88d17cc0509949905a19856805c612616710bc3a7d&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fharnessinc%2F&secure%5Burl_type%5D=linkedin_company_website)  
1,701 employees on LinkedIn®

#### Who Uses This Product?

- **Who Uses This:** Software Engineer, DevOps Engineer
- **Top Industries:** Computer Software, Financial Services
- **Company Size:** 43% Large, 39% Medium

#### What Do G2 Reviewers Say About Harness Platform?

_AI-generated summary from verified user reviews_

##### Pros

- Users find the **ease of use** of Harness Platform essential for streamlining their development projects effectively.
- Users highlight the **easy integration** and comprehensive documentation of Harness Platform, streamlining project implementation and feature management.
- Users value the **ease of managing feature flags** across environments, enhancing flexibility and control in deployment.
- Users appreciate the **easy setup** of Harness Platform, allowing quick implementation of feature flags and A/B testing.
- Users find the **easy integrations** in Harness Platform enhance their workflow and improve productivity significantly.

##### Cons

- Users note the **missing features** in Harness Platform, particularly regarding multiple filters and flexibility compared to other tools.
- Users find the **activation and deactivation clarity lacking** , causing confusion in managing feature flags effectively.
- Users express frustration over **limited features** , including SDK options and difficulties with traffic splitting and flag management.
- Users note a **steep learning curve** with Harness Platform, requiring time to master its extensive features and tools.
- Users criticize the **poor UI** of Harness Platform, finding it difficult to manage feature flags effectively.

#### What Are Recent G2 Reviews of Harness Platform?

**["Harness Makes CI/CD Organized with Clean Workflows and Easy Deployment Automation"](https://www.g2.com/survey_responses/harness-platform-review-13201162)**

**Rating:** 4.5/5.0 stars

_— Harshul S._

[Read full review](https://www.g2.com/survey_responses/harness-platform-review-13201162)

**["Harness Simplifies CI/CD with Visual Pipelines, Smooth Integrations, and Safer Deployments"](https://www.g2.com/survey_responses/harness-platform-review-13212051)**

**Rating:** 4.0/5.0 stars

_— Muhammed A._

[Read full review](https://www.g2.com/survey_responses/harness-platform-review-13212051)

#### What Are G2 Users Discussing About Harness Platform?

- [What is Harness Continuous Delivery used for?](https://www.g2.com/discussions/what-is-harness-continuous-delivery-used-for) - 1 comment
- [What is Propelo used for?](https://www.g2.com/discussions/what-is-propelo-used-for)
- [What is Harness Cloud Cost Management used for?](https://www.g2.com/discussions/what-is-harness-cloud-cost-management-used-for)
- [What is the difference between harness and Jenkins?](https://www.g2.com/discussions/what-is-the-difference-between-harness-and-jenkins) - 1 comment
- [What is streaming Split IO?](https://www.g2.com/discussions/what-is-streaming-split-io) - 1 comment

### [Edgescan](https://www.g2.com/products/edgescan/reviews)

What Is Edgescan? Edgescan is a cybersecurity company that helps organizations proactively identify, validate, and prioritize vulnerabilities across their applications, API’s and digital landscape. The company specializes in continuous vulnerability assessment, automated penetration testing, Attack Surface Management and Penetration Testing as a Service (PTaaS). Edgescan also delivers Autonomous Penetration Testing via "Edgescan Atomic". Atomic is an AI powered autonomous penetration testing capability available exclusively to Edgescan customers. Each Atomic Attack Credit provides an autonomous penetration test, allowing organizations to perform an additional autonomous penetration test when required Atomic complements PTaaS by providing another way to assess security as environments evolve. (Supercharge your security with AI) Edgescan combines advanced automation with certified security experts, including professionals holding credentials such as CREST and OSCP, to deliver highly accurate and actionable security testing. This hybrid approach allows organizations to move beyond traditional point-in-time penetration tests and operate a continuous proactive cybersecurity program. The Edgescan platform is designed primarily for web application and API security, enabling organizations to continuously assess their attack surface and identify vulnerabilities throughout the development lifecycle but also delivers “full stack” coverage to detect host layer CVE’s. With a client retention rate of over 90%, Edgescan has built long-term partnerships by delivering measurable improvements in security efficiency, risk visibility, and vulnerability management. Key Features and Capabilities of Edgescan Automated Penetration Testing Edgescan uses intelligent automation to continuously assess applications, APIs, hosts, and cloud environments for vulnerabilities. This enables frequent, scalable security testing across modern and distributed architectures. Human‑Validated Testing Findings are reviewed and manually validated by certified security experts to eliminate false positives and provide deeper insight into real‑world exploitability. Each result is accurate, contextual, and actionable. Penetration Testing as a Service (PTaaS) Edgescan’s PTaaS model extends beyond automated testing by allowing expert testers to focus on vulnerabilities that require human analysis, including: • Business logic flaws • Authentication and authorization weaknesses • Context-dependent exposures • Complex attack chains and privilege escalation paths Cyber Analytics and AI‑Assisted Validation AI-driven analysis enhances detection, verifies exploitability, and increases accuracy. This reduces noise and gives security teams a clearer picture of genuine threats. Integrated Threat Intelligence Edgescan correlates vulnerabilities with real-world threat intelligence, including known exploits and ransomware activity to help organizations prioritize the most dangerous exposures first. Risk‑Based Prioritization Findings are prioritized based on exploitability, severity, threat context, and business impact, ensuring teams focus on the issues that matter most. Primary Value: What Edgescan Solves for Clients Edgescan enables organizations to shift from reactive vulnerability management to a continuous, proactive security model. Traditional scanners and periodic penetration tests frequently produce large volumes of unvalidated findings. This creates noise and forces security teams to spend hours determining which issues are real and critical. Edgescan solves this by combining: Automation for continuous testing Human expertise for validation and complex analysis Cyber analytics and AI for accuracy and prioritization Key Benefits Significant efficiency gains: reducing thousands of hours spent on manual validation. Higher accuracy, thanks to expert‑validated findings and reduced false positives. Clear prioritization, using threat intelligence and ransomware insights to highlight the highest‑risk exposures. Continuous security improvement, enabling rapid detection, faster remediation, and scalable vulnerability management. By unifying automation, human expertise, AI, and threat intelligence, Edgescan empowers organizations to maintain a continuous cybersecurity program that strengthens overall security posture while dramatically reducing operational burden.

