2026 Best Software Awards are here!See the list

Top Free Software Supply Chain Security Solutions

Check out our list of free Software Supply Chain Security Solutions. Products featured on this list are the ones that offer a free trial version. As with most free versions, there are limitations, typically time or features.

If you'd like to see more products and to evaluate additional feature options, compare all Software Supply Chain Security Solutions to ensure you get the right product.

View Free Software Supply Chain Security Solutions

G2 takes pride in showing unbiased reviews on user satisfaction in our ratings and reports. We do not allow paid placements in any of our ratings, rankings, or reports. Learn about our scoring methodologies.
12 Software Supply Chain Security Tools Products Available
(138)4.6 out of 5
Optimized for quick response
1st Easiest To Use in Software Supply Chain Security Tools software
Entry Level Price:Free
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    Aikido Security is the developer-first security platform that unifies code, cloud, protection, and attack testing in one suite of best-in-class products. Built by developers for developers, Aikido hel

    Users
    • CTO
    • Founder
    Industries
    • Computer Software
    • Information Technology and Services
    Market Segment
    • 71% Small-Business
    • 17% Mid-Market
  • What G2 Users Think
    Expand/Collapse What G2 Users Think
  • Angel I.
    AI
    I appreciate that Aikido Security offers a single plane of glass with everything in one queue, which is very important to me. It's simple to use... Read review
    Sibil M.
    SM
    I find Aikido Security to have a very intuitive UI with good context around the issues, making navigation and prioritization easy. The generous... Read review
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Company Website
    Year Founded
    2022
    HQ Location
    Ghent, Belgium
    Twitter
    @AikidoSecurity
    4,696 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    175 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

Aikido Security is the developer-first security platform that unifies code, cloud, protection, and attack testing in one suite of best-in-class products. Built by developers for developers, Aikido hel

Users
  • CTO
  • Founder
Industries
  • Computer Software
  • Information Technology and Services
Market Segment
  • 71% Small-Business
  • 17% Mid-Market
Angel I.
AI
I appreciate that Aikido Security offers a single plane of glass with everything in one queue, which is very important to me. It's simple to use... Read review
Sibil M.
SM
I find Aikido Security to have a very intuitive UI with good context around the issues, making navigation and prioritization easy. The generous... Read review
Seller Details
Company Website
Year Founded
2022
HQ Location
Ghent, Belgium
Twitter
@AikidoSecurity
4,696 Twitter followers
LinkedIn® Page
www.linkedin.com
175 employees on LinkedIn®
(42)4.6 out of 5
3rd Easiest To Use in Software Supply Chain Security Tools software
Entry Level Price:Free
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    SOOS is the complete application security posture management platform. Scan your software for vulnerabilities, control the introduction of new dependencies, exclude unwanted license types, generate an

    Users
    No information available
    Industries
    • Information Technology and Services
    • Computer Software
    Market Segment
    • 50% Mid-Market
    • 43% Small-Business
  • What G2 Users Think
    Expand/Collapse What G2 Users Think
  • Jeff G.
    JG
    SOOS works about as well as Snyk or Sonatype for SCA, and at about 0.1% of the price. Their support has been super responsive and helpful when... Read review
    DS
    Easy and straightforward to use. From the easy plugins, to the excellent dashboard, the feature set helps us every day without taking a lot of... Read review
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Seller
    SOOS
    Company Website
    Year Founded
    2019
    HQ Location
    Winooski, US
    Twitter
    @soostech
    50 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    28 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

SOOS is the complete application security posture management platform. Scan your software for vulnerabilities, control the introduction of new dependencies, exclude unwanted license types, generate an

