Introducing G2.ai, the future of software buying.Try now
CAST Highlight
Sponsored
CAST Highlight
Visit Website
Product Avatar Image
Mend.io

By Mend

4.3 out of 5 stars

How would you rate your experience with Mend.io?

CAST Highlight
Sponsored
CAST Highlight
Visit Website
It's been two months since this profile received a new review
Leave a Review

Mend.io Reviews & Product Details

Profile Status

This profile is currently managed by Mend.io but has limited features.

Are you part of the Mend.io team? Upgrade your plan to enhance your branding and engage with visitors to your profile!

Value at a Glance

Averages based on real user reviews.

Time to Implement

2 months

Return on Investment

16 months

Mend.io Media

Mend.io Demo - Security Dashboard
The Mend Platform Security Dashboard provides a high‑level overview and analytics for SCA, SAST, and IMAGE scan findings across your entire Organization.
Mend.io Demo - Value Dashboard
The Value Dashboard provides clear remediation insights and tracks key security metrics like Mean Time to Remediate (MTTR) and overall Finding Reduction %, so teams can confidently demonstrate progress in securing their applications.
Mend.io Demo - Application List with AI Frameworks
A centralized view of applications across the organization and the AI frameworks they leverage, providing visibility into usage and potential security considerations.
Product Avatar Image

Have you used Mend.io before?

Answer a few questions to help the Mend.io community

Mend.io Reviews (112)

Reviews

Mend.io Reviews (112)

4.3
112 reviews

Pros & Cons

Generated from real user reviews
View All Pros and Cons
Search reviews
Filter Reviews
Clear Results
G2 reviews are authentic and verified.
Verified User in Information Technology and Services
CI
Mid-Market (51-1000 emp.)
"Effective and easy to use OSS scanning"
What do you like best about Mend.io?

Scanning is simple with an easy-to-use agent.

Reports are easy to read providing useful insight. Review collected by and hosted on G2.com.

What do you dislike about Mend.io?

The Mend Portal can be slow on occassion.

Some parts of the interface are not as intuitive as they could be. Review collected by and hosted on G2.com.

Verified User in Internet
AI
Enterprise (> 1000 emp.)
"modern UI"
What do you like best about Mend.io?

modern and familiar UI, easy to use and comfortable Review collected by and hosted on G2.com.

What do you dislike about Mend.io?

structure of pages are not easy to understand Review collected by and hosted on G2.com.

Mohit P.
MP
DevSecOps Engineer
Small-Business (50 or fewer emp.)
"Good tool for SCA"
What do you like best about Mend.io?

1. Seemless integration with SCM.

2. License management for open source repositories. Review collected by and hosted on G2.com.

What do you dislike about Mend.io?

It would be great if an auto dependency resolution/management is provided for any finding. Review collected by and hosted on G2.com.

Verified User in Information Technology and Services
UI
Small-Business (50 or fewer emp.)
"Renovate is great"
What do you like best about Mend.io?

I enjoy how quickly PRs are opened so I can always have my dependencies up to date. The PRs are informative and using checkboxes for UI is much better than commands. Review collected by and hosted on G2.com.

What do you dislike about Mend.io?

There isn't much to dislike, the configuration file allows me to control pretty much every I could want to. If I had to make one complaint it's that the config file has to be in the root of the repo. It would be nice if I could hide it away in a .github directory or perhaps a .whitesource directory which could also hold my bolt config file. Review collected by and hosted on G2.com.

Verified User in Education Management
UE
Small-Business (50 or fewer emp.)
"Whitesource Fenovate is solid"
What do you like best about Mend.io?

I setup whitesource rennovate to help keep our dependencies up to date. Since doing that we have slowly but surely updated all of our dependencies without spending much developer time. Review collected by and hosted on G2.com.

What do you dislike about Mend.io?

The downside is that rennovate is a bit slow to rerun after you've made a change. For the most part it's fine but when you're getting started and have lots to update it can feel slow. Review collected by and hosted on G2.com.

Gabriel P.
GP
Senior React Developer
Small-Business (50 or fewer emp.)
"Excellent tools"
What do you like best about Mend.io?

I mostly use Renovate, and the difference between its competitors is enormous.

Monorepos updates, dependencies dashboard and its response time are what I like the most. Review collected by and hosted on G2.com.

What do you dislike about Mend.io?

Sincerely I cannot think of anything that I dislike.

The only improvement I would like is a deeper GitHub integration like they have with Dependabot, but I recognize that it's an effort from both sides. Review collected by and hosted on G2.com.

Verified User in Automotive
AA
Mid-Market (51-1000 emp.)
"Easy to use dependency management"
What do you like best about Mend.io?

We are using WhiteSource's Renovate Bot. It quickly integrates into GitHub Actions, supports private npm registries, and allows grouping of packages which is fantastic if you use TypeScript (you can set up renovate to create one PR for @types package and the related package it self). Review collected by and hosted on G2.com.

What do you dislike about Mend.io?

Right now, there is nothing we dislike about Renovate. It does its job, provides a great developer experience, and makes updating internal core packages more effortless than ever before. Review collected by and hosted on G2.com.

Prateek C.
PC
Software Development Engineer In Test (SDET) [Infosys]
Small-Business (50 or fewer emp.)
"Great bot to keep the app vulnerability free."
What do you like best about Mend.io?

Great app to keep the app vulnerability free as you don't need to worry about upgrading tons of packages in your multiple projects anymore. It does the tedious manual job for you. Review collected by and hosted on G2.com.

What do you dislike about Mend.io?

I've been using renovate for a while now. Don't really know if there's a way to exclude a specific package from upgrading. Review collected by and hosted on G2.com.

Sameer P.
SP
Tech Co-Founder
Small-Business (50 or fewer emp.)
"Great tools to help stay on top of the security and updates."
What do you like best about Mend.io?

I like how easy it is to get started and running. The security updates that it provide are valuable for the team and helps us move forward quickly. Review collected by and hosted on G2.com.

What do you dislike about Mend.io?

It's hard to setup with private python repo, we had to fork and then use our custom images in the docker to make the renovatebot working on private repos. Review collected by and hosted on G2.com.

DN
IT-Operations Engineer
Small-Business (50 or fewer emp.)
"The overall language is amazing"
What do you like best about Mend.io?

WhiteSource finds dependency in all our configs, even in those use for pipelines like circle ci. Review collected by and hosted on G2.com.

What do you dislike about Mend.io?

There are no changelogs for Docker containers. If this information is available, it would be helpful to include it in the PRs. A focus on CVEs would also be interesting. Review collected by and hosted on G2.com.

Pricing Insights

Averages based on real user reviews.

Time to Implement

2 months

Return on Investment

16 months

Average Discount

12%

Perceived Cost

$$$$$

How much does Mend.io cost?

Data powered by BetterCloud.

Estimated Price

$$k - $$k

Per Year

Based on data from 6 purchases.

Mend.io Comparisons
Product Avatar Image
Snyk
Compare Now
Product Avatar Image
Black Duck
Compare Now
Product Avatar Image
SonarQube
Compare Now
Mend.io Features
Configuration Management
Reporting and Analytics
Issue Tracking
Static Code Analysis
Command-Line Tools
Compliance Testing
Language Support
Integration
Transparency