# Best API Security Tools

*By [Lauren Worth](https://research.g2.com/insights/author/lauren-worth)*

The best API security software in 2026 is Postman, rated 4.6 out of 5 on G2 based on 1,700+ verified reviews. For teams prioritizing automated penetration testing, apisec.ai leads with the highest rating at 4.7 stars and seamless CI/CD integration.

1. Postman — 4.6/5 (1,700+ reviews): API endpoint security validation and collaborative testing
2. Cloudflare Application Security and Performance — 4.5/5 (600+ reviews): Edge-enforced WAF and API abuse protection
3. apisec.ai — 4.7/5 (200+ reviews): Continuous automated API penetration testing with CI/CD integration
4. Check Point WAF (formerly CloudGuard WAF) — 4.4/5 (80+ reviews): AI-driven API and zero-day threat prevention
5. Fastly&#39;s Web Application and API Security — 4.2/5 (30+ reviews): Low-tuning WAF with API-layer attack blocking

*Updated June 2026. Based on 2026 G2 verified review data across 1,680 products.*


API security tools protect information traveling through a company’s network via application programming interfaces (APIs). APIs serve a variety of purposes, such as adding functionality to applications, providing cloud services, and connecting networks. Companies use API security technologies to develop an inventory of existing API connections and ensure their security. These tools may additionally discover unknown or shadow APIs, which is a common scenario for companies using numerous APIs.

IT departments, software developers, and security professionals may use API security solutions to improve visibility for APIs, monitor their performance, and enforce strict security guidelines. As companies continuously discover new API connections, monitoring is key to ensuring optimum performance. Security enforcement is also important since many APIs contain sensitive data, which may turn into fines if left exposed. Lastly, many API security solutions include testing features. Testing APIs for security and policy enforcement may be the only way to verify an API’s security.

Some [API management platforms](https://www.g2.com/categories/api-management) provide tools to create an inventory of APIs connected to a network. However, this is only a feature-level functionality of the platform and will not provide substantial security functionality. It is not its most common use case.

To qualify for inclusion in the API Security Tools category, a product must:

- Discover and inventory the APIs connected to a network, application, or system
- Provide robust authentication mechanisms to restrict access to APIs and enable role-based access control (RBAC) to manage who can configure and modify API security settings
- Ensure that the data being sent to the API is encrypted, safe, and valid, and mitigate common threats such as DDoS attacks, replay attacks, and man-in-the-middle attacks
- Keep detailed logs of API access and activities to detect anomalies, monitor usage patterns, and support forensic investigations in case of security incidents
- Have comprehensive analytics and reporting capabilities to gain insights into API usage, performance, and security posture
- Perform security audits and vulnerability assessments to identify and address potential security risks
- Allow for testing and policy enforcement for API connections





## Top API Security Tools at a Glance
| # | Product | Rating | Best For | What Users Say |
|---|---------|--------|----------|----------------|
| 1 | [Postman](https://www.g2.com/products/postman/reviews) | 4.6/5.0 (1,744 reviews) | API endpoint security validation and collaborative testing | "[Streamlining API Testing and Development](https://www.g2.com/survey_responses/postman-review-12958633)" |
| 2 | [Cloudflare Application Security and Performance](https://www.g2.com/products/cloudflare-application-security-and-performance/reviews) | 4.5/5.0 (580 reviews) | Edge-enforced WAF and API abuse protection | "[Eight Years Later, Cloudflare Remains a Core Part of My Technology Stack](https://www.g2.com/survey_responses/cloudflare-application-security-and-performance-review-12963256)" |
| 3 | [apisec.ai](https://www.g2.com/products/apisec-ai/reviews) | 4.7/5.0 (228 reviews) | Continuous automated API penetration testing with CI/CD integration | "[Best AI API tester I’ve ever used – easy to use with one-click analysis](https://www.g2.com/survey_responses/apisec-ai-review-11639883)" |
| 4 | [Check Point WAF (formerly CloudGuard WAF)](https://www.g2.com/products/check-point-waf-formerly-cloudguard-waf/reviews) | 4.4/5.0 (81 reviews) | AI-driven API and zero-day threat prevention | "[Strong Protection with Room for Onboarding Improvement](https://www.g2.com/survey_responses/check-point-waf-formerly-cloudguard-waf-review-12984181)" |
| 5 | [Fastly&#39;s Web Application and API Security](https://www.g2.com/products/fastly-s-web-application-and-api-security/reviews) | 4.2/5.0 (29 reviews) | Low-tuning WAF with API-layer attack blocking | "[Perfect API Protection](https://www.g2.com/survey_responses/fastly-s-web-application-and-api-security-review-12332835)" |
| 6 | [Rakuten SixthSense Observability](https://www.g2.com/products/rakuten-sixthsense-observability/reviews) | 4.6/5.0 (52 reviews) | Real-time API and application observability with unified tracing | "[A very good SAAS monitoring &amp; observability tool](https://www.g2.com/survey_responses/rakuten-sixthsense-observability-review-11287792)" |
| 7 | [Astra Pentest](https://www.g2.com/products/astra-pentest/reviews) | 4.6/5.0 (195 reviews) | Validated API pentesting with remediation-ready reporting | "[Smooth Onboarding, Responsive Support, and Strong Pentest Lifecycle Controls](https://www.g2.com/survey_responses/astra-pentest-review-13001206)" |
| 8 | [Orca Security](https://www.g2.com/products/orca-security/reviews) | 4.7/5.0 (279 reviews) | Agentless cloud API exposure and risk prioritization | "[Orca Security Review](https://www.g2.com/survey_responses/orca-security-review-12958487)" |
| 9 | [Azion](https://www.g2.com/products/azion/reviews) | 4.7/5.0 (31 reviews) | Edge WAF and API bot-blocking | "[Azion as one of the main strategic partners in cybersecurity.](https://www.g2.com/survey_responses/azion-review-12544164)" |
| 10 | [Intruder](https://www.g2.com/products/intruder/reviews) | 4.8/5.0 (206 reviews) | Continuous API attack surface scanning with noise-reduced findings | "[Intruder: Insightful Vulnerability Management Platform That Strengthens Security Operation](https://www.g2.com/survey_responses/intruder-review-12395645)" |

---
## What Are the Most Common Questions About API Security Tools?
*AI-generated · Last updated: May 26, 2026*
### Which is the best API security platform for enterprises?
Based on G2 reviews, Check Point WAF (formerly CloudGuard WAF) stands out for enterprise API security needs because reviewers consistently describe strong protection for web applications and APIs, cloud-native deployment, centralized policy management, and reduced manual tuning. According to verified users, it helps security teams block common attacks, improve visibility into traffic, and automate protection across cloud environments. G2 reviewers mention benefits such as API discovery, threat prevention, support for CI/CD workflows, and lower operational effort once the platform is configured. Reviewers also note tradeoffs, including a learning curve, setup complexity, and premium pricing, which enterprise teams should weigh against the broader automation and coverage it provides.


### What is the best software for API authentication and authorization?
Based on G2 reviews, buyers evaluating API authentication and authorization capabilities often focus on tools that help test, validate, and secure authenticated API traffic rather than identity platforms alone. According to verified users, Postman is frequently used to work with bearer tokens, OAuth, API keys, environments, and shared collections, making it useful for testing secured APIs across development and QA workflows. G2 reviewers mention that Cloudflare Application Security and Performance and Check Point WAF also help protect APIs through access controls, rate limiting, bot protection, and policy enforcement. Across reviews, buyers should expect strengths around visibility and testing, while also noting setup complexity or learning curves for more advanced security configurations.

**Here are some of the top-rated products on G2:**

- [Postman](https://www.g2.com/products/postman/reviews) – used to test secured APIs with bearer tokens, OAuth, API keys, and shared environments
- [Cloudflare Application Security and Performance](https://www.g2.com/products/cloudflare-application-security-and-performance/reviews) – helps enforce rate limiting, bot protection, and firewall controls for exposed APIs
- [Check Point WAF (formerly CloudGuard WAF)](https://www.g2.com/products/check-point-waf-formerly-cloudguard-waf/reviews) – protects APIs with policy enforcement, traffic inspection, and automated threat prevention


### What are the top-rated API security tools for large-scale APIs?
Based on G2 reviews, large-scale API teams often prioritize visibility, automation, and protection across complex environments. According to verified users, Cloudflare Application Security and Performance is valued for handling DDoS mitigation, WAF protection, bot management, and traffic optimization with relatively low ongoing maintenance. G2 reviewers mention Check Point WAF for multi-cloud API protection, automated threat prevention, and centralized visibility, especially where teams need support for modern web and API environments. Reviewers also describe apisec.ai as useful for automating API security testing, continuous scanning, and surfacing OWASP-style risks early in the development cycle. Common review themes across these products include easier scaling of security coverage, but also some onboarding and tuning effort.

**Here are some of the top-rated products on G2:**

- [Cloudflare Application Security and Performance](https://www.g2.com/products/cloudflare-application-security-and-performance/reviews) – used to protect high-traffic apps and APIs with WAF, bot defense, and DDoS mitigation
- [Check Point WAF (formerly CloudGuard WAF)](https://www.g2.com/products/check-point-waf-formerly-cloudguard-waf/reviews) – suited for cloud-native and multi-cloud API environments needing automated protection and visibility
- [apisec.ai](https://www.g2.com/products/apisec-ai/reviews) – helps large teams automate API security testing and continuous vulnerability scanning


### Which API security platform offers AI-powered threat prevention?
Based on G2 reviews, Check Point WAF (formerly CloudGuard WAF) is repeatedly described as offering AI-driven or contextual AI-based threat prevention for web applications and APIs. According to verified users, reviewers value its ability to detect and block threats such as SQL injection, XSS, bot activity, and zero-day style attacks while reducing manual rule tuning. G2 reviewers mention strengths like automated learning, behavioral analysis, low false positives in production use, and fit for cloud-native environments. Several reviews also point to visibility into traffic and support for API security use cases. Buyers should note that reviewers also mention a steeper setup and tuning process, especially for teams new to the platform or managing complex applications.


### What is the best API security software for compliance-driven industries?
Based on G2 reviews, compliance-focused buyers often look for tools that provide clear reporting, repeatable testing, and evidence they can share with auditors or customers. According to verified users, Astra Pentest is often used to support compliance requirements, client security reviews, and formal pentest documentation, with reviewers highlighting detailed reports, clear remediation guidance, and dashboard visibility. G2 reviewers also mention Intruder for continuous vulnerability scanning and ongoing visibility between formal assessments, and BugDazz API Scanner for technical and compliance-ready reporting used in audit scenarios. Across reviews, the strongest themes are actionable findings, easier proof for security diligence, and support for regular security validation rather than one-time checks alone.

**Here are some of the top-rated products on G2:**

- [Astra Pentest](https://www.g2.com/products/astra-pentest/reviews) – used to generate pentest reports and security evidence for audits, customers, and compliance workflows
- [Intruder](https://www.g2.com/products/intruder/reviews) – supports regular vulnerability scanning and clearer visibility between formal compliance assessments
- [BugDazz API Scanner](https://www.g2.com/products/bugdazz-api-scanner/reviews) – provides detailed reports that reviewers use for internal reviews and audit documentation


### What are the best platforms for API vulnerability scanning?
Based on G2 reviews, buyers looking for API vulnerability scanning tools often favor products that automate discovery, scanning, and remediation guidance. According to verified users, apisec.ai is widely used to automate API security testing, continuously scan for vulnerabilities, and provide actionable reporting that reduces manual effort. G2 reviewers mention Pynt - API Security Testing for automated API discovery and security testing tied closely to development workflows, especially where teams want fewer false positives and easier alerts. Reviewers also describe Akto API Security Platform as helpful for surfacing API issues quickly through a clear dashboard and automated checks. Common review themes include faster coverage and earlier detection, with some products requiring onboarding time or tuning for advanced scenarios.

**Here are some of the top-rated products on G2:**

- [apisec.ai](https://www.g2.com/products/apisec-ai/reviews) – automates continuous API vulnerability scanning and highlights common API security risks with actionable reports
- [Pynt - API Security Testing](https://www.g2.com/products/pynt-api-security-testing/reviews) – combines automated API discovery and security testing with fewer false positives in review feedback
- [Akto API Security Platform](https://www.g2.com/products/akto-api-security-platform/reviews) – helps teams find API security issues early through automated checks and a simple dashboard


### Which API security solution integrates with DevSecOps workflows?
Based on G2 reviews, several API security products are used within DevSecOps pipelines, but apisec.ai is frequently mentioned for CI/CD integration and automated testing in the software delivery process. According to verified users, it helps teams shift API security earlier in development by automating scans, generating reports, and reducing manual pentesting effort. G2 reviewers mention integrations with CI/CD pipelines as a key strength, alongside continuous testing and support for identifying issues before release. Reviewers also note that setup can take some onboarding for complex environments, but the payoff is stronger coverage and faster remediation. For teams prioritizing pipeline-based security validation, apisec.ai appears especially well aligned with review feedback.


### What are the top tools for protecting public and private APIs?
Based on G2 reviews, protecting both public-facing and internal APIs often requires a mix of traffic inspection, discovery, and automated defense. According to verified users, Cloudflare Application Security and Performance is used to secure exposed services with firewall controls, bot management, rate limiting, and DDoS mitigation while also improving availability. G2 reviewers mention Check Point WAF for API protection across cloud and hybrid environments with strong inspection and automated threat prevention. Reviewers also describe Cequence Security as valuable for API visibility, bot detection, and identifying abuse patterns across complex environments. Across reviews, buyers should expect strong coverage for external threats and unknown APIs, while also planning for tuning and onboarding where environments are large or highly customized.