Users
No information available
Industries
  • Information Technology and Services
  • Computer Software
Market Segment
  • 50% Mid-Market
  • 43% Small-Business
Jeff G.
JG
SOOS works about as well as Snyk or Sonatype for SCA, and at about 0.1% of the price. Their support has been super responsive and helpful when... Read review
DS
Easy and straightforward to use. From the easy plugins, to the excellent dashboard, the feature set helps us every day without taking a lot of... Read review
Seller Details
Seller
SOOS
Company Website
Year Founded
2019
HQ Location
Winooski, US
Twitter
@soostech
50 Twitter followers
LinkedIn® Page
www.linkedin.com
28 employees on LinkedIn®
G2 Advertising
Sponsored
G2 Advertising
Get 2x conversion than Google Ads with G2 Advertising!
G2 Advertising places your product in premium positions on high-traffic pages and on targeted competitor pages to reach buyers at key comparison moments.
(51)4.8 out of 5
4th Easiest To Use in Software Supply Chain Security Tools software
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    OX is redefining product security for the AI era. Founded by Neatsun Ziv and Lion Arzi, former Check Point executives, OX is the company behind VibeSec — the first AI-native vibe security platform.

    Users
    • Security Engineer
    Industries
    • Financial Services
    • Information Technology and Services
    Market Segment
    • 63% Mid-Market
    • 25% Enterprise
  • What G2 Users Think
    Expand/Collapse What G2 Users Think
  • Verified User in Automotive
    EA
    As one of OX Security's first customers, I was searching for an effective solution to upscale Upstream Security's application security stack. I... Read review
    Verified User in Information Technology and Services
    UI
    Best Free Solution for private users who want to check their repos. Read review
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Year Founded
    2021
    HQ Location
    New York, USA
    LinkedIn® Page
    www.linkedin.com
    184 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

OX is redefining product security for the AI era. Founded by Neatsun Ziv and Lion Arzi, former Check Point executives, OX is the company behind VibeSec — the first AI-native vibe security platform.

Users
  • Security Engineer
Industries
  • Financial Services
  • Information Technology and Services
Market Segment
  • 63% Mid-Market
  • 25% Enterprise
Verified User in Automotive
EA
As one of OX Security's first customers, I was searching for an effective solution to upscale Upstream Security's application security stack. I... Read review
Verified User in Information Technology and Services
UI
Best Free Solution for private users who want to check their repos. Read review
Seller Details
Year Founded
2021
HQ Location
New York, USA
LinkedIn® Page
www.linkedin.com
184 employees on LinkedIn®
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    Mend.io is the leading application security solution, helping organizations reduce application risk efficiently. Built for modern, AI-driven, and traditional development environments alike, Mend.io pr

    Users
    • Software Engineer
    Industries
    • Computer Software
    • Information Technology and Services
    Market Segment
    • 38% Small-Business
    • 34% Mid-Market
  • What G2 Users Think
    Expand/Collapse What G2 Users Think
  • Vivek Kumar S.
    VS
    Interface and flow of the application.Also the simplicity Read review
    Meer T.
    MT
    The best thing is the security and easy to use. The mend bot offers couple of qualities to protect your projects against several security protocols... Read review
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Seller
    Mend
    Company Website
    Year Founded
    2011
    HQ Location
    Boston, Massachusetts
    Twitter
    @Mend_io
    11,331 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    267 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

Mend.io is the leading application security solution, helping organizations reduce application risk efficiently. Built for modern, AI-driven, and traditional development environments alike, Mend.io pr

Users
  • Software Engineer
Industries
  • Computer Software
  • Information Technology and Services
Market Segment
  • 38% Small-Business
  • 34% Mid-Market
Vivek Kumar S.
VS
Interface and flow of the application.Also the simplicity Read review
Meer T.
MT
The best thing is the security and easy to use. The mend bot offers couple of qualities to protect your projects against several security protocols... Read review
Seller Details
Seller
Mend
Company Website
Year Founded
2011
HQ Location
Boston, Massachusetts
Twitter
@Mend_io
11,331 Twitter followers
LinkedIn® Page
www.linkedin.com
267 employees on LinkedIn®
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    Cybeats is at the forefront of cybersecurity innovation and is focused explicitly on automating Software Bill of Materials (SBOM) and Vulnerability Exploitability eXchange (VEX) management. Our platfo