**Average Rating:** 4.6/5.0

**Total Reviews:** 58

#### How Do G2 Users Rate Edgescan?

- **Has the product been a good partner in doing business?:** 9.1/10 (Category avg: 9.2/10)
- **API / Integrations:** 8.0/10 (Category avg: 8.7/10)
- **Detection Rate:** 9.2/10 (Category avg: 8.7/10)
- **Test Automation:** 9.3/10 (Category avg: 8.8/10)

#### Who Is the Company Behind Edgescan?

- **Seller:** [Edgescan](https://www.g2.com/sellers/edgescan)
- **Company Website:** www.edgescan.com
- **Year Founded:** 2017
- **HQ Location:** Dublin, Dublin
- **Twitter:** @edgescan  
2,256 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=51edeb949934c6f870f2d6720fefabf6632464f3895af4d8276b3c60c0fe37db&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2F2928425%2F&secure%5Burl_type%5D=linkedin_company_website)  
91 employees on LinkedIn®

#### Who Uses This Product?

- **Top Industries:** Information Technology and Services, Computer Software
- **Company Size:** 38% Large, 28% Medium

#### What Do G2 Reviewers Say About Edgescan?

_AI-generated summary from verified user reviews_

##### Pros

- Users appreciate the **ease of use** of Edgescan, highlighting its intuitive interface and straightforward navigation.
- Users value the **automated vulnerability detection** features of Edgescan for efficient risk assessment and remediation support.
- Users value the **excellent customer support** from Edgescan, noting their responsiveness and proactivity in addressing queries.
- Users value the **detailed vulnerability identification** from Edgescan, enabling effective risk management and threat mitigation strategies.
- Users value Edgescan for its **intuitive interface** and comprehensive functionality that streamlines security assessments and support.

##### Cons

- Users find the **complex UI** of Edgescan challenging, often requiring guidance to navigate key functions effectively.
- Users find **limited customization** options frustrating, particularly with filtering systems and administrative functionalities.
- Users find the **poor interface design** of Edgescan challenging, causing navigation and task completion difficulties.
- Users experience **slow performance** with Edgescan as manual reviews lead to longer scan completion times.
- Users find the **user interface challenging and unintuitive** , leading to difficulties in navigation and task completion.

#### What Are Recent G2 Reviews of Edgescan?

**["Efficient Vulnerability Scanning with Easy Navigation"](https://www.g2.com/survey_responses/edgescan-review-12218850)**

**Rating:** 5.0/5.0 stars

_— Simon L._

[Read full review](https://www.g2.com/survey_responses/edgescan-review-12218850)

**["Edgescan: Easy Setup, Clear Insights, and Expert Security Support"](https://www.g2.com/survey_responses/edgescan-review-12224347)**

**Rating:** 5.0/5.0 stars

_— Matt W._

[Read full review](https://www.g2.com/survey_responses/edgescan-review-12224347)

#### What Are G2 Users Discussing About Edgescan?

- [What is edgescan used for?](https://www.g2.com/discussions/what-is-edgescan-used-for) - 1 comment

### [Indusface WAS](https://www.g2.com/products/indusface-was/reviews)

Indusface WAS (Web Application Scanner) provides comprehensive managed dynamic application security testing (DAST) solution. It is a zero-touch, non-intrusive cloud-based solution that provides daily monitoring for web applications, checking for systems and application vulnerabilities, and malware. Indusface WAS with its automated scans & manual pentesting done by certified security experts ensures none of the OWASP Top10, business logic vulnerabilities, and malware go unnoticed. With zero false-positive guarantee and comprehensive reporting with remediation guidance, Indusface web app scanning ensures developers to quickly fix vulnerabilities seamlessly.

