Introducing G2.ai, the future of software buying.Try now
Aikido Security
Sponsored
Aikido Security
Visit Website
Product Avatar Image
Mend.io

By Mend

4.3 out of 5 stars

How would you rate your experience with Mend.io?

Aikido Security
Sponsored
Aikido Security
Visit Website
It's been two months since this profile received a new review
Leave a Review

Mend.io Reviews & Product Details

Profile Status

This profile is currently managed by Mend.io but has limited features.

Are you part of the Mend.io team? Upgrade your plan to enhance your branding and engage with visitors to your profile!

Value at a Glance

Averages based on real user reviews.

Time to Implement

2 months

Return on Investment

16 months

Mend.io Media

Mend.io Demo - Security Dashboard
The Mend Platform Security Dashboard provides a high‑level overview and analytics for SCA, SAST, and IMAGE scan findings across your entire Organization.
Mend.io Demo - Value Dashboard
The Value Dashboard provides clear remediation insights and tracks key security metrics like Mean Time to Remediate (MTTR) and overall Finding Reduction %, so teams can confidently demonstrate progress in securing their applications.
Mend.io Demo - Application List with AI Frameworks
A centralized view of applications across the organization and the AI frameworks they leverage, providing visibility into usage and potential security considerations.
Product Avatar Image

Have you used Mend.io before?

Answer a few questions to help the Mend.io community

Mend.io Reviews (112)

Reviews

Mend.io Reviews (112)

4.3
112 reviews

Pros & Cons

Generated from real user reviews
View All Pros and Cons
Search reviews
Filter Reviews
Clear Results
G2 reviews are authentic and verified.
Verified User in Computer & Network Security
EC
Mid-Market (51-1000 emp.)
"Automating software IPR checking"
What do you like best about Mend.io?

The offering is delivered as SaaS and has an intuitive and easy to use interface which provides rapid access to key information on IPR and security vulnerabilities in an easy to understand graphical format. the wide range of reporting options allow potential issues to be captured and explored in more detail. Review collected by and hosted on G2.com.

What do you dislike about Mend.io?

Configuration of the scanning element of the offering requires some practice and there are a large number of parameters to master. Review collected by and hosted on G2.com.

Sheetal P.
SP
Enterprise (> 1000 emp.)
"WhiteSource identifies security vulnerabilities in easy steps & provides remediation for quick fixes"
What do you like best about Mend.io?

User friendly, quick remediation & better reports Review collected by and hosted on G2.com.

What do you dislike about Mend.io?

Provides only OSS security vulnerabilities Review collected by and hosted on G2.com.

MR
Enterprise (> 1000 emp.)
"Whitesource gave me the functionality that I have been looking for"
What do you like best about Mend.io?

I mostly like the github integration that makes me get better result Review collected by and hosted on G2.com.

What do you dislike about Mend.io?

I do not like the UI of whitesource, I think it can be more user friendly Review collected by and hosted on G2.com.

Verified User in Telecommunications
UT
Enterprise (> 1000 emp.)
"Whitesource is an excellent tool for ensuring adequate security for third party software packages"
What do you like best about Mend.io?

The licensing/copyright check is a major time saver. Review collected by and hosted on G2.com.

What do you dislike about Mend.io?

For Nodejs the npm packages run deep, and currently it is not easy to determine the root package for some of the vulnerabilities. Review collected by and hosted on G2.com.

Verified User in Computer & Network Security
AC
Mid-Market (51-1000 emp.)
"The best on the market open source dependencies analysis tool"
What do you like best about Mend.io?

WhiteSource provide information on vulnerabilities resolution via SAAS dashboard and extensive, well researched database of known vulnerable and malicious libraries. Review collected by and hosted on G2.com.

What do you dislike about Mend.io?

Takes time to understand all scan configuration parameters but once understood it is easy to use. Review collected by and hosted on G2.com.