    Users
    No information available
    Industries
    No information available
    Market Segment
    • 47% Small-Business
    • 33% Mid-Market
  • What G2 Users Think
    Expand/Collapse What G2 Users Think
  • Neelakanta P.
    NP
    Cybeats is one of its kind tool which discovers varies possible risks and also mitage the effect by reducing the damage on the systems. Hence... Read review
    NARENDRA PAL SINGH R.
    NR
    Endpoint management and free cloud best solution is best part Read review
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Seller
    CYBEATS
    Year Founded
    2017
    HQ Location
    Toronto, Ontario
    Twitter
    @cybeatstech
    621 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    33 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

Cybeats is at the forefront of cybersecurity innovation and is focused explicitly on automating Software Bill of Materials (SBOM) and Vulnerability Exploitability eXchange (VEX) management. Our platfo

Users
No information available
Industries
No information available
Market Segment
  • 47% Small-Business
  • 33% Mid-Market
Neelakanta P.
NP
Cybeats is one of its kind tool which discovers varies possible risks and also mitage the effect by reducing the damage on the systems. Hence... Read review
NARENDRA PAL SINGH R.
NR
Endpoint management and free cloud best solution is best part Read review
Seller Details
Seller
CYBEATS
Year Founded
2017
HQ Location
Toronto, Ontario
Twitter
@cybeatstech
621 Twitter followers
LinkedIn® Page
www.linkedin.com
33 employees on LinkedIn®
(107)4.2 out of 5
Optimized for quick response
Entry Level Price:Starting at $150.00
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    JFrog Ltd. (Nasdaq: FROG) is on a mission to create a world of software delivered without friction from developer to device. Driven by a “Liquid Software” vision, the JFrog Software Supply Chain P

    Users
    • DevOps Engineer
    • Software Engineer
    Industries
    • Information Technology and Services
    • Computer Software
    Market Segment
    • 55% Enterprise
    • 34% Mid-Market
  • What G2 Users Think
    Expand/Collapse What G2 Users Think
  • Partha K.
    PK
    I have used both JFrog and Nexus, plus a couple of other ones as artifactory-store. Jfrog offers more than an artifactory, and includes Docker... Read review
    Vipin  S.
    VS
    Today supporting Docker and Helm for your Kubernetes deployments. Use it as your Docker registry to easily manage and deploy your Docker... Read review
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Seller
    JFrog Ltd
    Company Website
    Year Founded
    2008
    HQ Location
    Sunnyvale, CA
    Twitter
    @jfrog
    23,136 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    2,292 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

JFrog Ltd. (Nasdaq: FROG) is on a mission to create a world of software delivered without friction from developer to device. Driven by a “Liquid Software” vision, the JFrog Software Supply Chain P

Users
  • DevOps Engineer
  • Software Engineer
Industries
  • Information Technology and Services
  • Computer Software
Market Segment
  • 55% Enterprise
  • 34% Mid-Market
Partha K.
PK
I have used both JFrog and Nexus, plus a couple of other ones as artifactory-store. Jfrog offers more than an artifactory, and includes Docker... Read review
Vipin  S.
VS
Today supporting Docker and Helm for your Kubernetes deployments. Use it as your Docker registry to easily manage and deploy your Docker... Read review
Seller Details
Seller
JFrog Ltd
Company Website
Year Founded
2008
HQ Location
Sunnyvale, CA
Twitter
@jfrog
23,136 Twitter followers
LinkedIn® Page
www.linkedin.com
2,292 employees on LinkedIn®
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    Socket is the leading developer-first security platform that protects modern applications from malicious and vulnerable open source dependencies. By combining real-time package monitoring with AI-powe