**Here are some of the top-rated products on G2:**

- [Cloudflare Application Security and Performance](https://www.g2.com/products/cloudflare-application-security-and-performance/reviews) – secures exposed APIs with WAF controls, rate limiting, DDoS mitigation, and bot protection
- [Check Point WAF (formerly CloudGuard WAF)](https://www.g2.com/products/check-point-waf-formerly-cloudguard-waf/reviews) – protects APIs across cloud and hybrid setups with inspection, policy controls, and automated defenses
- [Cequence Security](https://www.g2.com/products/cequence-security/reviews) – helps discover APIs and detect abuse patterns, credential stuffing, and automated bot attacks


### What are the top tools for preventing API data breaches?
Based on G2 reviews, preventing API data breaches starts with better visibility into exposed endpoints, sensitive traffic, and abusive behavior. According to verified users, Cequence Security is valued for detecting abnormal API activity, credential stuffing, scraping, and abuse patterns that can lead to account compromise or data loss. G2 reviewers mention Cloudflare Application Security and Performance for shielding apps and APIs with WAF, DDoS protection, bot management, and rate limiting. Reviewers also describe Levo.ai as useful for API inventory, identifying unknown APIs, and surfacing risks in API-first environments. Common themes across reviews include discovering blind spots, reducing manual monitoring, and improving response to misuse before it becomes a larger incident.

**Here are some of the top-rated products on G2:**

- [Cequence Security](https://www.g2.com/products/cequence-security/reviews) – helps stop credential stuffing, scraping, and abnormal API behavior tied to data exposure risk
- [Cloudflare Application Security and Performance](https://www.g2.com/products/cloudflare-application-security-and-performance/reviews) – provides WAF, bot defense, and rate limiting to reduce abuse against exposed APIs
- [Levo.ai](https://www.g2.com/products/levo-ai/reviews) – helps discover API inventory and identify unidentified APIs that could increase breach risk


### Which API protection tool offers real-time threat detection?
Based on G2 reviews, Wallarm API Security Platform is specifically called out by reviewers for accurate real-time API threat detection with few false positives. According to verified users, it is used to protect APIs and web applications from modern attacks, including OWASP-style threats and zero-day risks. G2 reviewers mention the appeal of real-time detection quality, while also noting that configuration and tuning can be time-consuming for newer users. Review feedback suggests it is a strong fit for teams that prioritize fast threat visibility and ongoing protection at the API layer. Buyers should plan for implementation effort, but the real-time detection focus is a clear recurring theme in the available G2 feedback.




## How Many API Security Tools Products Does G2 Track?
**Total Products under this Category:** 67

### Category Stats (Jun 2026)
- **Average Rating**: 4.55/5 (↑0.01 vs May 2026) The average rating of products in this category, based on all submitted ratings
- **Top Trending Product**: AppSentinels (+3.71%) - Among all products in this category, AppSentinels recorded the largest rating increase compared to last month
*Last updated: June 24, 2026*


## How Does G2 Rank API Security Tools Products?

**Why You Can Trust G2's Software Rankings:**

- 30 Analysts and Data Experts
- 4,600+ Authentic Reviews
- 67+ Products
- Unbiased Rankings

G2's software rankings are built on verified user reviews, rigorous moderation, and a consistent research methodology maintained by a team of analysts and data experts. Each product is measured using the same transparent criteria, with no paid placement or vendor influence. While reviews reflect real user experiences, which can be subjective, they offer valuable insight into how software performs in the hands of professionals. Together, these inputs power the G2 Score, a standardized way to compare tools within every category.


## Which API Security Tools Is Best for Your Use Case?

- **Leader:** [Postman](https://www.g2.com/products/postman/reviews)
- **Highest Performer:** [apisec.ai](https://www.g2.com/products/apisec-ai/reviews)
- **Easiest to Use:** [Postman](https://www.g2.com/products/postman/reviews)
- **Top Trending:** [Astra Pentest](https://www.g2.com/products/astra-pentest/reviews)
- **Best Free Software:** [Postman](https://www.g2.com/products/postman/reviews)


---

**Sponsored**

### Proscan

Proscan is a unified application security platform designed to help organizations streamline the management of their security tools. By integrating multiple standalone solutions into a single cohesive experience, Proscan provides comprehensive security visibility across the entire software stack. This platform replaces the complexity of managing various tools for static analysis, dynamic testing, and dependency scanning, allowing teams to focus on building secure applications without the hassle of juggling disparate systems. The platform is particularly beneficial for security teams, developers, and engineering leaders who require a consolidated view of application security risks. Proscan combines nine specialized security scanners, including Static Application Security Testing (SAST), which analyzes source code in over 30 programming languages using advanced detection methods. Dynamic Application Security Testing (DAST) further enhances security by testing live applications, identifying vulnerabilities that may only become apparent during runtime. Additionally, Software Composition Analysis (SCA) evaluates open-source dependencies across 196 package ecosystems, helping organizations detect known vulnerabilities before they can impact production environments. Proscan&#39;s capabilities extend beyond code analysis. It includes scanning for hardcoded secrets, misconfigurations in Infrastructure-as-Code, and vulnerabilities in container images. The platform also offers API security testing that validates endpoints against the OWASP API Security Top 10, ensuring robust protection for applications that leverage APIs. For organizations developing AI-powered applications, Proscan features a dedicated AI and LLM security scanner that identifies potential risks associated with prompt injections and other vulnerabilities, utilizing over 4,600 techniques mapped to the OWASP LLM Top 10. Artificial intelligence plays a crucial role in enhancing Proscan&#39;s efficiency and accuracy. The platform employs machine-learning algorithms to reduce false positives and prioritize vulnerabilities based on their potential impact. This intelligent approach allows teams to focus on the most critical security issues while providing clear explanations and actionable remediation guidance. Proscan integrates seamlessly into existing development workflows, offering IDE plugins and native CI/CD integrations that ensure security checks are part of the development process without causing disruptions. Compliance readiness is another key feature of Proscan, as it generates audit-ready reports aligned with major security standards, including OWASP Top 10, PCI DSS, HIPAA, and GDPR. This automated evidence collection simplifies the compliance process, providing organizations with the necessary documentation in various formats. Proscan is designed for security teams looking to consolidate fragmented toolchains, developers needing quick feedback, and managed security service providers managing multiple client environments, making it a versatile solution for modern application security challenges.



[Visit website](https://www.g2.com/external_clickthroughs/record?secure%5Bad_program%5D=ppc&amp;secure%5Bad_slot%5D=category_product_list&amp;secure%5Bcategory_id%5D=2253&amp;secure%5Bdisplayable_resource_id%5D=1521&amp;secure%5Bdisplayable_resource_type%5D=Category&amp;secure%5Bmedium%5D=sponsored&amp;secure%5Bplacement_reason%5D=neighbor_category&amp;secure%5Bplacement_resource_ids%5D%5B%5D=1521&amp;secure%5Bprioritized%5D=false&amp;secure%5Bproduct_id%5D=1777455&amp;secure%5Bresource_id%5D=2253&amp;secure%5Bresource_type%5D=Category&amp;secure%5Bsource_type%5D=category_page&amp;secure%5Bsource_url%5D=https%3A%2F%2Fwww.g2.com%2Fcategories%2Fapi-security&amp;secure%5Btoken%5D=a91a49a3583e31cecebe9340603df3f505bb96760f75506979e0fe266c56b7d9&amp;secure%5Burl%5D=https%3A%2F%2Fwww.proscan.one%2Fdownload&amp;secure%5Burl_type%5D=free_trial)

---

## What Are the Top-Rated API Security Tools Products in 2026?
### 1. [Postman](https://www.g2.com/products/postman/reviews)
Postman is the world’s leading API platform, used by more than 40 million developers and 500,000 organizations to build, test, and manage APIs at scale. With Postman, teams collaborate efficiently across the entire API lifecycle, including design, development, testing, security, documentation, and governance. The platform helps ensure consistency, quality, and enterprise-grade control. Postman also offers Agent Mode (beta), built on AWS Bedrock and trained with AWS SageMaker. Agent Mode enables developers to use natural language to debug requests, organize collections, document APIs, and automate workflows without switching tools or writing custom scripts.


**Average Rating:** 4.6/5.0
**Total Reviews:** 1,744
**How Do G2 Users Rate Postman?**

- **API Testing:** 9.5/10 (Category avg: 9.1/10)
- **API Monitoring:** 9.1/10 (Category avg: 8.8/10)

**Who Is the Company Behind Postman?**

- **Seller:** [Postman](https://www.g2.com/sellers/postman)
- **Year Founded:** 2014
- **HQ Location:** San Francisco, CA
- **Twitter:** @getpostman (55,430 Twitter followers)
- **LinkedIn® Page:** https://www.linkedin.com/company/3795851/ (3,450 employees on LinkedIn®)

**Who Uses This Product?**
- **Who Uses This:** Software Engineer, Software Developer
- **Top Industries:** Computer Software, Information Technology and Services
- **Company Size:** 39% Mid-Market, 35% Small-Business


#### What Are Postman's Pros and Cons?

**Pros:**

- Ease of Use (459 reviews)
- API Testing (393 reviews)
- API Management (303 reviews)
- Testing (277 reviews)
- Testing Efficiency (275 reviews)

**Cons:**

- Slow Performance (221 reviews)
- Performance Issues (202 reviews)
- Slow Loading (144 reviews)
- Resource Limitations (130 reviews)
- Limited Features (120 reviews)


### What Do G2 Reviewers Say About Postman?
*AI-generated summary from verified user reviews*

**Pros:**

- Users appreciate the **ease of use** of Postman, benefiting from its intuitive interface and powerful testing capabilities.
- Users appreciate the **intuitive interface** of Postman, which simplifies API testing and enhances collaboration among teams.
- Users love the **smooth API lifecycle** in Postman, enabling seamless testing, mocking, and automation in projects.
- Users appreciate the **ease of testing** with Postman, finding its interface intuitive and feature-rich for efficient API management.
- Users value the **testing efficiency** of Postman, appreciating its intuitive interface and seamless API management capabilities.

**Cons:**

- Users experience **slow performance** with Postman, particularly when handling large collections or multiple workspaces.
- Users often experience **performance issues** with Postman, especially regarding resource heaviness and slow sync between devices.
- Users often find Postman to have **slow loading times** , especially when managing large collections or using advanced features.
- Users find the **resource limitations** of Postman challenging, particularly with larger collections and internet dependency.
- Users find the **limited features** in Postman, especially for smaller teams, can hinder their usage and experience.

#### What Are Recent G2 Reviews of Postman?

**"[From Messy Curl Commands to Clean, Collaborative API Workflows](https://www.g2.com/survey_responses/postman-review-12931615)"**

**Rating:** 4.5/5.0 stars
*— RAVI R.*

[Read full review](https://www.g2.com/survey_responses/postman-review-12931615)

---

**"[Streamlining API Testing and Development](https://www.g2.com/survey_responses/postman-review-12958633)"**

**Rating:** 5.0/5.0 stars
*— Srinath  R.*

[Read full review](https://www.g2.com/survey_responses/postman-review-12958633)

---


#### What Are G2 Users Discussing About Postman?

- [What is Postman used for?](https://www.g2.com/discussions/what-is-postman-used-for) - 8 comments, 2 upvotes

### 2. [Cloudflare Application Security and Performance](https://www.g2.com/products/cloudflare-application-security-and-performance/reviews)
Cloudflare is the connectivity cloud for the &quot;everywhere world,&quot; on a mission to help build a better Internet. We provide a unified platform of networking, security, and developer services delivered from a single, intelligent global network that spans hundreds of cities in over 125 countries. This empowers organizations of all sizes, from small businesses to the world&#39;s largest enterprises, to make their employees, applications, and networks faster and more secure everywhere, while significantly reducing complexity and cost. Our comprehensive platform includes: - Advanced Security: Protect your online presence with industry-leading DDoS protection, a robust Web Application Firewall (WAF), Bot mitigation, and API security. Implement Zero Trust security to secure remote access, data, and applications for your entire workforce. - Superior Performance: Accelerate website and application loading times globally with our Content Delivery Network (CDN), intelligent DNS, and smart routing capabilities. Optimize images and deliver dynamic content with unparalleled speed. - Powerful Developer Tools: Empower your developers to build and deploy full-stack applications at the edge using Cloudflare Workers (serverless functions), R2 Storage (object storage without egress fees), and D1 (serverless SQL database). Cloudflare helps connect and protect millions of customers globally, offering the control, visibility, and reliability businesses need to work, develop, and accelerate their operations in today&#39;s hyperconnected landscape. Our global network continuously learns and adapts, ensuring your digital assets are always protected and performing at their best.