**Average Rating:** 4.6/5.0

**Total Reviews:** 64

#### How Do G2 Users Rate Indusface WAS?

- **Has the product been a good partner in doing business?:** 9.4/10 (Category avg: 9.2/10)
- **API / Integrations:** 9.7/10 (Category avg: 8.7/10)
- **Detection Rate:** 9.4/10 (Category avg: 8.7/10)
- **Test Automation:** 9.4/10 (Category avg: 8.8/10)

#### Who Is the Company Behind Indusface WAS?

- **Seller:** [Indusface](https://www.g2.com/sellers/indusface)
- **Year Founded:** 2012
- **HQ Location:** Vadodara
- **Twitter:** @Indusface  
3,472 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=9613ad8a5510ef7df5fb28a0b29c05b6ca59b70efc760d78e0637371a3103092&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Findusface%2F&secure%5Burl_type%5D=linkedin_company_website)  
180 employees on LinkedIn®

#### Who Uses This Product?

- **Top Industries:** Computer Software, Information Technology and Services
- **Company Size:** 53% Small, 37% Medium

#### What Do G2 Reviewers Say About Indusface WAS?

_AI-generated summary from verified user reviews_

##### Pros

- Users commend the **reliable vulnerability detection** of Indusface WAS, ensuring comprehensive scans and quick resolution of issues.
- Users value the **effective vulnerability identification** of Indusface WAS, enhancing security with reliable manual and automated scans.
- Users commend the **responsive customer support** of Indusface WAS, facilitating quick resolutions and effective communication throughout the process.
- Users value the **scanning efficiency** of Indusface WAS, delivering deep insights into vulnerabilities without false positives.
- Users value the **deep-dive security scans** of Indusface WAS, enhancing their security accreditation and vulnerability management.

##### Cons

- Users feel that the **pricing is too high** for staging scans and SSL certificates compared to competitors.
- Users find the **interface confusing** and suggest improvements for a more intuitive and informative design.
- Users find the **lack of features for staging and development environments** limits their testing capabilities before deployment.
- Users note the **limited scope** of Indusface WAS regarding staging/development environment scans, impacting functionality and testing. 
- Users find the **interface design outdated** , expressing a need for a more intuitive and informative experience.

#### What Are Recent G2 Reviews of Indusface WAS?

**["Great support Given by shivani"](https://www.g2.com/survey_responses/indusface-was-review-11074325)**

**Rating:** 5.0/5.0 stars

_— Sai N._

[Read full review](https://www.g2.com/survey_responses/indusface-was-review-11074325)

**["Streamlined, Intuitive Portal with Great Support"](https://www.g2.com/survey_responses/indusface-was-review-13148466)**

**Rating:** 4.5/5.0 stars

_— Harshit G._

[Read full review](https://www.g2.com/survey_responses/indusface-was-review-13148466)

#### What Are G2 Users Discussing About Indusface WAS?

- [What is Indusface WAS used for?](https://www.g2.com/discussions/what-is-indusface-was-used-for)

### [Acunetix by Invicti](https://www.g2.com/products/acunetix-by-invicti/reviews)

Acunetix (by Invicti) is an automated application security testing tool that enables small security teams to tackle huge application security challenges. With fast scanning, comprehensive results, and intelligent automation, Acunetix helps organizations to reduce risk across all types of web applications, websites, and APIs. With Acunetix, security teams can: - Save time and resources by automating manual security processes - Work more seamlessly with developers, or embrace DevSecOps by integrating directly into development tools - Feel confident that every web application has been crawled entirely thanks to DAST + IAST scanning and intelligent crawling technology - Finally, make web application and API security a priority and not just an add-on with a solution that is dedicated to application and API security 100% of the time You can depend on Acunetix to meet your organization’s needs today and face the challenges of modern web technology together tomorrow.