    Users
    No information available
    Industries
    No information available
    Market Segment
    • 44% Mid-Market
    • 33% Enterprise
  • What G2 Users Think
    Expand/Collapse What G2 Users Think
  • Brewin V.
    BV
    Socket has been a game-changer for our team. It stands out in the SCA space thanks to its developer-centric design and seamless integration into... Read review
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Seller
    Socket
    Year Founded
    2020
    HQ Location
    San Francisco, US
    Twitter
    @SocketSecurity
    5,311 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    67 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

Socket is the leading developer-first security platform that protects modern applications from malicious and vulnerable open source dependencies. By combining real-time package monitoring with AI-powe

Users
No information available
Industries
No information available
Market Segment
  • 44% Mid-Market
  • 33% Enterprise
Brewin V.
BV
Socket has been a game-changer for our team. It stands out in the SCA space thanks to its developer-centric design and seamless integration into... Read review
Seller Details
Seller
Socket
Year Founded
2020
HQ Location
San Francisco, US
Twitter
@SocketSecurity
5,311 Twitter followers
LinkedIn® Page
www.linkedin.com
67 employees on LinkedIn®
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    Security leaders face a paradox: ship faster and enable agentic development while staying secure and keeping developers productive. DryRun Security resolves this by securing every pull request and rep

    Users
    No information available
    Industries
    No information available
    Market Segment
    • 41% Small-Business
    • 24% Mid-Market
  • What G2 Users Think
    Expand/Collapse What G2 Users Think
  • John P.
    JP
    DryRun Security runs and provides feedback where we do our work: GitHub. Feedback is provided quickly within the context of the Pull request. This... Read review
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Year Founded
    2023
    HQ Location
    Austin, US
    LinkedIn® Page
    www.linkedin.com
    19 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

Security leaders face a paradox: ship faster and enable agentic development while staying secure and keeping developers productive. DryRun Security resolves this by securing every pull request and rep

Users
No information available
Industries
No information available
Market Segment
  • 41% Small-Business
  • 24% Mid-Market
John P.
JP
DryRun Security runs and provides feedback where we do our work: GitHub. Feedback is provided quickly within the context of the Pull request. This... Read review
Seller Details
Year Founded
2023
HQ Location
Austin, US
LinkedIn® Page
www.linkedin.com
19 employees on LinkedIn®
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    Secure your Software Development and Delivery! Xygeni Security specializes in Application Security Posture Management (ASPM), using deep contextual insights to effectively prioritize and manage secur

    Users
    No information available
    Industries
    No information available
    Market Segment
    • 60% Small-Business
    • 40% Mid-Market
  • What G2 Users Think
    Expand/Collapse What G2 Users Think
  • Óscar G.
    ÓG
    - Real-time malware detection: Xygeni’s early warning system has been a game-changer, identifying malicious open source components before they can... Read review
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Year Founded
    2021
    HQ Location
    Madrid, ES
    Twitter
    @xygeni
    196 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    30 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

Secure your Software Development and Delivery! Xygeni Security specializes in Application Security Posture Management (ASPM), using deep contextual insights to effectively prioritize and manage secur

Users
No information available
Industries
No information available
Market Segment
  • 60% Small-Business
  • 40% Mid-Market
Óscar G.
ÓG
- Real-time malware detection: Xygeni’s early warning system has been a game-changer, identifying malicious open source components before they can... Read review
Seller Details
Year Founded
2021
HQ Location
Madrid, ES
Twitter
@xygeni
196 Twitter followers
LinkedIn® Page
www.linkedin.com
30 employees on LinkedIn®
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    ReversingLabs is the trusted name in file and software security. We provide the modern cybersecurity platform to verify and deliver safe binaries. Trusted by the Fortune 500 and leading cybersecurity