**Average Rating:** 4.5/5.0
**Total Reviews:** 580
**How Do G2 Users Rate Cloudflare Application Security and Performance?**

- **API Testing:** 10.0/10 (Category avg: 9.1/10)
- **API Monitoring:** 9.8/10 (Category avg: 8.8/10)

**Who Is the Company Behind Cloudflare Application Security and Performance?**

- **Seller:** [Cloudflare, Inc.](https://www.g2.com/sellers/cloudflare-inc)
- **Company Website:** https://www.cloudflare.com
- **Year Founded:** 2009
- **HQ Location:** San Francisco, California
- **Twitter:** @Cloudflare (286,254 Twitter followers)
- **LinkedIn® Page:** https://www.linkedin.com/company/407222/ (7,190 employees on LinkedIn®)

**Who Uses This Product?**
- **Who Uses This:** Web Developer, Software Engineer
- **Top Industries:** Information Technology and Services, Computer Software
- **Company Size:** 62% Small-Business, 27% Mid-Market


#### What Are Cloudflare Application Security and Performance's Pros and Cons?

**Pros:**

- Security (54 reviews)
- Ease of Use (50 reviews)
- Features (45 reviews)
- Performance (36 reviews)
- Reliability (36 reviews)

**Cons:**

- Complex User Interface (24 reviews)
- Expensive (24 reviews)
- Complex Setup (19 reviews)
- Complexity (18 reviews)
- Learning Curve (15 reviews)


### What Do G2 Reviewers Say About Cloudflare Application Security and Performance?
*AI-generated summary from verified user reviews*

**Pros:**

- Users appreciate the **impressive security features** of Cloudflare, providing peace of mind and efficient bot protection.
- Users find Cloudflare&#39;s interface **intuitive and easy to use** , streamlining security management and enhancing overall experience.
- Users appreciate the **strong security and performance improvements** of Cloudflare, with easy setup and low latency.
- Users value the **fast performance** of Cloudflare, enjoying low latency and quick content delivery from various locations.
- Users praise the **reliability** of Cloudflare, enjoying strong security and exceptional performance with minimal setup hassle.

**Cons:**

- Users find the **complex user interface** challenging, requiring time to learn and adjust to its functionalities.
- Users find Cloudflare&#39;s pricing to be **confusing and expensive** , especially for features that require higher-tier plans.
- Users find the **complex setup** of WAF rules and settings time-consuming and challenging for dynamic applications.
- Users find the **complexity of fine-tuning WAF rules** and settings challenging, impacting their overall experience with Cloudflare.
- Users find a **steep learning curve** with Cloudflare&#39;s advanced features, which complicates setup and configuration for beginners.

#### What Are Recent G2 Reviews of Cloudflare Application Security and Performance?

**"[Eight Years Later, Cloudflare Remains a Core Part of My Technology Stack](https://www.g2.com/survey_responses/cloudflare-application-security-and-performance-review-12963256)"**

**Rating:** 5.0/5.0 stars
*— Chevas M.*

[Read full review](https://www.g2.com/survey_responses/cloudflare-application-security-and-performance-review-12963256)

---

**"[Powerful Security and Faster Performance in One Intuitive Cloudflare Platform](https://www.g2.com/survey_responses/cloudflare-application-security-and-performance-review-12971554)"**

**Rating:** 5.0/5.0 stars
*— Othrax B.*

[Read full review](https://www.g2.com/survey_responses/cloudflare-application-security-and-performance-review-12971554)

---


#### What Are G2 Users Discussing About Cloudflare Application Security and Performance?

- [What is Cloudflare Spectrum used for?](https://www.g2.com/discussions/what-is-cloudflare-spectrum-used-for) - 1 comment
- [What is Cloudflare Bot Management used for?](https://www.g2.com/discussions/what-is-cloudflare-bot-management-used-for)
- [Does Cloudflare provide hosting?](https://www.g2.com/discussions/does-cloudflare-provide-hosting) - 2 comments
- [How good is Cloudflare DNS?](https://www.g2.com/discussions/how-good-is-cloudflare-dns) - 1 comment, 1 upvote
- [What does DDoS protection do?](https://www.g2.com/discussions/what-does-ddos-protection-do)

### 3. [apisec.ai](https://www.g2.com/products/apisec-ai/reviews)
APIsec automated API testing platform automatically analyzes applications, simulates sophisticated attacks across the full spectrum of OWASP threats, and uncovers vulnerabilities and exploits before they reach production. By eliminating the need for time-consuming manual testing, APIsec helps security and development teams strengthen their security posture with continuous, preventative API protection. In addition, APIsec operates APIsec University, the world’s most popular API security education platform, offering dozens of free courses and a vibrant community of over 100,000 members. Together, our advanced security solutions and educational resources enable organizations to build, deploy, and maintain secure applications with confidence.


**Average Rating:** 4.7/5.0
**Total Reviews:** 228
**How Do G2 Users Rate apisec.ai?**

- **API Testing:** 8.9/10 (Category avg: 9.1/10)
- **API Monitoring:** 8.7/10 (Category avg: 8.8/10)

**Who Is the Company Behind apisec.ai?**

- **Seller:** [apisec.ai](https://www.g2.com/sellers/apisec-ai)
- **Year Founded:** 2018
- **HQ Location:** San Francisco, US
- **LinkedIn® Page:** http://www.linkedin.com/company/apisec (41 employees on LinkedIn®)

**Who Uses This Product?**
- **Who Uses This:** Security Consultant, Cyber Security Analyst
- **Top Industries:** Computer &amp; Network Security, Information Technology and Services
- **Company Size:** 64% Small-Business, 23% Mid-Market


#### What Are apisec.ai's Pros and Cons?

**Pros:**

- Security (71 reviews)
- Ease of Use (61 reviews)
- API Management (56 reviews)
- Testing Efficiency (56 reviews)
- Automation (50 reviews)

**Cons:**

- API Issues (25 reviews)
- Complex Setup (19 reviews)
- Poor Documentation (13 reviews)
- Difficult Learning Curve (12 reviews)
- Expensive (9 reviews)


### What Do G2 Reviewers Say About apisec.ai?
*AI-generated summary from verified user reviews*

**Pros:**

- Users commend the **robust security coverage** of Apisec.ai, effectively addressing top API vulnerabilities with ease and reliability.
- Users appreciate the **ease of use** of apisec.ai, benefiting from its intuitive navigation and quick results.
- Users value the **automatic discovery of endpoints** , enhancing visibility and streamlining their API security assessments.
- Users appreciate the **testing efficiency** of apisec.ai, enabling effortless API scans and saving valuable time.
- Users appreciate the **automation of security testing** in apisec.ai, streamlining the process for developers and security teams.

**Cons:**

- Users find the **API issues** challenging, needing better guidance and support for effective testing and integration.
- Users find the **complex setup** challenging for newcomers, wishing for improved guides and documentation to aid understanding.
- Users highlight the **poor documentation** of apisec.ai, noting insufficient detail and support for internal developers.
- Users note a **difficult learning curve** with APIsec.ai, indicating a need for improved onboarding and documentation.
- Users find the **pricing to be high** for individual certifications, wishing for more affordable options.

#### What Are Recent G2 Reviews of apisec.ai?

**"[Best AI API tester I’ve ever used – easy to use with one-click analysis](https://www.g2.com/survey_responses/apisec-ai-review-11639883)"**

**Rating:** 5.0/5.0 stars
*— B.B Shalitha M.*

[Read full review](https://www.g2.com/survey_responses/apisec-ai-review-11639883)

---

**"[Scanning at Scale at the age of AI with APISec](https://www.g2.com/survey_responses/apisec-ai-review-11038850)"**

**Rating:** 4.0/5.0 stars
*— Suvam A.*

[Read full review](https://www.g2.com/survey_responses/apisec-ai-review-11038850)

---



### 4. [Check Point WAF (formerly CloudGuard WAF)](https://www.g2.com/products/check-point-waf-formerly-cloudguard-waf/reviews)
CloudGuard WAF is a cloud-native Web and API security solution designed to help users safeguard their applications from both known and unknown threats. By leveraging advanced contextual AI, this solution provides precise threat prevention without the need for traditional signature-based detection methods. This innovative approach allows organizations to maintain a robust security posture while minimizing the risks associated with evolving cyber threats. Targeted primarily at businesses that rely on web applications and APIs, CloudGuard WAF is particularly beneficial for enterprises in sectors such as finance, healthcare, and e-commerce, where data protection is paramount. The solution is designed to address the complex security challenges that arise in modern application environments, especially those utilizing continuous integration and continuous deployment (CI/CD) practices. As organizations increasingly adopt cloud-native architectures, the need for flexible and efficient security solutions becomes critical. One of the standout features of CloudGuard WAF is its preemptive protection capabilities. By employing machine learning-based security measures, the solution can effectively prevent zero-day threats, which are vulnerabilities that have not yet been discovered or patched. This proactive approach eliminates the reliance on frequent signature updates, allowing organizations to stay ahead of potential attacks without the need for constant manual intervention. Moreover, CloudGuard WAF excels in precise detection, enabling it to identify a broader range of attacks while minimizing the need for ongoing fine-tuning and exception creation. This feature not only enhances the accuracy of threat detection but also reduces the operational burden on security teams, allowing them to focus on more strategic initiatives rather than routine adjustments. Designed with cloud-native principles in mind, CloudGuard WAF supports CI/CD-friendly deployment and automation. This means that organizations can easily integrate the solution into their existing workflows, from installation to upgrades and configuration. By utilizing declarative infrastructure-as-code or APIs, users can streamline their security processes, ensuring that their applications remain protected as they evolve. Overall, CloudGuard WAF represents a significant advancement in the realm of web and API security, offering organizations a sophisticated and adaptable solution to combat the ever-changing landscape of cyber threats. Its combination of preemptive protection, precise detection, and cloud-native design makes it a valuable asset for any organization looking to enhance its security posture in today&#39;s digital environment.


**Average Rating:** 4.4/5.0
**Total Reviews:** 81
**How Do G2 Users Rate Check Point WAF (formerly CloudGuard WAF)?**

- **API Testing:** 8.7/10 (Category avg: 9.1/10)
- **API Monitoring:** 9.0/10 (Category avg: 8.8/10)

**Who Is the Company Behind Check Point WAF (formerly CloudGuard WAF)?**

- **Seller:** [Check Point Software Technologies](https://www.g2.com/sellers/check-point-software-technologies)
- **Company Website:** https://www.checkpoint.com/
- **Year Founded:** 1993
- **HQ Location:** Redwood City, CA
- **Twitter:** @CheckPointSW (70,955 Twitter followers)
- **LinkedIn® Page:** https://www.linkedin.com/company/check-point-software-technologies/ (8,554 employees on LinkedIn®)

**Who Uses This Product?**
- **Top Industries:** Information Technology and Services, Computer &amp; Network Security
- **Company Size:** 60% Mid-Market, 24% Small-Business


#### What Are Check Point WAF (formerly CloudGuard WAF)'s Pros and Cons?

**Pros:**

- Protection (35 reviews)
- Security (30 reviews)
- Cybersecurity (21 reviews)
- DDoS Protection (21 reviews)
- WAF (Web Application Firewall) (18 reviews)

**Cons:**

- Complex Setup (21 reviews)
- Expensive (14 reviews)
- Learning Difficulty (14 reviews)
- Difficult Learning Curve (11 reviews)
- User Interface Issues (10 reviews)


### What Do G2 Reviewers Say About Check Point WAF (formerly CloudGuard WAF)?
*AI-generated summary from verified user reviews*

**Pros:**

- Users value the **user-friendly GUI and automated security features** of Check Point CloudGuard WAF, enhancing application protection.
- Users value the **robust security features** of Check Point CloudGuard WAF, ensuring effective protection against threats effortlessly.
- Users value the **automatic zero-day protection** of Check Point CloudGuard WAF, ensuring minimal false positives and effective defense.
- Users value the **effective DDoS protection** of Check Point CloudGuard WAF, ensuring robust security for cloud applications.
- Users appreciate the **comprehensive proactive protection** of Check Point CloudGuard WAF against modern web application threats.

**Cons:**

- Users find the **initial setup complex** , making it challenging for teams less familiar with Check Point&#39;s ecosystem.
- Users find the product&#39;s **premium pricing** to be higher than competitors, which may deter budget-conscious customers.
- Users find the **learning difficulty** significant due to complex setup and extensive features requiring extensive tuning.
- Users find the **difficult learning curve** challenging due to extensive features and configurations required for effective use.
- Users find the **user interface overwhelming** , with complex configurations and hidden options that hinder ease of use.

#### What Are Recent G2 Reviews of Check Point WAF (formerly CloudGuard WAF)?

**"[Strong and reliable WAF for modern web and API security](https://www.g2.com/survey_responses/check-point-waf-formerly-cloudguard-waf-review-12736414)"**

**Rating:** 4.5/5.0 stars
*— Dharamveer p.*

[Read full review](https://www.g2.com/survey_responses/check-point-waf-formerly-cloudguard-waf-review-12736414)

---

**"[Strong Protection with Room for Onboarding Improvement](https://www.g2.com/survey_responses/check-point-waf-formerly-cloudguard-waf-review-12984181)"**

**Rating:** 4.5/5.0 stars
*— Hazem H.*

[Read full review](https://www.g2.com/survey_responses/check-point-waf-formerly-cloudguard-waf-review-12984181)

---



### 5. [Fastly&#39;s Web Application and API Security](https://www.g2.com/products/fastly-s-web-application-and-api-security/reviews)
Fastly’s AppSec solutions empower teams to mitigate threats and control bots while helping the business move faster, confidently. Protect Your Apps and APIs While Accelerating Growth with Fastly’s Next-Gen WAF, DDoS Protection, Bot Management, API Security, and more. Our solutions are designed to help you stop cyber threats from derailing your biggest moments, accelerate innovation while minimizing new risk, and govern bots without increasing user friction.