**Average Rating:** 4.1/5.0

**Total Reviews:** 100

#### How Do G2 Users Rate Acunetix by Invicti?

- **Has the product been a good partner in doing business?:** 8.2/10 (Category avg: 9.2/10)
- **API / Integrations:** 7.9/10 (Category avg: 8.7/10)
- **Detection Rate:** 8.7/10 (Category avg: 8.7/10)
- **Test Automation:** 8.1/10 (Category avg: 8.8/10)

#### Who Is the Company Behind Acunetix by Invicti?

- **Seller:** [Invicti Security](https://www.g2.com/sellers/invicti-security-04cb0d3d-fd96-45b2-83dc-2038fc9dac92)
- **Company Website:** www.invicti.com
- **Year Founded:** 2018
- **HQ Location:** Austin, Texas
- **Twitter:** @InvictiSecurity  
2,557 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=3c6c2278d6d9ef248056074aabb5416f9e0b5bf217ea8a7bfb87419d2894bc76&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Finvicti-security%2Fpeople%2F&secure%5Burl_type%5D=linkedin_company_website)  
335 employees on LinkedIn®

#### Who Uses This Product?

- **Top Industries:** Information Technology and Services, Computer Software
- **Company Size:** 40% Large, 34% Medium

#### What Do G2 Reviewers Say About Acunetix by Invicti?

_AI-generated summary from verified user reviews_

##### Pros

- Users value the **accurate and fast vulnerability detection** of Acunetix, enhancing their security scanning capabilities efficiently.
- Users praise the **ease of use** of Acunetix, highlighting its simple integration and effective security scanning capabilities.
- Users value the **robust security features** of Acunetix, enhancing the safety of web applications effectively.
- Users value the **effective vulnerability identification** by Acunetix, enhancing web application security and streamlining remediation processes.
- Users highlight the **accuracy of results** from Acunetix, noting its impressive ability to identify vulnerabilities effectively.

##### Cons

- Users find Acunetix by Invicti to be **expensive** , making it less accessible for smaller teams or projects.
- Users find Acunetix's **complex setup and resource intensity** challenging, especially for large applications and first-time configurations.
- Users find the **setup process complex** , particularly for new users and large application configurations.
- Users note that the **scanning process is often slow** , affecting efficiency and delaying normal workflows, especially with large applications.
- Users find the **difficult customization** of Acunetix challenging, requiring technical expertise to set up and fine-tune integrations.

#### What Are Recent G2 Reviews of Acunetix by Invicti?

**["Powerful Security Scanning Made Easy with Acunetix"](https://www.g2.com/survey_responses/acunetix-by-invicti-review-11964967)**

**Rating:** 5.0/5.0 stars

_— Deepesh V._

[Read full review](https://www.g2.com/survey_responses/acunetix-by-invicti-review-11964967)

**["Effortless Vulnerability Detection That Fits Seamlessly into DevSecOps"](https://www.g2.com/survey_responses/acunetix-by-invicti-review-11909125)**

**Rating:** 5.0/5.0 stars

_— Ranit D._

[Read full review](https://www.g2.com/survey_responses/acunetix-by-invicti-review-11909125)

#### What Are G2 Users Discussing About Acunetix by Invicti?

- [How has Acunetix supported your web security efforts, and what features do you rely on most?](https://www.g2.com/discussions/how-has-acunetix-supported-your-web-security-efforts-and-what-features-do-you-rely-on-most)
- [What is Acunetix by Invicti used for?](https://www.g2.com/discussions/what-is-acunetix-by-invicti-used-for)

### [Checkmarx](https://www.g2.com/products/checkmarx/reviews)

Checkmarx is a type of application security solution designed to help organizations safeguard their software development processes while enhancing efficiency and reducing costs. The Checkmarx One platform stands out in the realm of enterprise-grade security, offering comprehensive protection that addresses the complexities of modern software development, including legacy systems and AI-generated code. By scanning trillions of lines of code annually, Checkmarx enables companies to significantly lower their vulnerability density, ensuring a robust defense against potential threats. The platform is particularly beneficial for software development teams, security professionals, and organizations that prioritize secure coding practices. With the increasing reliance on AI technologies and the rapid pace of software development, Checkmarx One provides essential tools to mitigate risks associated with both traditional and emerging programming languages. Its innovative architecture, powered by autonomous security agents and AI-native intelligence, allows organizations to integrate security seamlessly into their development workflows, thereby accelerating development velocity without compromising on safety. Key features of Checkmarx One include Triage Assist, which employs an autonomous AI agent to prioritize vulnerabilities based on real-world exploitability and contextual risk. This feature empowers teams to concentrate their efforts on the most critical issues rather than getting bogged down by static severity scores. Additionally, Remediation Assist generates review-ready fixes for validated vulnerabilities prior to code merges, streamlining the secure delivery process and minimizing the manual overhead typically associated with remediation tasks. Developer Assist is another notable feature, acting as a standalone security agent that identifies risks during the coding process. By providing safe, explainable, and verified fixes directly within the integrated development environment (IDE), it supports developers in maintaining a stable and rapid development pace. Furthermore, the platform includes AI Supply Chain Security, which offers centralized governance and visibility for AI components embedded in applications, ensuring that hidden AI assets are discovered and managed effectively. Lastly, Checkmarx One incorporates advanced analysis engines such as AI SAST and DAST for AI, which enhance security measures across various environments. The AI SAST feature expands detection capabilities to cover emerging and unsupported programming languages, while the DAST for AI strengthens runtime protection in continuous integration and deployment (CI/CD) settings. Together, these features position Checkmarx One as a comprehensive solution for organizations looking to fortify their software development lifecycle against evolving threats.