    Users
    No information available
    Industries
    No information available
    Market Segment
    • 89% Small-Business
  • What G2 Users Think
    Expand/Collapse What G2 Users Think
  • Verified User in Financial Services
    UF
    It's really easy to use and help me to maintain save my pc. I used to use it a lot every day, and I fell constable using it. It was easy to... Read review
    TM
    RL has an industry leading, humongous repository of both known bad (malware) and known good files (it's critical to have both). At the time of this... Read review
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Year Founded
    2009
    HQ Location
    Cambridge, US
    Twitter
    @ReversingLabs
    6,950 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    328 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

ReversingLabs is the trusted name in file and software security. We provide the modern cybersecurity platform to verify and deliver safe binaries. Trusted by the Fortune 500 and leading cybersecurity

Users
No information available
Industries
No information available
Market Segment
  • 89% Small-Business
Verified User in Financial Services
UF
It's really easy to use and help me to maintain save my pc. I used to use it a lot every day, and I fell constable using it. It was easy to... Read review
TM
RL has an industry leading, humongous repository of both known bad (malware) and known good files (it's critical to have both). At the time of this... Read review
Seller Details
Year Founded
2009
HQ Location
Cambridge, US
Twitter
@ReversingLabs
6,950 Twitter followers
LinkedIn® Page
www.linkedin.com
328 employees on LinkedIn®
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    ZeroPath (YC S24) is the first AI-native application security platform that fundamentally reimagines how organizations find and fix vulnerabilities. Unlike deterministic SAST tools that bolt AI onto l

    Users
    No information available
    Industries
    No information available
    Market Segment
    • 33% Small-Business
    • 22% Mid-Market
  • What G2 Users Think
    Expand/Collapse What G2 Users Think
  • Verified User in Computer & Network Security
    UC
    Primarily just the findings. They are mostly legitimate and pretty easy to understand. Would have been difficult to find otherwise. Read review
    Yaacov T.
    YT
    - Finds serious security vulnerabilities including business logic bugs that other scanners miss. - Extremely easy to use. Started working in... Read review
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Seller
    ZeroPath
    Company Website
    Year Founded
    2024
    HQ Location
    San Francisco, US
    LinkedIn® Page
    www.linkedin.com
    7 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

ZeroPath (YC S24) is the first AI-native application security platform that fundamentally reimagines how organizations find and fix vulnerabilities. Unlike deterministic SAST tools that bolt AI onto l

Users
No information available
Industries
No information available
Market Segment
  • 33% Small-Business
  • 22% Mid-Market
Verified User in Computer & Network Security
UC
Primarily just the findings. They are mostly legitimate and pretty easy to understand. Would have been difficult to find otherwise. Read review
Yaacov T.
YT
- Finds serious security vulnerabilities including business logic bugs that other scanners miss. - Extremely easy to use. Started working in... Read review
Seller Details
Seller
ZeroPath
Company Website
Year Founded
2024
HQ Location
San Francisco, US
LinkedIn® Page
www.linkedin.com
7 employees on LinkedIn®
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    Phylum defends applications at the perimeter of the open-source ecosystem and the tools used to build software. Its automated analysis engine scans third-party code as soon as it’s published into the

    We don't have enough data from reviews to share who uses this product. Leave a review to contribute, or learn more about review generation.
    Industries
    No information available
    Market Segment
    No information available
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Seller
    Phylum
    Year Founded
    2006
    HQ Location
    Burlington, Massachusetts, United States
    Twitter
    @Phylum_IO
    333 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    541 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

Phylum defends applications at the perimeter of the open-source ecosystem and the tools used to build software. Its automated analysis engine scans third-party code as soon as it’s published into the

We don't have enough data from reviews to share who uses this product. Leave a review to contribute, or learn more about review generation.
Industries
No information available
Market Segment
No information available
Seller Details
Seller
Phylum
Year Founded
2006
HQ Location
Burlington, Massachusetts, United States
Twitter
@Phylum_IO
333 Twitter followers
LinkedIn® Page
www.linkedin.com
541 employees on LinkedIn®