**Average Rating:** 4.2/5.0
**Total Reviews:** 29

**Who Is the Company Behind Fastly&#39;s Web Application and API Security?**

- **Seller:** [Fastly](https://www.g2.com/sellers/fastly)
- **Year Founded:** 2011
- **HQ Location:** San Francisco, California, United States
- **Twitter:** @Fastly (29,199 Twitter followers)
- **LinkedIn® Page:** https://www.linkedin.com/company/2602522/ (1,398 employees on LinkedIn®)
- **Ownership:** NYSE: FSLY

**Who Uses This Product?**
- **Top Industries:** Computer Software
- **Company Size:** 50% Mid-Market, 37% Enterprise


#### What Are Fastly&#39;s Web Application and API Security's Pros and Cons?

**Pros:**

- Customer Support (3 reviews)
- DDoS Protection (3 reviews)
- Detection Efficiency (2 reviews)
- Security (2 reviews)
- Setup Ease (2 reviews)

**Cons:**

- Poor Customer Support (3 reviews)
- Complex Configuration (2 reviews)
- Complex Setup (2 reviews)
- Complex Management (1 reviews)
- Data Inconsistency (1 reviews)


### What Do G2 Reviewers Say About Fastly&#39;s Web Application and API Security?
*AI-generated summary from verified user reviews*

**Pros:**

- Users appreciate the **excellent customer support** provided by Fastly, enhancing their experience and implementation process.
- Users appreciate the **excellent DDoS protection** of Fastly, ensuring robust security against various web application threats.
- Users value the **high detection efficiency** of Fastly&#39;s security, ensuring robust protection against diverse attacks.
- Users praise Fastly for its **seamless API security** , ensuring easy HTTPS access without extra setup.
- Users find the **setup process easy** with Fastly&#39;s Web Application and API Security, backed by excellent support.

**Cons:**

- Users experience **poor customer support** , facing slow response times and difficulty in obtaining assistance with configurations.
- Users find the **complex configuration** challenging, making setup and management time-consuming and frustrating.
- Users find the **complex setup** of Fastly&#39;s Web Application and API Security cumbersome and time-consuming to manage.
- Users find the **complex management** of Fastly&#39;s Web Application and API Security to be overwhelming and time-consuming.
- Users report **data inconsistency** issues that lead to vulnerabilities in monitoring traffic effectively, affecting overall security.

#### What Are Recent G2 Reviews of Fastly&#39;s Web Application and API Security?

**"[Perfect API Protection](https://www.g2.com/survey_responses/fastly-s-web-application-and-api-security-review-12332835)"**

**Rating:** 5.0/5.0 stars
*— Vladimir M.*

[Read full review](https://www.g2.com/survey_responses/fastly-s-web-application-and-api-security-review-12332835)

---

**"[It’s an easy to use and provides the better security to application, API and devops environment](https://www.g2.com/survey_responses/fastly-s-web-application-and-api-security-review-9336328)"**

**Rating:** 5.0/5.0 stars
*— Shakir K.*

[Read full review](https://www.g2.com/survey_responses/fastly-s-web-application-and-api-security-review-9336328)

---



### 6. [Rakuten SixthSense Observability](https://www.g2.com/products/rakuten-sixthsense-observability/reviews)
In today&#39;s digital landscape, businesses need a powerful and comprehensive Application Performance Monitoring (APM) solution to stay ahead of the curve. Introducing Rakuten SixthSense Observability - a next-generation APM tool that transforms the way you monitor, analyze, and optimize your applications and infrastructure. With its robust suite of features and advanced analytics, Rakuten SixthSense Observability empowers you to proactively identify and resolve issues, streamline operations, and enhance customer experiences. Key Capabilities: • Comprehensive Monitoring and Alerting: Rakuten SixthSense Observability offers end-to-end monitoring of your applications, infrastructure, and network performance. With real-time alerting and customizable dashboards, you can quickly detect issues and gain actionable insights into the health and performance of your systems. • Distributed Tracing and Correlation: Gain full visibility into your application&#39;s performance with distributed tracing, which tracks transactions and requests across multiple services and components. This feature helps you identify bottlenecks, latency issues, and errors, making it easier to optimize your application and enhance customer experiences. • Anomaly Detection and Machine Learning: Leverage Rakuten SixthSense&#39;s advanced machine learning capabilities to automatically identify unusual patterns and deviations in application performance and resource utilization. This proactive approach enables you to detect and resolve issues before they impact your business and customers. • Advanced Analytics and Visualization: Rakuten SixthSense&#39;s rich data visualization and analytics tools allow you to dive deep into your application performance data. Generate custom reports, analyze trends, and uncover hidden patterns that can drive continuous improvement and optimization. • Log Management and Integration: Effortlessly collect, analyze, and store logs from various sources with Rakuten SixthSense&#39;s integrated log management feature. This seamless integration enables you to correlate log data with performance metrics and traces, providing a comprehensive understanding of your application&#39;s behaviour. • Scalability and Flexibility: Rakuten SixthSense Observability is built to scale with your growing business needs, supporting a wide range of applications, services, and infrastructure. Its flexible architecture allows you to customize the tool to your specific requirements and integrate it with other monitoring and observability solutions. Current Feature set: • Application Performance Monitoring: Full stack visibility across Java, PHP, Node.js, Python, Go and a lot more! Key Features include, Distributed Tracing, Profiling, Database Monitoring • Infrastructure Monitoring: Get a birds-eye view of your infrastructure health and gain granular insights with easy deployment Key Features include Kubernetes, VMs, Web Servers, Cloud Integrations • Digital Experience Monitoring: Improve the end-user experience of your applications mapped with contextual information of application performance metrics • Browser Monitoring: Metrics to optimize end users’ experience and help in improving application performance. • Mobile Monitoring: Monitor crashes, performance &amp; usage metrics for your mobile applications • Synthetic Monitoring: Stimulate end-user transactions using low code, no code test scripts • VM Monitoring: VM monitoring capability lets you view your infrastructure performance and health of servers, virtual machines, containers, databases etc. at a glance. • SixthSense Cognitive Engine: Modern observability and the proactive approach using artificial intelligence. The application uses different AI/ML algorithms that can predict performance metrics with an accuracy of up to 98% and a confidence level of 90%.


**Average Rating:** 4.6/5.0
**Total Reviews:** 52
**How Do G2 Users Rate Rakuten SixthSense Observability?**

- **API Testing:** 9.3/10 (Category avg: 9.1/10)
- **API Monitoring:** 10.0/10 (Category avg: 8.8/10)

**Who Is the Company Behind Rakuten SixthSense Observability?**

- **Seller:** [Rakuten SixthSense](https://www.g2.com/sellers/rakuten-sixthsense-f1af4c23-8be7-4bf4-a775-a4d50eebce5d)
- **Year Founded:** 2016
- **HQ Location:** Bengaluru, IN
- **LinkedIn® Page:** https://www.linkedin.com/company/rakuten-sixthsense/ (5 employees on LinkedIn®)
- **Ownership:** TYO: 4755

**Who Uses This Product?**
- **Who Uses This:** Senior Software Engineer
- **Top Industries:** Information Technology and Services, Computer Games
- **Company Size:** 47% Enterprise, 38% Mid-Market


#### What Are Rakuten SixthSense Observability's Pros and Cons?

**Pros:**

- Monitoring (11 reviews)
- Alerting System (9 reviews)
- Customer Support (9 reviews)
- Ease of Use (9 reviews)
- Implementation Ease (9 reviews)

**Cons:**

- Complex Setup (3 reviews)
- Poor Documentation (3 reviews)
- Alert Issues (2 reviews)
- Inefficient Alert System (2 reviews)
- Insufficient Information (2 reviews)


### What Do G2 Reviewers Say About Rakuten SixthSense Observability?
*AI-generated summary from verified user reviews*

**Pros:**

- Users appreciate the **easy-to-use monitoring** of Rakuten SixthSense, enhancing visibility and simplifying issue resolution across systems.
- Users value the **integrated alerting system** for its efficiency and ease of use in debugging issues promptly.
- Users value the **excellent customer support** of Rakuten SixthSense, which ensures quick resolution of issues and enhances usability.
- Users find Rakuten SixthSense Observability very **easy to operate and manage** , enhancing overall efficiency and monitoring.
- Users highlight the **implementation ease** of Rakuten SixthSense, enjoying smooth onboarding and efficient management of logs.

**Cons:**

- Users find the **complex setup** challenging initially, requiring significant onboarding effort despite responsive support.
- Users find the **documentation lacking** , making initial setup and customization more challenging than necessary.
- Users report **false positive alerts** and desire improved alert functionality for error record monitoring with dashboards.
- Users experience **inefficient alert systems** due to false positives and lack of desired error record notifications.
- Users find the **documentation insufficient** , hindering effective use of Rakuten SixthSense Observability features.

#### What Are Recent G2 Reviews of Rakuten SixthSense Observability?

**"[A very good SAAS monitoring &amp; observability tool](https://www.g2.com/survey_responses/rakuten-sixthsense-observability-review-11287792)"**

**Rating:** 5.0/5.0 stars
*— Verified User in Computer Games*

[Read full review](https://www.g2.com/survey_responses/rakuten-sixthsense-observability-review-11287792)

---

**"[Great monitoring tool!](https://www.g2.com/survey_responses/rakuten-sixthsense-observability-review-8230168)"**

**Rating:** 5.0/5.0 stars
*— Verified User in Information Technology and Services*

[Read full review](https://www.g2.com/survey_responses/rakuten-sixthsense-observability-review-8230168)

---



### 7. [Astra Pentest](https://www.g2.com/products/astra-pentest/reviews)
Astra Security is a leading continuous penetration testing platform that combines AI-powered autonomous pentesting with certified expert-led assessments. Powered by Attack AI, trained on 6.8M+ security findings and insights from 5,000+ real-world pentests. Astra deploys intelligent agents that continuously discover, validate, prioritize, and help remediate vulnerabilities at scale. While AI handles speed and scale, Astra’s certified security experts focus on what automation alone cannot: complex business logic flaws, multi-step attack chains, advanced exploit paths, and emerging AI/LLM-specific threats. Built for modern engineering teams, Astra integrates directly into CI/CD workflows, enabling continuous security validation between releases instead of relying on outdated annual pentests. The platform delivers comprehensive Autonomous Pentest powered by AI agents, DAST vulnerability scanner and human-driven pentests across web apps, AI/LLMs, mobile apps, APIs, cloud infrastructure. Astra is CREST-accredited, CERT-IN empaneled, and a PCI ASV-certified vendor. Our team also led the development of the OWASP APTS framework, helping shape the industry standard for continuous security testing. Today, 1,500+ organizations across 70+ countries trust Astra Security, including Ford, Loom, CompTIA, Hitachi, HackerRank, and OLX.


**Average Rating:** 4.6/5.0
**Total Reviews:** 195
**How Do G2 Users Rate Astra Pentest?**

- **API Testing:** 10.0/10 (Category avg: 9.1/10)
- **API Monitoring:** 10.0/10 (Category avg: 8.8/10)

**Who Is the Company Behind Astra Pentest?**

- **Seller:** [ASTRA IT, Inc.](https://www.g2.com/sellers/astra-it-inc)
- **Company Website:** https://www.getastra.com/
- **Year Founded:** 2018
- **HQ Location:** New Delhi, IN
- **Twitter:** @getastra (694 Twitter followers)
- **LinkedIn® Page:** https://www.linkedin.com/company/getastra/ (130 employees on LinkedIn®)

**Who Uses This Product?**
- **Who Uses This:** CTO, CEO
- **Top Industries:** Computer Software, Information Technology and Services
- **Company Size:** 65% Small-Business, 30% Mid-Market


#### What Are Astra Pentest's Pros and Cons?

**Pros:**

- Customer Support (63 reviews)
- Vulnerability Detection (51 reviews)
- Ease of Use (50 reviews)
- Pentesting Efficiency (42 reviews)
- Vulnerability Identification (37 reviews)

**Cons:**

- Poor Customer Support (12 reviews)
- Poor Interface Design (10 reviews)
- Slow Performance (8 reviews)
- UX Improvement (7 reviews)
- Lack of Information (6 reviews)


### What Do G2 Reviewers Say About Astra Pentest?
*AI-generated summary from verified user reviews*

**Pros:**

- Users commend the **responsive and supportive customer support** of Astra Pentest, significantly enhancing their security experience.
- Users value Astra Pentest for its **user-friendly vulnerability detection** , simplifying the tracking and prioritization of security issues.
- Users highlight the **ease of use** of Astra Pentest, appreciating its intuitive design and accessible features.
- Users value the **pentesting efficiency** of Astra Pentest, thanks to quick feedback and effective coordination throughout the process.
- Users value the **effective vulnerability identification** by Astra Pentest, enhancing confidence in security and business growth.

**Cons:**

- Users find the **poor customer support** of Astra Pentest frustrating, leading to delays in issue resolution and assistance.
- Users find the **poor interface design** of Astra Pentest makes the overall experience less intuitive and smooth.
- Users report that the **slow performance** of Astra Pentest affects efficiency, prolonging testing and response times.
- Users find that the **UX could be improved** , noting confusion and difficulties with the interface during scans.
- Users point out a **lack of information** , as documentation and status updates are often incomplete or slow to respond.