Verified User in Information Services
UI
Small-Business (50 or fewer emp.)
"This is tool is better to review for security vulnerability for libraries."
What do you like best about Mend.io?

This is tool is better to review for security vulnerability for libraries. Review collected by and hosted on G2.com.

What do you dislike about Mend.io?

try to give flexible version of libraries. Review collected by and hosted on G2.com.

TA
Small-Business (50 or fewer emp.)
Business partner of the seller or seller's competitor, not included in G2 scores.
"Whitesource Reseller (Australia and New Zealand"
What do you like best about Mend.io?

I love the software and the benefits it provides to me, and to my clients. I have worked with Whitesource for the past year and I really love the software and the experience dealing with Whitesource the company. Review collected by and hosted on G2.com.

What do you dislike about Mend.io?

At present, I really can't think of anything that I dislike about Whitesource the company OR Whitesource the software solution. Review collected by and hosted on G2.com.

Anuradha W.
AW
Software Engineer
Computer Software
Enterprise (> 1000 emp.)
"Automated our current process for monitoring and documenting Open Source dependencies"
What do you like best about Mend.io?

Really impressed with their service, and the response time when an unknown library needed resolution.

Very detailed information for most of the open source dependencies.

Dependency version history and their vulnerabilities have been helpful.

UI and the usability of the tool and its plugins makes it easier to use. Review collected by and hosted on G2.com.

What do you dislike about Mend.io?

We still come across a lot of dependencies which are still undetected by the Tool, but they're later resolved once we request resolution manually. I suggest their Database to be frequently updated.

Some features we requested were still not implemented, specially the feature to display an attribute for "folder location" for dependencies uploaded from a disk location.

The tool needed a lot of tune up before first use. Review collected by and hosted on G2.com.

Reka B.
RB
Software Development Engineer in Test
Computer Software
Mid-Market (51-1000 emp.)
"A could-be-amazing tool that still has some way to go"
What do you like best about Mend.io?

I find the risk report being the most useful thing, other features are on the way to being good but still need some work done. It does seem to detect potential license violations quite well but for instance it doesn't deal with dual licenses: e.g. when a component is licensed under GPL AND MIT the tool will identify it as a violation even though it's no longer the case. Review collected by and hosted on G2.com.

What do you dislike about Mend.io?

Most usability issues. The tool just doesn't do the workflow that would be optimal in my opinion. The components seem disjointed, the user interface is a bit clunky and it's quite difficult to identify necessary actions once an issue has been identified. However, I do feel that the engine part is quite solid, what the tool needs is a massive re-think of the UI. Review collected by and hosted on G2.com.

Bruno L.
BL
Release Engineer
Information Technology and Services
Mid-Market (51-1000 emp.)
"WhiteSource is facilitating our life"
What do you like best about Mend.io?

With WhiteSource, the open source governance is fully automated.

We just have to add their plugin in our CI tool and our Open Source dependencies are now managed with WhiteSource.

Compare to our previous solution (manual and painful) it's a huge win. Review collected by and hosted on G2.com.

What do you dislike about Mend.io?

We would like to export our reports with the PDF format, but this feature is missing for the moment.

Except that, WhiteSource is a very good software. Review collected by and hosted on G2.com.

Pricing Insights

Averages based on real user reviews.

Time to Implement

2 months

Return on Investment

16 months

Average Discount

12%

Perceived Cost

$$$$$

How much does Mend.io cost?

Data powered by BetterCloud.

Estimated Price

$$k - $$k

Per Year

Based on data from 6 purchases.

Mend.io Comparisons
Product Avatar Image
Snyk
Compare Now
Product Avatar Image
Black Duck
Compare Now
Product Avatar Image
SonarQube
Compare Now
Mend.io Features
Configuration Management
Reporting and Analytics
Issue Tracking
Static Code Analysis
Command-Line Tools
Compliance Testing
Language Support
Integration
Transparency