**Average Rating:** 4.2/5.0

**Total Reviews:** 44

#### How Do G2 Users Rate Checkmarx?

- **Has the product been a good partner in doing business?:** 8.6/10 (Category avg: 9.2/10)
- **API / Integrations:** 8.3/10 (Category avg: 8.7/10)
- **Detection Rate:** 5.0/10 (Category avg: 8.7/10)
- **Test Automation:** 6.7/10 (Category avg: 8.8/10)

#### Who Is the Company Behind Checkmarx?

- **Seller:** [Checkmarx](https://www.g2.com/sellers/checkmarx)
- **Company Website:** www.checkmarx.com
- **Year Founded:** 2006
- **HQ Location:** Paramus, NJ
- **Twitter:** @Checkmarx  
7,284 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=18f6741e77df71b112ecb3ec6620912d3a0f67666525358c0a4f3b1278b173df&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fcheckmarx&secure%5Burl_type%5D=linkedin_company_website)  
1,019 employees on LinkedIn®

#### Who Uses This Product?

- **Top Industries:** Information Technology and Services, Computer Software
- **Company Size:** 56% Large, 23% Medium

#### What Do G2 Reviewers Say About Checkmarx?

_AI-generated summary from verified user reviews_

##### Pros

- Users value the **easy implementation** of Checkmarx into existing repositories, enhancing their security review processes effortlessly.
- Users praise the **intuitive user interface** of Checkmarx, making security reviews and integrations straightforward and user-friendly.
- Users value the **accuracy of results** in Checkmarx, finding it effective for automated security reviews.
- Users appreciate the **automation testing** capabilities of Checkmarx, making security reviews efficient and user-friendly.
- Users praise the **responsive customer support** of Checkmarx, consistently providing help when challenges arise.

##### Cons

- Users experience a significant number of **false positives** with Checkmarx, particularly for Kotlin projects, leading to frustration.
- Users face challenges with **limited support for Kotlin** , experiencing many false positives compared to other languages like Java or Javascript.
- Users experience **missing features** in Checkmarx, particularly with Kotlin support, leading to numerous false positives.
- Users find the **navigation poor** in Checkmarx, citing issues with dashboard layout and display clarity.

#### What Are Recent G2 Reviews of Checkmarx?

**["Automated Checkmarx Scans Keep Us Ahead of Key Vulnerabilities"](https://www.g2.com/survey_responses/checkmarx-review-12983770)**

**Rating:** 4.5/5.0 stars

_— Nitesh A._

[Read full review](https://www.g2.com/survey_responses/checkmarx-review-12983770)

**["Centralized Source Code Security with Seamless CI/CD Integration"](https://www.g2.com/survey_responses/checkmarx-review-12980590)**

**Rating:** 5.0/5.0 stars

_— Aman M._

[Read full review](https://www.g2.com/survey_responses/checkmarx-review-12980590)

#### What Are G2 Users Discussing About Checkmarx?

- [What is Checkmarx used for?](https://www.g2.com/discussions/checkmarx-what-is-checkmarx-used-for) - 1 comment, 1 upvote
- [How much does Checkmarx cost?](https://www.g2.com/discussions/how-much-does-checkmarx-cost)
- [Which testing method does Checkmarx support?](https://www.g2.com/discussions/which-testing-method-does-checkmarx-support) - 1 comment
- [Does Checkmarx support DAST?](https://www.g2.com/discussions/does-checkmarx-support-dast) - 1 comment
- [What is Checkmarx used for?](https://www.g2.com/discussions/what-is-checkmarx-used-for) - 2 comments

### [Contrast Security](https://www.g2.com/products/contrast-security-contrast-security/reviews)

Contrast Security is the global leader in Application Detection and Response (ADR), empowering organizations to see and stop attacks on applications and APIs in real time. Contrast embeds patented threat sensors directly into the software, delivering unmatched visibility and protection. With continuous, real-time defense, Contrast uncovers hidden application layer risks that traditional solutions miss. Contrast’s powerful Runtime Security technology equips developers, AppSec teams and SecOps with one platform that proactively protects and defends applications and APIs against evolving threats.