#### What Are Recent G2 Reviews of Astra Pentest?

**"[Smooth Onboarding, Responsive Support, and Strong Pentest Lifecycle Controls](https://www.g2.com/survey_responses/astra-pentest-review-13001206)"**

**Rating:** 5.0/5.0 stars
*— Sivakumar S.*

[Read full review](https://www.g2.com/survey_responses/astra-pentest-review-13001206)

---

**"[Thorough Pentesting with Clear, Actionable Reporting and Responsive Support](https://www.g2.com/survey_responses/astra-pentest-review-12963285)"**

**Rating:** 5.0/5.0 stars
*— Sevesh A.*

[Read full review](https://www.g2.com/survey_responses/astra-pentest-review-12963285)

---


#### What Are G2 Users Discussing About Astra Pentest?

- [What is Astra Pentest used for?](https://www.g2.com/discussions/what-is-astra-pentest-used-for) - 2 comments

### 8. [Orca Security](https://www.g2.com/products/orca-security/reviews)
The Orca Cloud Security Platform identifies, prioritizes, and remediates risks and compliance issues in workloads, configurations, and identities across your cloud estate spanning AWS, Azure, Google Cloud, Kubernetes, Alibaba Cloud, and Oracle Cloud. Orca offers the industry’s most comprehensive cloud security solution in a single platform — eliminating the need to deploy and maintain multiple point solutions. Orca is agentless-first, and connects to your environment in minutes using Orca’s patented SideScanning™ technology that provides deep and wide visibility into your cloud environment, without requiring agents. In addition, Orca can integrate with third-party agents for runtime visibility and protection for critical workloads. Orca is at the forefront of leveraging Generative AI for simplified investigations and accelerated remediation – reducing required skill levels and saving cloud security, DevOps, and development teams time and effort, while significantly improving security outcomes. As a Cloud Native Application Protection Platform (CNAPP), Orca consolidates many point solutions in one platform, including: CSPM, CWPP, CIEM, Vulnerability Management, Container and Kubernetes Security, DSPM, API Security, CDR, Multi-cloud Compliance, Shift Left Security, and AI-SPM.


**Average Rating:** 4.7/5.0
**Total Reviews:** 279
**How Do G2 Users Rate Orca Security?**

- **API Testing:** 7.5/10 (Category avg: 9.1/10)
- **API Monitoring:** 8.5/10 (Category avg: 8.8/10)

**Who Is the Company Behind Orca Security?**

- **Seller:** [Orca Security](https://www.g2.com/sellers/orca-security)
- **Company Website:** https://orca.security
- **Year Founded:** 2019
- **HQ Location:** Portland, Oregon
- **Twitter:** @orcasec (4,835 Twitter followers)
- **LinkedIn® Page:** https://www.linkedin.com/company/35573984/ (515 employees on LinkedIn®)

**Who Uses This Product?**
- **Who Uses This:** Security Engineer, CISO
- **Top Industries:** Information Technology and Services, Computer Software
- **Company Size:** 49% Enterprise, 41% Mid-Market


#### What Are Orca Security's Pros and Cons?

**Pros:**

- Ease of Use (13 reviews)
- Vulnerability Scanning (13 reviews)
- Features (11 reviews)
- Visibility (11 reviews)
- Comprehensive Security (9 reviews)

**Cons:**

- Security Vulnerabilities (6 reviews)
- Dashboard Issues (5 reviews)
- Delayed Detection (5 reviews)
- False Positives (5 reviews)
- Improvement Needed (5 reviews)


### What Do G2 Reviewers Say About Orca Security?
*AI-generated summary from verified user reviews*

**Pros:**

- Users find the **ease of use** of Orca Security remarkable, allowing quick connections and intuitive navigation.
- Users value the **great visibility and prioritization of alerts** provided by Orca Security for vulnerability management.
- Users appreciate the **agentless feature** and intuitive interface of Orca Security, enhancing usability and efficiency.
- Users value the **comprehensive visibility** provided by Orca Security, simplifying cloud oversight and alert management.
- Users appreciate the **comprehensive security features** of Orca Security, enabling effortless protection and significant visibility.

**Cons:**

- Users find that **security vulnerabilities** in Orca Security need improvement and lack comprehensive API focus and granularity.
- Users find the **dashboard overwhelming** and report slow performance, along with bugs affecting navigation and usability.
- Users experience **delayed detection** in Orca Security due to infrequent scans and alert notification issues.
- Users experience **lots of false positives** with Orca Security, impacting the reliability of vulnerability assessments.
- Users feel that **reporting capabilities and customization** need significant improvement for better usability and effectiveness.

#### What Are Recent G2 Reviews of Orca Security?

**"[Orca Security Review](https://www.g2.com/survey_responses/orca-security-review-12958487)"**

**Rating:** 5.0/5.0 stars
*— Serina T.*

[Read full review](https://www.g2.com/survey_responses/orca-security-review-12958487)

---

**"[Orca SideScanning: Fast, Agentless Multi-Cloud Visibility with Zero Blind Spots](https://www.g2.com/survey_responses/orca-security-review-12972841)"**

**Rating:** 5.0/5.0 stars
*— Shivam S.*

[Read full review](https://www.g2.com/survey_responses/orca-security-review-12972841)

---


#### What Are G2 Users Discussing About Orca Security?

- [Where is Orca security based?](https://www.g2.com/discussions/where-is-orca-security-based) - 2 comments
- [How much does Orca security cost?](https://www.g2.com/discussions/how-much-does-orca-security-cost) - 1 comment
- [What is ORCA platform?](https://www.g2.com/discussions/what-is-orca-platform) - 1 comment
- [What does Orca Security do?](https://www.g2.com/discussions/what-does-orca-security-do) - 1 comment

### 9. [Azion](https://www.g2.com/products/azion/reviews)
Azion is the web platform that enables businesses to build, secure, and scale modern applications on a fully managed global infrastructure, with a robust suite of solutions for Application Development, cybersecurity, and AI. Azion allows developers to deploy applications closer to users, ensuring ultra-low latency and high availability. With Functions, you can run distributed serverless code, enhancing performance and reducing costs. For enhanced security, Azion’s Web Application Firewall (WAF) protects against cyber threats. Azion also provides SQL Storage, Object Storage and KV Storage, enabling fast, distributed data storage and retrieval. With Real-Time Metrics and Real-Time Events, businesses gain actionable insights into their applications and infrastructure, ensuring optimal performance and security. Global leaders like Prime Video, Neon, Global Fashion Group, and Radware trust Azion to deliver high-performance, secure digital experiences worldwide. Whether you&#39;re building AI-driven applications, securing your digital assets, or scaling globally, Azion provides the fastest path to modern applications. Discover how Azion can transform your digital experiences and empower your business to thrive in the digital age. Visit www.azion.com to learn more about our innovative solutions.


**Average Rating:** 4.7/5.0
**Total Reviews:** 31
**How Do G2 Users Rate Azion?**

- **API Testing:** 10.0/10 (Category avg: 9.1/10)
- **API Monitoring:** 9.2/10 (Category avg: 8.8/10)

**Who Is the Company Behind Azion?**

- **Seller:** [Azion](https://www.g2.com/sellers/azion)
- **Year Founded:** 2011
- **HQ Location:** Palo Alto, California, United States
- **LinkedIn® Page:** https://www.linkedin.com/company/aziontech (198 employees on LinkedIn®)

**Who Uses This Product?**
- **Top Industries:** Retail
- **Company Size:** 34% Enterprise, 28% Mid-Market


#### What Are Azion's Pros and Cons?

**Pros:**

- Customer Support (10 reviews)
- Ease of Use (8 reviews)
- Easy Integrations (7 reviews)
- Reliability (7 reviews)
- Performance (6 reviews)

**Cons:**

- Missing Features (2 reviews)
- Complexity (1 reviews)
- Difficult Learning (1 reviews)
- Difficult Learning Curve (1 reviews)
- Expensive (1 reviews)


### What Do G2 Reviewers Say About Azion?
*AI-generated summary from verified user reviews*

**Pros:**

- Users commend Azion&#39;s **excellent customer support** for its responsiveness and technical knowledge, enhancing overall service quality.
- Users value the **ease of use** of Azion, appreciating its simple integration and effective daily operation in projects.
- Users value the **easy integrations** with Azion, facilitating seamless implementation and enhancing operational efficiency.
- Users highlight Azion&#39;s **reliability** and consistent performance, ensuring smooth operations even during traffic spikes.
- Users commend Azion for its **excellent performance** , delivering reliability and enhanced user experience consistently.

**Cons:**

- Users are disappointed by Azion’s **missing features** , particularly regarding Web3, NFTs, and incomplete new products affecting workloads.
- Users find the **administration console complex** , requiring time to familiarize themselves with its features.
- Users find the **difficult learning curve** in Azion&#39;s administration console to be challenging and time-consuming.
- Users find the **difficult learning curve** in Azion&#39;s administration console challenging and time-consuming to overcome.
- Users find the pricing of Azion to be **expensive** and desire more flexible options and offers.

#### What Are Recent G2 Reviews of Azion?

**"[Azion as one of the main strategic partners in cybersecurity.](https://www.g2.com/survey_responses/azion-review-12544164)"**

**Rating:** 5.0/5.0 stars
*— Luciano K.*

[Read full review](https://www.g2.com/survey_responses/azion-review-12544164)

---

**"[Azion Services: Elevated Security and Impeccable Support](https://www.g2.com/survey_responses/azion-review-11910560)"**

**Rating:** 5.0/5.0 stars
*— Luciano G.*

[Read full review](https://www.g2.com/survey_responses/azion-review-11910560)

---



### 10. [Intruder](https://www.g2.com/products/intruder/reviews)
Intruder is an exposure management platform for scaling to mid-market businesses. Over 3000 companies - across all industries - use Intruder to find critical exposures, respond faster and prevent breaches. Unifying Attack Surface Management, Vulnerability Management and Cloud security into one powerful, easy to use platform, Intruder simplifies the complex task of securing an ever-expanding attack surface. Recognizing no two business are alike, Intruder provides real-time, accurate scanning combined with intelligent risk prioritization, ensuring businesses focus on the exposures that are most relevant to them. And our proactive approach limits the window of risk, continuously monitoring for new threats while eliminating the noise that slows teams down. Whether you&#39;re an IT Manager, in DevOps or a CISO, Intruder&#39;s easy setup and context-driven approach will free you up to focus on exposures that cause real breaches, not just technical vulnerabilities. Keeping you one step ahead of attackers.


**Average Rating:** 4.8/5.0
**Total Reviews:** 206
**How Do G2 Users Rate Intruder?**

- **API Testing:** 8.7/10 (Category avg: 9.1/10)
- **API Monitoring:** 8.9/10 (Category avg: 8.8/10)

**Who Is the Company Behind Intruder?**

- **Seller:** [Intruder](https://www.g2.com/sellers/intruder)
- **Company Website:** https://www.intruder.io
- **Year Founded:** 2015
- **HQ Location:** London
- **Twitter:** @intruder_io (979 Twitter followers)
- **LinkedIn® Page:** https://www.linkedin.com/company/6443623/ (84 employees on LinkedIn®)

**Who Uses This Product?**
- **Who Uses This:** CTO, Director
- **Top Industries:** Computer Software, Information Technology and Services
- **Company Size:** 57% Small-Business, 36% Mid-Market


#### What Are Intruder's Pros and Cons?

**Pros:**

- Ease of Use (41 reviews)
- Vulnerability Detection (30 reviews)
- Customer Support (25 reviews)
- User Interface (24 reviews)
- Vulnerability Identification (24 reviews)

**Cons:**

- Expensive (9 reviews)
- Slow Scanning (8 reviews)
- Licensing Issues (7 reviews)
- False Positives (6 reviews)
- Limited Features (6 reviews)


### What Do G2 Reviewers Say About Intruder?
*AI-generated summary from verified user reviews*

**Pros:**

- Users find **Intruder very easy to use** , enabling quick setup and efficient management of security vulnerabilities.
- Users value the **effortless vulnerability detection** of Intruder, streamlining cybersecurity management for diverse teams and environments.
- Users value Intruder&#39;s **exceptional customer support** , noting its quick responses and helpfulness throughout their cybersecurity efforts.
- Users value Intruder&#39;s **intuitive interface** and seamless integration, making cybersecurity management straightforward and efficient.
- Users praise Intruder for its **easy configuration and efficient vulnerability identification** , making security management hassle-free.

**Cons:**

- Users find the product **expensive** and suggest improvements in pricing models for better value.
- Users report **slow scanning** issues with Intruder, leading to missed vulnerabilities and frustration during tests.
- Users find the **licensing model confusing** , requiring time and support to fully grasp its implications for scan targets.
- Users experience **false positives** with Intruder, where lower-risk issues are flagged with critical urgency, causing concern.
- Users find the **limited features** frustrating, particularly regarding licensing and export flexibility in reporting.