**Average Rating:** 4.5/5.0

**Total Reviews:** 49

#### How Do G2 Users Rate Contrast Security?

- **Has the product been a good partner in doing business?:** 9.0/10 (Category avg: 9.2/10)
- **API / Integrations:** 8.7/10 (Category avg: 8.7/10)
- **Detection Rate:** 8.2/10 (Category avg: 8.7/10)
- **Test Automation:** 8.3/10 (Category avg: 8.8/10)

#### Who Is the Company Behind Contrast Security?

- **Seller:** [Contrast Security](https://www.g2.com/sellers/contrast-security)
- **Company Website:** contrastsecurity.com
- **Year Founded:** 2014
- **HQ Location:** Pleasanton, CA
- **Twitter:** @contrastsec  
5,468 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=88d434bb9245c6db693a0f2f814fc8a26978bf92e8b8eba720e114bbee116763&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fcontrast-security%2F&secure%5Burl_type%5D=linkedin_company_website)  
196 employees on LinkedIn®

#### Who Uses This Product?

- **Top Industries:** Insurance, Information Technology and Services
- **Company Size:** 67% Large, 20% Medium

#### What Do G2 Reviewers Say About Contrast Security?

_AI-generated summary from verified user reviews_

##### Pros

- Users value the **accuracy of findings** from Contrast Security, ensuring greater precision in identifying vulnerabilities.
- Users value the **accuracy of results** from Contrast Security, benefiting from precise vulnerability monitoring and analysis.
- Users commend the **real-time vulnerability detection** of Contrast Security, appreciating its quick feedback and agile support.

##### Cons

- Users experienced **performance issues** with Contrast Security, particularly with Java applications, but found support helpful in resolving them.

#### What Are Recent G2 Reviews of Contrast Security?

**["Contrast Security makes application security simple"](https://www.g2.com/survey_responses/contrast-security-review-8516563)**

**Rating:** 5.0/5.0 stars

_— Verified User in Higher Education_

[Read full review](https://www.g2.com/survey_responses/contrast-security-review-8516563)

**["Shift-Smart with Contrast"](https://www.g2.com/survey_responses/contrast-security-review-8492224)**

**Rating:** 5.0/5.0 stars

_— Kiran S._

[Read full review](https://www.g2.com/survey_responses/contrast-security-review-8492224)

#### What Are G2 Users Discussing About Contrast Security?

- [What is contrast protect?](https://www.g2.com/discussions/what-is-contrast-protect)
- [Is Contrast security SaaS?](https://www.g2.com/discussions/is-contrast-security-saas)
- [What is Contrast security tool?](https://www.g2.com/discussions/what-is-contrast-security-tool)
- [What does contrast security do?](https://www.g2.com/discussions/what-does-contrast-security-do)

### [Beagle Security](https://www.g2.com/products/beagle-security/reviews)

Beagle Security helps you identify vulnerabilities in your web applications, APIs, GraphQL and remediate them with actionable insights before hackers harm you in any manner. With Beagle Security, you can integrate automated penetration testing into your CI/CD pipeline to identify security issues earlier in your development lifecycle and ship safer web applications. Major features: - Checks your web apps & APIs for 3000+ test cases to find security loopholes - OWASP & SANS standards - Recommendations to address security issues - Security test complex web apps with login - Compliance reports (GDPR, HIPAA & PCI DSS) - Test scheduling - DevSecOps integrations - API integration - Team access - Integrations with popular tools like Slack, Jira, Asana, Trello & 100+ other tools

**Average Rating:** 4.7/5.0

**Total Reviews:** 85

#### How Do G2 Users Rate Beagle Security?

- **Has the product been a good partner in doing business?:** 9.5/10 (Category avg: 9.2/10)
- **API / Integrations:** 7.9/10 (Category avg: 8.7/10)
- **Detection Rate:** 9.2/10 (Category avg: 8.7/10)
- **Test Automation:** 9.7/10 (Category avg: 8.8/10)

#### Who Is the Company Behind Beagle Security?

- **Seller:** [Beagle Security](https://www.g2.com/sellers/beagle-security)
- **Year Founded:** 2020
- **HQ Location:** San Francisco, US
- **Twitter:** @beaglesecure  
206 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=fddcafa321b3e7a46832a01424e8533895367078c86fd7bf496f33a345d99ea9&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fbeaglesecurity%2F&secure%5Burl_type%5D=linkedin_company_website)  
50 employees on LinkedIn®

#### Who Uses This Product?

- **Who Uses This:** CEO, Director
- **Top Industries:** Marketing and Advertising, Information Technology and Services
- **Company Size:** 91% Small, 7% Medium

#### What Do G2 Reviewers Say About Beagle Security?

_AI-generated summary from verified user reviews_

##### Pros

- Users commend the **attractive reporting** of Beagle Security, finding it easy to configure and comprehensive.
- Users appreciate the **easy setup** of Beagle Security, finding it efficient for quick and effective implementation.

#### What Are Recent G2 Reviews of Beagle Security?

**["Comprehensive Security Testing with Actionable Insights"](https://www.g2.com/survey_responses/beagle-security-review-12619693)**

**Rating:** 5.0/5.0 stars

_— Nkosinathi T._

[Read full review](https://www.g2.com/survey_responses/beagle-security-review-12619693)

**["Very thorough service that gives us good Ci/CD assurance between Pen Tests"](https://www.g2.com/survey_responses/beagle-security-review-11354043)**

**Rating:** 5.0/5.0 stars

_— Matt B._

[Read full review](https://www.g2.com/survey_responses/beagle-security-review-11354043)

#### What Are G2 Users Discussing About Beagle Security?

- [How has Beagle Security enhanced your web security, and what features would you like to see added?](https://www.g2.com/discussions/how-has-beagle-security-enhanced-your-web-security-and-what-features-would-you-like-to-see-added)
- [What is Beagle Security used for?](https://www.g2.com/discussions/what-is-beagle-security-used-for) - 1 comment

### [Akto API Security Platform](https://www.g2.com/products/akto-api-security-platform/reviews)

Akto is a trusted platform for application security and product security teams to build an enterprise-grade API security program throughout their DevSecOps pipeline. Our industry-leading suite of — API discovery, API security posture management, sensitive data exposure, and API security testing solutions enables organizations to gain visibility in their API security posture. 1,000+ Application Security teams globally trust Akto for their API security needs. Akto use cases: 1. API Discovery 2. API Security Testing in CI/CD 3. API Security Posture Management 4. Authentication and Authorization Testing 5. Sensitive data Exposure 6. Shift left in DevSecOps

**Average Rating:** 4.5/5.0

**Total Reviews:** 54

#### How Do G2 Users Rate Akto API Security Platform?

- **Has the product been a good partner in doing business?:** 9.1/10 (Category avg: 9.2/10)
- **API / Integrations:** 9.0/10 (Category avg: 8.7/10)
- **Detection Rate:** 8.1/10 (Category avg: 8.7/10)
- **Test Automation:** 8.8/10 (Category avg: 8.8/10)

#### Who Is the Company Behind Akto API Security Platform?

- **Seller:** [Akto.io](https://www.g2.com/sellers/akto-io)
- **Company Website:** www.akto.io
- **Year Founded:** 2022
- **HQ Location:** San Francisco, California
- **Twitter:** @Aktodotio  
1,357 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=687d485b663f00a21d08f272ed345b1b5caabdc4b03654caa8fd2040afc76f56&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fakto-io%2F&secure%5Burl_type%5D=linkedin_company_website)  
29 employees on LinkedIn®

#### Who Uses This Product?

- **Top Industries:** Financial Services, Information Technology and Services
- **Company Size:** 44% Medium, 40% Small

#### What Do G2 Reviewers Say About Akto API Security Platform?

_AI-generated summary from verified user reviews_

##### Pros

- Users value the **automated security testing** capabilities of Akto API Security Platform, enhancing their API protection efforts.
- Users value the **autonomous AI agents** in Akto, enhancing API security with efficient discovery and vulnerability testing.
- Users appreciate the **user-friendly interface** of Akto, finding the platform easy to navigate and manage projects.
- Users praise Akto for its **seamless integration with CI/CD pipelines** , enhancing API security testing with minimal manual effort.
- Users value the **effortless integration of automation testing** in Akto, enhancing efficiency within their CI/CD workflow.

##### Cons

- Users find the **complex initial setup** challenging due to poor documentation and a steep learning curve.
- Users find the **setup complexity** of Akto API Security Platform challenging due to poor documentation and steep learning curve.
- Users find the **steep learning curve** and integration complexities challenging when adopting Akto API Security Platform.
- Users find the **learning curve steep** with Akto, especially for those unfamiliar with API security concepts and configurations.
- Users find the **difficult configuration** of Akto API Security Platform challenging, impacting their initial setup experience.

#### What Are Recent G2 Reviews of Akto API Security Platform?

**["Easy to Use API Security Tool That Helps Save Time"](https://www.g2.com/survey_responses/akto-api-security-platform-review-11240428)**

**Rating:** 4.5/5.0 stars

_— ashish d._

[Read full review](https://www.g2.com/survey_responses/akto-api-security-platform-review-11240428)

**["Easy to Implement, Clear API Security Visibility, and Responsive Support"](https://www.g2.com/survey_responses/akto-api-security-platform-review-12272742)**

**Rating:** 4.5/5.0 stars

_— Verified User in Information Technology and Services_

[Read full review](https://www.g2.com/survey_responses/akto-api-security-platform-review-12272742)