#### What Are Recent G2 Reviews of Intruder?

**"[Intruder: Insightful Vulnerability Management Platform That Strengthens Security Operation](https://www.g2.com/survey_responses/intruder-review-12395645)"**

**Rating:** 4.5/5.0 stars
*— HALADU A.*

[Read full review](https://www.g2.com/survey_responses/intruder-review-12395645)

---

**"[Outstanding Experience with No Drawbacks](https://www.g2.com/survey_responses/intruder-review-12097237)"**

**Rating:** 5.0/5.0 stars
*— Nic H.*

[Read full review](https://www.g2.com/survey_responses/intruder-review-12097237)

---


#### What Are G2 Users Discussing About Intruder?

- [Who developed intruder?](https://www.g2.com/discussions/who-developed-intruder)
- [What is an intruder in cyber security?](https://www.g2.com/discussions/what-is-an-intruder-in-cyber-security)
- [Is intruder IO safe?](https://www.g2.com/discussions/is-intruder-io-safe) - 1 comment
- [What is intruder software?](https://www.g2.com/discussions/what-is-intruder-software) - 1 comment

### 11. [FortiAppSec Cloud](https://www.g2.com/products/fortiappsec-cloud/reviews)
FortiAppSec Cloud - the next evolution of FortiWeb Cloud - simplifies and strengthens web application security and delivery across your cloud environments. This SaaS platform secures network availability and accelerates application performance while delivering consistent security against web-based threats. The AI-driven engine detects zero-day exploits and unknown threats, maximizing detection accuracy while securing the user experience and minimizing false positives. FortiAppSec Cloud is unified platform that provides comprehensive web application and API protection (WAAP) with a single management interface. It includes: • GenAI-ready protection for known and zero-day threat detection • ML-driven bad bot behavioral analysis to fend off sophisticated bots • Advanced API discovery and security • Built-in DAST allows for vulnerability scanning and patching in advance • Global server load balancing and CDN provide optimized application availability and performance. • Threat analytics helps prioritize security events for operational efficiency.


**Average Rating:** 4.4/5.0
**Total Reviews:** 29
**How Do G2 Users Rate FortiAppSec Cloud?**

- **API Testing:** 6.7/10 (Category avg: 9.1/10)
- **API Monitoring:** 8.3/10 (Category avg: 8.8/10)

**Who Is the Company Behind FortiAppSec Cloud?**

- **Seller:** [Fortinet](https://www.g2.com/sellers/fortinet)
- **Company Website:** https://www.fortinet.com
- **Year Founded:** 2000
- **HQ Location:** Sunnyvale, CA
- **Twitter:** @Fortinet (151,422 Twitter followers)
- **LinkedIn® Page:** https://www.linkedin.com/company/6460/ (16,279 employees on LinkedIn®)

**Who Uses This Product?**
- **Top Industries:** Computer &amp; Network Security, Information Technology and Services
- **Company Size:** 61% Mid-Market, 19% Enterprise


#### What Are FortiAppSec Cloud's Pros and Cons?

**Pros:**

- Security (13 reviews)
- Protection (10 reviews)
- Cybersecurity (8 reviews)
- Ease of Use (8 reviews)
- Features (8 reviews)

**Cons:**

- UX Improvement (9 reviews)
- Slow Performance (8 reviews)
- User Interface Issues (8 reviews)
- Complex Configuration (7 reviews)
- Complex Setup (7 reviews)


### What Do G2 Reviewers Say About FortiAppSec Cloud?
*AI-generated summary from verified user reviews*

**Pros:**

- Users value the **comprehensive security** of FortiAppSec Cloud, ensuring effective monitoring and threat management for web applications.
- Users value the **automatic security and centralized dashboard** of FortiAppSec Cloud, enhancing visibility and efficiency.
- Users commend the **automated AI protection** of FortiAppSec Cloud, appreciating its effective threat detection and seamless management.
- Users value the **ease of use** of FortiAppSec Cloud, appreciating its straightforward setup and user-friendly dashboard.
- Users value the **automatic security and centralized dashboard** of FortiAppSec Cloud for improved visibility and efficiency.

**Cons:**

- Users find the **user experience lacking** , highlighting the need for a more intuitive interface and better reporting features.
- Users notice **slow performance** during peak traffic, affecting the overall experience with FortiAppSec Cloud.
- Users find the **user interface issues** challenging, making the setup and navigation less intuitive for first-time users.
- Users find the **initial configuration complex** , posing challenges for first-time users and impacting their overall experience.
- Users find the **complex setup** challenging, especially first-time users, causing frustration during initial configurations.

#### What Are Recent G2 Reviews of FortiAppSec Cloud?

**"[Centralized Threat Management, Easy Setup](https://www.g2.com/survey_responses/fortiappsec-cloud-review-12342944)"**

**Rating:** 4.0/5.0 stars
*— Manav S.*

[Read full review](https://www.g2.com/survey_responses/fortiappsec-cloud-review-12342944)

---

**"[Easy-to-Implement AppSec with Strong Signature Detection, Bot Protection, and Cloud Integration](https://www.g2.com/survey_responses/fortiappsec-cloud-review-12389870)"**

**Rating:** 5.0/5.0 stars
*— Prasanth K.*

[Read full review](https://www.g2.com/survey_responses/fortiappsec-cloud-review-12389870)

---


#### What Are G2 Users Discussing About FortiAppSec Cloud?

- [What is the use of Fortinet?](https://www.g2.com/discussions/what-is-the-use-of-fortinet)
- [How does Fortinet WAF work?](https://www.g2.com/discussions/how-does-fortinet-waf-work)
- [How many layers does the FortiWeb machine learning engine use?](https://www.g2.com/discussions/how-many-layers-does-the-fortiweb-machine-learning-engine-use)
- [How do you use FortiWeb?](https://www.g2.com/discussions/how-do-you-use-fortiweb)

### 12. [Qodex.ai](https://www.g2.com/products/qodex-ai/reviews)
Qodex is a continuous testing platform that runs your test scenarios against your real app on every pull request and deploy, then shows you exactly what broke with the failing request, response, and screenshot.


**Average Rating:** 4.9/5.0
**Total Reviews:** 60
**How Do G2 Users Rate Qodex.ai?**

- **API Testing:** 10.0/10 (Category avg: 9.1/10)
- **API Monitoring:** 8.3/10 (Category avg: 8.8/10)

**Who Is the Company Behind Qodex.ai?**

- **Seller:** [QodexAI](https://www.g2.com/sellers/qodexai)
- **Company Website:** https://www.qodex.ai/
- **Year Founded:** 2023
- **HQ Location:** San Francisco, California
- **LinkedIn® Page:** https://linkedin.com/company/qodexai (13 employees on LinkedIn®)

**Who Uses This Product?**
- **Top Industries:** Computer Software, Information Technology and Services
- **Company Size:** 75% Small-Business, 20% Mid-Market


#### What Are Qodex.ai's Pros and Cons?

**Pros:**

- Ease of Use (23 reviews)
- Automation (17 reviews)
- Testing (17 reviews)
- Testing Efficiency (17 reviews)
- Helpful (13 reviews)

**Cons:**

- Slow Loading (6 reviews)
- Poor Documentation (5 reviews)
- Slow Performance (5 reviews)
- Bug Issues (4 reviews)
- Bugs (4 reviews)


### What Do G2 Reviewers Say About Qodex.ai?
*AI-generated summary from verified user reviews*

**Pros:**

- Users praise the **ease of use** of Qodex.ai, enabling seamless test case creation for both technical and non-technical users.
- Users value the **automation in test case generation** with Qodex.ai, enhancing efficiency and freeing up resources.
- Users value the **easy interface for writing test cases** , simplifying the process for developers and non-technical users alike.
- Users benefit from the **testing efficiency** of Qodex.ai, achieving high code coverage with minimal manual effort.
- Users value the **helpful customer support** of Qodex.ai, enhancing their experience and facilitating smooth operations.

**Cons:**

- Users experience **slow loading** times with Qodex.ai, particularly during initial setup and when handling large reports.
- Users note the need for **poor documentation** , requiring clearer insights and guidance for complex features and use cases.
- Users experience **slow performance** with delayed chatbot responses and longer loading times for large projects.
- Users experience **bug issues** with repeated test cases, reporting processes, and flagging accuracy that need improvement.
- Users report **bug reporting issues** with Qodex.ai, highlighting the need for improved tagging and flagging processes.

#### What Are Recent G2 Reviews of Qodex.ai?

**"[Effortless AI Testing Automation That Accelerates Development](https://www.g2.com/survey_responses/qodex-ai-review-12088697)"**

**Rating:** 4.5/5.0 stars
*— Abhilash S.*

[Read full review](https://www.g2.com/survey_responses/qodex-ai-review-12088697)

---

**"[Effortless Automation and Insightful AI Testing with Qodex.ai](https://www.g2.com/survey_responses/qodex-ai-review-12065938)"**

**Rating:** 4.5/5.0 stars
*— Anshuk K.*

[Read full review](https://www.g2.com/survey_responses/qodex-ai-review-12065938)

---



### 13. [Pynt - API Security Testing](https://www.g2.com/products/pynt-api-security-testing/reviews)
Pynt is an innovative API Security Testing platform exposing verified API threats through simulated attacks. Hundreds of companies rely on Pynt to continuously monitor, classify and attack poorly secured APIs, before hackers do.


**Average Rating:** 4.8/5.0
**Total Reviews:** 44
**How Do G2 Users Rate Pynt - API Security Testing?**

- **API Testing:** 8.7/10 (Category avg: 9.1/10)
- **API Monitoring:** 8.8/10 (Category avg: 8.8/10)

**Who Is the Company Behind Pynt - API Security Testing?**

- **Seller:** [Pynt](https://www.g2.com/sellers/pynt)
- **Year Founded:** 2022
- **HQ Location:** Tel Aviv, IL
- **Twitter:** @pynt_io (361 Twitter followers)
- **LinkedIn® Page:** https://www.linkedin.com/company/pynt (16 employees on LinkedIn®)

**Who Uses This Product?**
- **Top Industries:** Computer Software, Computer &amp; Network Security
- **Company Size:** 57% Small-Business, 23% Enterprise


#### What Are Pynt - API Security Testing's Pros and Cons?

**Pros:**

- Vulnerability Detection (20 reviews)
- Security (18 reviews)
- API Management (17 reviews)
- Easy Integrations (16 reviews)
- Automation (15 reviews)

**Cons:**

- Complex Setup (11 reviews)
- Setup Complexity (6 reviews)
- Limited Features (4 reviews)
- Poor Interface Design (4 reviews)
- UX Improvement (4 reviews)


### What Do G2 Reviewers Say About Pynt - API Security Testing?
*AI-generated summary from verified user reviews*

**Pros:**

- Users appreciate the **auto-generation of security tests** , making vulnerability detection accessible for all development teams.
- Users praise Pynt for its **effective security engine** that quickly identifies critical vulnerabilities, enhancing overall API security.
- Users appreciate the **seamless integration** of Pynt into CI/CD pipelines, enhancing automated security testing for APIs.
- Users appreciate the **easy integrations** of Pynt, facilitating smooth automated API security testing within their development processes.
- Users appreciate the **automation** in Pynt that streamlines API security testing, enhancing efficiency and developer experience.

**Cons:**

- Users find the **complex setup** process challenging, often needing support and desiring a more user-friendly interface.
- Users find the **setup complexity** of Pynt challenging, often needing assistance and suggesting a more user-friendly interface.
- Users note the **limited features** of Pynt, especially in reporting and dashboard capabilities for complex API management.
- Users find the **poor interface design** challenging, indicating a need for improvements to enhance usability and experience.
- Users find the **user interface challenging** , recommending improvements for a more user-friendly experience.

#### What Are Recent G2 Reviews of Pynt - API Security Testing?

**"[Comprehensive Review of Pynt Tool](https://www.g2.com/survey_responses/pynt-api-security-testing-review-10046930)"**

**Rating:** 5.0/5.0 stars
*— Vijayaraghavan (Vijay) V.*

[Read full review](https://www.g2.com/survey_responses/pynt-api-security-testing-review-10046930)

---

**"[Performance and Usability Review of pynt G2](https://www.g2.com/survey_responses/pynt-api-security-testing-review-11135423)"**

**Rating:** 5.0/5.0 stars
*— Devanggiri G.*

[Read full review](https://www.g2.com/survey_responses/pynt-api-security-testing-review-11135423)

---



### 14. [Escape](https://www.g2.com/products/escape/reviews)
Escape automates the full offensive security lifecycle, multiplying the impact of every security engineer tenfold. Our key products: 1. Attack Surface Management: Discover and validate exposure of modern applications, APIs, and infrastructure from code to cloud. 2. Business-logic-aware DAST: Replace legacy DAST with business-logic-aware testing that improves over time and helps your team remediate real, exploitable vulnerabilities. 3. AI Pentesting: Replace manual pentest and bug bounty programs with a solution that scales. Escape is a customer-centric company, supporting more than 2000+ security teams worldwide, and we have the privilege of working with exceptional companies like Schibsted (Media), HealthEquity (Healthcare), Applied (InsurTech), Visma &amp; Miro (Tech), DoubleVerify (AdTech), Thinkific (EdTech), and many others.


**Average Rating:** 4.9/5.0
**Total Reviews:** 10
**How Do G2 Users Rate Escape?**

- **API Testing:** 9.2/10 (Category avg: 9.1/10)
- **API Monitoring:** 8.5/10 (Category avg: 8.8/10)

**Who Is the Company Behind Escape?**

- **Seller:** [Escape](https://www.g2.com/sellers/escape)
- **Company Website:** https://escape.tech/
- **Year Founded:** 2020
- **HQ Location:** Paris, France
- **Twitter:** @escapetechHQ (345 Twitter followers)
- **LinkedIn® Page:** https://www.linkedin.com/company/escapetech/ (61 employees on LinkedIn®)

**Who Uses This Product?**
- **Company Size:** 50% Small-Business, 40% Mid-Market


#### What Are Escape's Pros and Cons?

**Pros:**

- Ease of Use (3 reviews)
- Easy Integrations (2 reviews)
- Scanning Technology (2 reviews)
- Security (2 reviews)
- API Management (1 reviews)

**Cons:**

- Complex Setup (1 reviews)
- Difficult Upgrades (1 reviews)
- Limited Features (1 reviews)
- Missing Features (1 reviews)
- Update Issues (1 reviews)


### What Do G2 Reviewers Say About Escape?
*AI-generated summary from verified user reviews*

**Pros:**

- Users appreciate the **ease of use** of Escape, enabling quick setup and seamless integration with CI/CD processes.
- Users praise the **easy integrations** of Escape, facilitating quick setup and seamless connection to CI/CD processes.
- Users appreciate the **modern scanning technology** of Escape, simplifying complex scans and enhancing API security management.
- Users highlight the **robust security features** of Escape, effectively managing API vulnerabilities with excellent support.
- Users find that Escape offers **effective API security management** , successfully identifying vulnerabilities overlooked by other tools.

**Cons:**

- Users find the **complex setup** of Escape requires adjustments, but appreciate the updates and benefits overall.
- Users find that the **difficult upgrades** require adjustment, but appreciate the tool&#39;s benefits and evolving features.
- Users note the **limited features** in Escape, but appreciate the team&#39;s commitment to improve through feedback and updates.
- Users note that essential features are **missing** , but appreciate the proactive roadmap and quick updates based on feedback.
- Users experience some **update issues** that require adjustment, but appreciate the overall benefits of the platform.

#### What Are Recent G2 Reviews of Escape?

**"[Fast, Transparent DAST with Excellent GraphQL Handling and Strong Support](https://www.g2.com/survey_responses/escape-review-12978297)"**

**Rating:** 4.0/5.0 stars
*— Varun S.*

[Read full review](https://www.g2.com/survey_responses/escape-review-12978297)

---

**"[Excellent DAST disruptor](https://www.g2.com/survey_responses/escape-review-11666781)"**

**Rating:** 5.0/5.0 stars
*— Verified User in Information Technology and Services*

[Read full review](https://www.g2.com/survey_responses/escape-review-11666781)

---



### 15. [AppTrana](https://www.g2.com/products/apptrana/reviews)
AppTrana API is a fully managed API security platform that provides continuous API discovery, automated vulnerability detection, and real-time protection against API attacks. It combines 24/7 AI-driven intelligence with human-led operations to deliver runtime security with a Zero False Positive Guarantee. Trusted by over 6,500 customers across 95+ countries, it offers unmetered protection with 100% availability. AppTrana API includes SwyftComply, an industry-first autonomous remediation capability that virtually patches API vulnerabilities without code changes, enabling zero-vulnerability compliance reports.


**Average Rating:** 4.8/5.0
**Total Reviews:** 33

**Who Is the Company Behind AppTrana?**

- **Seller:** [Indusface](https://www.g2.com/sellers/indusface)
- **Year Founded:** 2012
- **HQ Location:** Vadodara
- **Twitter:** @Indusface (3,472 Twitter followers)
- **LinkedIn® Page:** https://www.linkedin.com/company/indusface/ (180 employees on LinkedIn®)

**Who Uses This Product?**
- **Top Industries:** Computer Software, Information Technology and Services
- **Company Size:** 53% Mid-Market, 24% Small-Business


#### What Are AppTrana's Pros and Cons?

**Pros:**

- Protection (11 reviews)
- Cybersecurity (9 reviews)
- WAF (Web Application Firewall) (8 reviews)
- Bot Detection (5 reviews)
- DDoS Protection (5 reviews)

**Cons:**

- Difficult Reporting (2 reviews)
- Complex Setup (1 reviews)
- Expensive (1 reviews)
- Learning Difficulty (1 reviews)
- Poor Documentation (1 reviews)


### What Do G2 Reviewers Say About AppTrana?
*AI-generated summary from verified user reviews*

**Pros:**

- Users value the **24/7 managed security** by AppTrana, ensuring effective protection against attacks any time of day.
- Users appreciate the **24/7 managed security** of AppTrana, ensuring peace of mind and robust protection against threats.
- Users praise the **excellent protection against DDoS and botnet attacks** provided by AppTrana&#39;s WAF features and support.
- Users praise the **outstanding bot detection** of AppTrana, ensuring robust protection against attacks round the clock.
- Users highly value the **exceptional DDoS protection** offered by AppTrana, ensuring comprehensive security and peace of mind.

**Cons:**

- Users find the **difficult reporting** of AppTrana limits their ability to thoroughly analyze data effectively.
- Users find the **complex setup** of AppTrana challenging due to inadequate documentation for third-party certificate installation.
- Users find the **cost of AppTrana** to be a significant factor, especially with multiple application instances.
- Users find the **installation difficulty** of third-party certificates frustrating due to poor documentation and complexity.
- Users struggle with **poor documentation** , especially when it comes to installing and replacing third-party certificates.

#### What Are Recent G2 Reviews of AppTrana?

**"[We are so much satisfied with Product](https://www.g2.com/survey_responses/apptrana-review-11345397)"**

**Rating:** 5.0/5.0 stars
*— Nikhil P.*

[Read full review](https://www.g2.com/survey_responses/apptrana-review-11345397)

---

**"[AppTrana’s Managed WAAP with 24×7 SOC Support and Zero False Positives](https://www.g2.com/survey_responses/apptrana-review-13029658)"**

**Rating:** 5.0/5.0 stars
*— UTKARSH S.*

[Read full review](https://www.g2.com/survey_responses/apptrana-review-13029658)

---


#### What Are G2 Users Discussing About AppTrana?

- [What is sucuri firewall?](https://www.g2.com/discussions/what-is-sucuri-firewall)
- [What is WAF service?](https://www.g2.com/discussions/what-is-waf-service) - 1 comment
- [What is AppTrana?](https://www.g2.com/discussions/what-is-apptrana) - 1 comment

### 16. [Cequence Security](https://www.g2.com/products/cequence-security/reviews)
Cequence protects the applications and data that power enterprises in the agentic era. More than a decade of bot defense and API security experience has established Cequence as the leader of safe and secure agentic AI adoption. The Cequence platform delivers deep insight into user, entity, and agent behavior, enabling organizations to secure and control agentic AI workflows while protecting against bad actors and rogue agents. Cequence delivers value in minutes rather than days or weeks with a highly scalable, no-code approach. Trusted by the largest and most demanding private and public sector organizations, Cequence protects more than 10 billion daily API interactions and 4 billion user accounts. AI Gateway – makes applications agent-ready while securing and controlling agentic AI interactions, enabling organizations to unlock AI-driven productivity and growth. Built-in governance and guardrails constrain agent behavior using capabilities that include least privilege access, rate-limiting, and sensitive data protection. AI Gateway enables organizations to swiftly innovate, going from prototype to production without incurring the technical debt and scalability limitations associated with basic solutions Bot Management – Bot Detection, Mitigation, and Fraud Prevention Cequence Bot Management protects organizations from the full range of automated attacks to prevent data loss, theft, and fraud. Bot Management is network based, requiring no agents, JavaScript, or SDKs. Behavioral fingerprints and multi-dimensional analytics provide a deep understanding of business context to identify and natively block attacks in real time. It mitigates a wide variety of cyberattacks including business logic attacks, exploits, automated bot activity, online fraud, and OWASP API Security Top 10 threats. API Security – API Security Posture Management, Testing, and Remediation Cequence API Security discovers, monitors, and tests APIs, assessing a broad range of risks that often lead to compliance or governance issues, data loss, and business disruption. Providing complete visibility and monitoring of internal, external, and third-party APIs, Cequence helps organizations keep up with API changes, uncovers sensitive data exposure, and identifies vulnerabilities and security risks including those in the OWASP API Security Top 10. Built-in API security testing enables organizations to test their pre-production and runtime APIs against specifications – and automatically generate them if specs are not available. API Security lays the groundwork to ensure that you are fully aware of the risks inherent in your API applications and enables you to remediate critical security issues before they are exploited by an attacker.


**Average Rating:** 4.6/5.0
**Total Reviews:** 55
**How Do G2 Users Rate Cequence Security?**

- **API Testing:** 8.4/10 (Category avg: 9.1/10)
- **API Monitoring:** 9.2/10 (Category avg: 8.8/10)

**Who Is the Company Behind Cequence Security?**

- **Seller:** [Cequence Security](https://www.g2.com/sellers/cequence-security)
- **Company Website:** https://www.cequence.ai/
- **Year Founded:** 2014
- **HQ Location:** Santa Clara, CA
- **Twitter:** @cequenceai (689 Twitter followers)
- **LinkedIn® Page:** https://www.linkedin.com/company/10510476 (154 employees on LinkedIn®)

**Who Uses This Product?**
- **Top Industries:** Telecommunications, Information Technology and Services
- **Company Size:** 40% Small-Business, 35% Enterprise


#### What Are Cequence Security's Pros and Cons?

**Pros:**

- Protection (9 reviews)
- Security (8 reviews)
- Time-Saving (5 reviews)
- Vulnerability Detection (4 reviews)
- API Management (3 reviews)

**Cons:**

- Complex Setup (9 reviews)
- Difficult Learning Curve (5 reviews)
- Slow Performance (3 reviews)
- Dashboard Performance (2 reviews)
- False Positives (2 reviews)


### What Do G2 Reviewers Say About Cequence Security?
*AI-generated summary from verified user reviews*

**Pros:**

- Users value Cequence Security for its **robust protection against sophisticated bot attacks** , enhancing overall security and response times.
- Users value Cequence Security for its **powerful detection and mitigation of sophisticated bot attacks** , enhancing overall security effectively.
- Users appreciate the **time-saving automation** of Cequence Security, significantly reducing manual efforts for threat management.
- Users value the **vulnerability detection** capabilities of Cequence Security, enhancing security with minimal disruption to legitimate users.
- Users value the **visibility and protection** Cequence Security offers for APIs, enhancing security and performance against threats.

**Cons:**

- Users find the **setup process complex** , requiring significant time and effort to optimize for niche security concerns.
- Users find the **difficult learning curve** of Cequence Security challenging, particularly with initial setup and fine-tuning complexities.
- Users experience **slow performance** with Cequence Security, especially when handling large data queries and retrieving detailed information.
- Users experience **dashboard performance lag** during large queries, which hinders quick decision-making in critical situations.
- Users are concerned about the **false positives** generated by Cequence Security, affecting the accuracy of threat detection.

#### What Are Recent G2 Reviews of Cequence Security?

**"[Mitigating and Secure our APIs](https://www.g2.com/survey_responses/cequence-security-review-12400189)"**

**Rating:** 5.0/5.0 stars
*— Owen P.*

[Read full review](https://www.g2.com/survey_responses/cequence-security-review-12400189)

---

**"[Reliable API Traffic Visibility and Bot Attack Protection](https://www.g2.com/survey_responses/cequence-security-review-12440501)"**

**Rating:** 4.0/5.0 stars
*— karthik k.*

[Read full review](https://www.g2.com/survey_responses/cequence-security-review-12440501)

---


#### What Are G2 Users Discussing About Cequence Security?

- [What is Cequence Security used for?](https://www.g2.com/discussions/what-is-cequence-security-used-for) - 1 comment

### 17. [Wallarm API Security Platform](https://www.g2.com/products/wallarm-api-security-platform/reviews)
Protect any API. In any environment. Against any threats. Wallarm is the platform security teams choose to protect cloud-native APIs. The Wallarm platform gives teams the ability to detect and block API attacks. Customers choose Wallarm because it delivers a complete inventory of their APIs, AI apps, and agentic AI, along with patented AI/ML API abuse detection, real-time blocking on day zero, and an API SOC-as-a-service. Whether you protect legacy or brand new cloud-native APIs, Wallarm’s multi-cloud platform delivers the capabilities to secure your business against emerging threats. -\&gt; Robust protection for the entire API and AI portfolio Mitigate the OWASP API Top 10 threats and more; business logic abuse, bad bots, account takeover (ATO), and more. Get the robust API protection that no other tool can provide. -\&gt; Native inline blocking Wallarm is built from the ground up for inline blocking. Why deploy API security that can’t actually defend against API attacks? -\&gt; Unparalleled visibility into malicious traffic Gain full insights about attacks and attackers in the responsive Wallarm Console. Enjoy the Dashboard, search, and reporting capabilities, including visibility into API sessions. -\&gt; Complete API inventory Wallarm API Discovery provides full visibility into all your APIs, AI apps, and AI agents, including sensitive data flows, risk posture, shadow APIs and change detection. -\&gt; Understand Your Attack Surface You can’t protect what you don’t know about. Wallarm provides a comprehensive view of your API attack surface, including assessment of security controls and leaked sensitive API data. -\&gt; Quick integrations Setup cross-team collaboration with seamless integrations to your SIEM/SOAR, messaging applications, and workflow management.