### [HCL AppScan](https://www.g2.com/products/hcl-appscan/reviews)

HCL AppScan is a comprehensive suite of market-leading application security testing solutions (SAST, DAST, IAST, SCA, API), available on-premises and on-cloud. These powerful DevSecOps tools pinpoint application vulnerabilities, allowing for quick remediation in every phase of the software development lifecycle. Fast and Accurate Scanning for Secure DevOps Developers and DevOps teams can quickly and accurately scan code, applications, and APIs for security vulnerabilities while applications are being developed. This allows companies to fix issues at the earliest stages of the software development lifecycle, when it is least costly to the business. Focus on the Fix Continuous monitoring with IAST, along with auto issue correlation with DAST and SAST scan results allows DevOps teams to group and prioritize findings for faster, more streamlined remediation. Enterprise Management for Security Teams Centralized, easy-to-use dashboards provide visibility and oversight of all security scanning and remediation, and allow users to set scan parameters and compliance policies.

**Average Rating:** 4.1/5.0

**Total Reviews:** 75

#### How Do G2 Users Rate HCL AppScan?

- **Has the product been a good partner in doing business?:** 8.8/10 (Category avg: 9.2/10)
- **API / Integrations:** 8.1/10 (Category avg: 8.7/10)
- **Detection Rate:** 8.2/10 (Category avg: 8.7/10)
- **Test Automation:** 7.9/10 (Category avg: 8.8/10)

#### Who Is the Company Behind HCL AppScan?

- **Seller:** [HCL Technologies](https://www.g2.com/sellers/hcl-technologies)
- **Company Website:** hcl-software.com
- **Year Founded:** 1999
- **HQ Location:** Noida, Uttar Pradesh
- **Twitter:** @hcltech  
425,043 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=956a02ad8dbfeae42d5674b0244526801e33ae7988583df05d94f7af84d4ede2&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2F1756%2F&secure%5Burl_type%5D=linkedin_company_website)  
246,058 employees on LinkedIn®

#### Who Uses This Product?

- **Top Industries:** Information Technology and Services, Computer & Network Security
- **Company Size:** 53% Large, 29% Small

#### What Are Recent G2 Reviews of HCL AppScan?

**["Easy to setup and powerful application security"](https://www.g2.com/survey_responses/hcl-appscan-review-9387983)**

**Rating:** 4.0/5.0 stars

_— chandramohan K._

[Read full review](https://www.g2.com/survey_responses/hcl-appscan-review-9387983)

**["A Testing Suite that packs quite a punch!"](https://www.g2.com/survey_responses/hcl-appscan-review-9215302)**

**Rating:** 5.0/5.0 stars

_— Pranav U._

[Read full review](https://www.g2.com/survey_responses/hcl-appscan-review-9215302)

#### What Are G2 Users Discussing About HCL AppScan?

- [What is HCL AppScan used for?](https://www.g2.com/discussions/what-is-hcl-appscan-used-for)
- [What does HCL AppScan do?](https://www.g2.com/discussions/what-does-hcl-appscan-do)
- [Who owns AppScan?](https://www.g2.com/discussions/who-owns-appscan) - 1 comment
- [Is AppScan free?](https://www.g2.com/discussions/is-appscan-free) - 1 comment

- &lsaquo; Prev ‹ Prev
- 1
- [2](/categories/dynamic-application-security-testing-dast/free?order=g2_score&page=2#product-list)
- [3](/categories/dynamic-application-security-testing-dast/free?order=g2_score&page=3#product-list)
- [Next &rsaquo; Next ›](/categories/dynamic-application-security-testing-dast/free?order=g2_score&page=2#product-list)

Spotlight Categories

[A/B Testing Tools](https://www.g2.com/categories/a-b-testing-tools)

[Cloud Content Collaboration Software](https://www.g2.com/categories/cloud-content-collaboration)

[Event Registration and Ticketing Software](https://www.g2.com/categories/event-registration-ticketing)

[AI Sales Assistant Software](https://www.g2.com/categories/ai-sales-assistant)

[VoIP Providers](https://www.g2.com/categories/voip)

Similar Categories

- [Static Code Analysis](/categories/static-code-analysis)
- [Container Security](/categories/container-security-tools)
- [Interactive Application Security Testing (IAST)](/categories/interactive-application-security-testing-iast)
- [Log Analysis](/categories/log-analysis)

- [Penetration Testing](/categories/penetration-testing-tools)
- [Secure Code Review](/categories/secure-code-review)
- [Software Bill of Materials (SBOM)](/categories/software-bill-of-materials-sbom)
- [Software Composition Analysis](/categories/software-composition-analysis)

- [Static Application Security Testing (SAST)](/categories/static-application-security-testing-sast)
- [Vulnerability Scanner](/categories/vulnerability-scanner)
- [Web Application Firewall (WAF)](/categories/web-application-firewall-waf)

[Browse Dynamic Application Security Testing (DAST) Themes](/categories/dynamic-application-security-testing-dast/themes)