**Average Rating:** 4.7/5.0
**Total Reviews:** 92
**How Do G2 Users Rate Wallarm API Security Platform?**

- **API Testing:** 9.2/10 (Category avg: 9.1/10)
- **API Monitoring:** 9.1/10 (Category avg: 8.8/10)

**Who Is the Company Behind Wallarm API Security Platform?**

- **Seller:** [Wallarm](https://www.g2.com/sellers/wallarm)
- **Company Website:** https://wallarm.com/
- **Year Founded:** 2016
- **HQ Location:** San Francisco, California
- **Twitter:** @wallarm (3,197 Twitter followers)
- **LinkedIn® Page:** https://www.linkedin.com/company/4871419/ (178 employees on LinkedIn®)

**Who Uses This Product?**
- **Who Uses This:** CEO, CTO
- **Top Industries:** Mechanical or Industrial Engineering, Information Technology and Services
- **Company Size:** 44% Mid-Market, 42% Small-Business


#### What Are Wallarm API Security Platform's Pros and Cons?

**Pros:**

- Protection (3 reviews)
- Security (3 reviews)
- Threat Detection (3 reviews)
- Real-time Monitoring (2 reviews)
- Vulnerability Detection (2 reviews)

**Cons:**

- API Issues (1 reviews)
- Complex Configuration (1 reviews)
- Complexity (1 reviews)
- Complex Setup (1 reviews)
- Difficult Learning (1 reviews)


### What Do G2 Reviewers Say About Wallarm API Security Platform?
*AI-generated summary from verified user reviews*

**Pros:**

- Users value the **robust protection** provided by Wallarm API Security Platform, ensuring accurate real-time threat detection.
- Users value the **real-time API threat detection** of Wallarm, enjoying its accuracy and minimal false positives.
- Users appreciate the **accurate real-time API threat detection** of Wallarm, ensuring robust security with minimal false positives.
- Users value the **real-time monitoring** of Wallarm API Security Platform, ensuring accurate threat detection with minimal false positives.
- Users value the **accurate, real-time vulnerability detection** of Wallarm, ensuring strong API protection with minimal false positives.

**Cons:**

- Users find the **undisclosed pricing during the free trial** frustrating, impacting their decision-making for API threat detection.
- Users find the **configuration process complex and time-consuming** , particularly impacting new users&#39; experience with the platform.
- Users find the **configuration complexity** of Wallarm API Security Platform time-consuming, particularly impacting newcomers&#39; experience.
- Users find the **complex setup** of Wallarm API Security Platform challenging and time-consuming, particularly for newcomers.
- The **difficult learning** curve of Wallarm API Security Platform can be challenging for new users during setup and configuration.

#### What Are Recent G2 Reviews of Wallarm API Security Platform?

**"[API threat prevention](https://www.g2.com/survey_responses/wallarm-api-security-platform-review-10704584)"**

**Rating:** 5.0/5.0 stars
*— Alexander S.*

[Read full review](https://www.g2.com/survey_responses/wallarm-api-security-platform-review-10704584)

---

**"[Accurate Real-Time API Threat Detection with Minimal False Positives](https://www.g2.com/survey_responses/wallarm-api-security-platform-review-12169348)"**

**Rating:** 4.5/5.0 stars
*— Adesh  R.*

[Read full review](https://www.g2.com/survey_responses/wallarm-api-security-platform-review-12169348)

---


#### What Are G2 Users Discussing About Wallarm API Security Platform?

- [How has Wallarm API Security Platform supported your cybersecurity efforts, and what features do you rely on most?](https://www.g2.com/discussions/how-has-wallarm-api-security-platform-supported-your-cybersecurity-efforts-and-what-features-do-you-rely-on-most)
- [What is Wallarm API Security Platform used for?](https://www.g2.com/discussions/what-is-wallarm-api-security-platform-used-for)

### 18. [Levo.ai](https://www.g2.com/products/levo-ai/reviews)
APIs are no longer technical plumbing. They are the foundation of modern business, powering customer experiences, partner ecosystems, and digital revenue streams. But with that centrality comes risk. Unsecured APIs are now the leading cause of breaches, compliance failures, and stalled innovation. Levo exists to change this. We are the first platform to deliver true end-to-end API Security. From continuous discovery and automated documentation to exploit aware testing, policy-driven monitoring, passive detection, and inline protection, Levo covers every phase of the API lifecycle. Our architecture was designed from first principles: 1. Privacy preserving architecture: no sensitive data leaves your environment. 2. Cost efficient: lightweight sensors that run on minimal compute, saving enterprises hundreds of thousands in inflated cloud costs. 3. Developer aligned: seamless workflows that integrate directly into CI/CD, removing friction instead of adding it. This foundation gives enterprises something legacy tools never could: clarity across every API, precision in detecting real risks, and the confidence to block attacks without breaking business. With Levo, security does not slow down APIs. It scales them, safely, compliantly, and at the speed of modern business. Our vision is simple: a world where security and growth are never tradeoffs.


**Average Rating:** 4.8/5.0
**Total Reviews:** 13
**How Do G2 Users Rate Levo.ai?**

- **API Testing:** 9.8/10 (Category avg: 9.1/10)
- **API Monitoring:** 10.0/10 (Category avg: 8.8/10)

**Who Is the Company Behind Levo.ai?**

- **Seller:** [Levo](https://www.g2.com/sellers/levo-fed6d6f5-ba0b-4b0c-9a31-6bfb424af86c)
- **Year Founded:** 2021
- **HQ Location:** San Francisco, US
- **Twitter:** @levoinchq (104 Twitter followers)
- **LinkedIn® Page:** https://www.linkedin.com/company/levo-inc (32 employees on LinkedIn®)

**Who Uses This Product?**
- **Company Size:** 54% Mid-Market, 46% Small-Business


#### What Are Levo.ai's Pros and Cons?

**Pros:**

- API Management (5 reviews)
- Features (4 reviews)
- Security (4 reviews)
- Visibility (4 reviews)
- Automation (3 reviews)

**Cons:**

- Difficult Learning Curve (2 reviews)
- Poor Integration (2 reviews)
- Complex Setup (1 reviews)
- Integration Issues (1 reviews)
- Training Required (1 reviews)


### What Do G2 Reviewers Say About Levo.ai?
*AI-generated summary from verified user reviews*

**Pros:**

- Users highlight the **advanced API visibility and security** of Levo.ai, enhancing their zero-trust security posture effectively.
- Users commend Levo.ai for its **real-time security and unified visibility** , enhancing safety across APIs and AI agents seamlessly.
- Users value the **advanced security measures** of Levo.ai, offering precise visibility and automation for API protection.
- Users praise Levo.ai for its **unified visibility** across APIs, enhancing security and workflow efficiency significantly.
- Users value the **automation** in Levo.ai, allowing for effortless identification and remediation of security issues.

**Cons:**

- Users find the **difficult learning curve** of Levo.ai daunting, especially for those new to observability and security tools.
- Users desire improved **integration with observability dashboards** and workflows to enhance usability and functionality.
- Users find the **complex setup** of Levo.ai challenging, especially for non-technical team members adjusting to the tool.
- Users note that **integration issues** arise due to limited compatibility with existing SIEM and SOAR workflows.
- Users find the **steep learning curve** of Levo.ai challenging for teams not familiar with observability and security tools.

#### What Are Recent G2 Reviews of Levo.ai?

**"[Strong, Autonomous API Security Platform with Easy Deployment](https://www.g2.com/survey_responses/levo-ai-review-12444556)"**

**Rating:** 4.5/5.0 stars
*— Verified User in Computer &amp; Network Security*

[Read full review](https://www.g2.com/survey_responses/levo-ai-review-12444556)

---

**"[Best Platform for API and agent security in once place](https://www.g2.com/survey_responses/levo-ai-review-11963084)"**

**Rating:** 5.0/5.0 stars
*— Prasad P.*

[Read full review](https://www.g2.com/survey_responses/levo-ai-review-11963084)

---



### 19. [Tenable Nessus](https://www.g2.com/products/tenable-nessus/reviews)
Built for security practitioners, by security professionals, Nessus products by Tenable are the de-facto industry standard for vulnerability assessment. Nessus performs point-in-time assessments to help security professionals quickly and easily identify and fix vulnerabilities, including software flaws, missing patches, malware, and misconfigurations - across a variety of operating systems, devices, and applications. With features such as pre-built policies and templates, customizable reporting, group “snooze” functionality, and real-time updates, Nessus is designed to make vulnerability assessment simple, easy, and intuitive. The result: less time and effort to assess, prioritize, and remediate issues.


**Average Rating:** 4.5/5.0
**Total Reviews:** 289

**Who Is the Company Behind Tenable Nessus?**

- **Seller:** [Tenable](https://www.g2.com/sellers/tenable)
- **Company Website:** https://www.tenable.com/
- **HQ Location:** Columbia, MD
- **Twitter:** @TenableSecurity (87,752 Twitter followers)
- **LinkedIn® Page:** https://www.linkedin.com/company/25452/ (2,350 employees on LinkedIn®)
- **Ownership:** NASDAQ: TENB

**Who Uses This Product?**
- **Who Uses This:** Security Engineer, Network Engineer
- **Top Industries:** Information Technology and Services, Computer &amp; Network Security
- **Company Size:** 40% Mid-Market, 34% Enterprise


#### What Are Tenable Nessus's Pros and Cons?

**Pros:**

- Vulnerability Identification (20 reviews)
- Vulnerability Detection (18 reviews)
- Ease of Use (16 reviews)
- Automated Scanning (15 reviews)
- Features (13 reviews)

**Cons:**

- Slow Scanning (7 reviews)
- Expensive (6 reviews)
- Limited Features (6 reviews)
- Complexity (5 reviews)
- False Positives (5 reviews)


### What Do G2 Reviewers Say About Tenable Nessus?
*AI-generated summary from verified user reviews*

**Pros:**

- Users commend Tenable Nessus for its **effective vulnerability identification** , enhancing their ability to manage security risks efficiently.
- Users value the **advanced vulnerability detection** capabilities of Nessus, enabling quick responses to security risks.
- Users find Tenable Nessus **easy to use** , appreciating its straightforward setup and clean, user-friendly interface.
- Users value the **automated scanning capabilities** of Tenable Nessus, appreciating its thoroughness and comprehensive reports.
- Users appreciate the **better and more complete scanning** of assets, enjoying powerful reporting and automation features.

**Cons:**

- Users experience **slow scanning** times, particularly in large environments, impacting productivity and requiring downtime.
- Users find Tenable Nessus **expensive to maintain** , which can be a significant drawback for many organizations.
- Users find the **limited features** of Tenable Nessus restrict operational capabilities, particularly in user access and scanning.
- Users find the **complexity** of Tenable Nessus challenging, requiring significant technical knowledge and advanced licensing for effective use.
- Users experience **false positives** with Tenable Nessus, leading to unnecessary workloads for security teams during scans.

#### What Are Recent G2 Reviews of Tenable Nessus?

**"[Reliable and Efficient Vulnerability Management Tool](https://www.g2.com/survey_responses/tenable-nessus-review-12989192)"**

**Rating:** 5.0/5.0 stars
*— Mohsin H.*

[Read full review](https://www.g2.com/survey_responses/tenable-nessus-review-12989192)

---

**"[Self-Contained Nessus Scanning with Full Control in Offline Environments](https://www.g2.com/survey_responses/tenable-nessus-review-12937668)"**

**Rating:** 4.0/5.0 stars
*— Verified User in Higher Education*

[Read full review](https://www.g2.com/survey_responses/tenable-nessus-review-12937668)

---


#### What Are G2 Users Discussing About Tenable Nessus?

- [What is Nessus used for?](https://www.g2.com/discussions/what-is-nessus-used-for) - 1 comment
- [What types of vulnerabilities are scanned by Nessus?](https://www.g2.com/discussions/what-types-of-vulnerabilities-are-scanned-by-nessus)
- [Is there a free version of Nessus?](https://www.g2.com/discussions/is-there-a-free-version-of-nessus) - 2 comments
- [What is an advantage of using Nessus?](https://www.g2.com/discussions/what-is-an-advantage-of-using-nessus)
- [What does Nessus scan for?](https://www.g2.com/discussions/what-does-nessus-scan-for) - 1 comment

### 20. [StackHawk](https://www.g2.com/products/stackhawk/reviews)
StackHawk is reimagining AppSec for AI-driven development, where applications are built faster than traditional AppSec tools can keep up. Our AppSec Intelligence Platform combines scalable runtime testing with complete attack surface discovery from source code. We integrate directly into development workflows and provide context-aware remediations to developers, enabling teams to find and fix exploitable vulnerabilities before they reach production. With real-time visibility and centralized program intelligence, AppSec teams can prioritize testing and fixing what matters. Companies like British Airways, ITV, and Norstella trust StackHawk to evaluate application risk, prove program value, and scale testing coverage to match development velocity.


**Average Rating:** 4.6/5.0
**Total Reviews:** 67
**How Do G2 Users Rate StackHawk?**

- **API Testing:** 8.9/10 (Category avg: 9.1/10)
- **API Monitoring:** 9.1/10 (Category avg: 8.8/10)

**Who Is the Company Behind StackHawk?**

- **Seller:** [StackHawk](https://www.g2.com/sellers/stackhawk)
- **Company Website:** https://stackhawk.com
- **Year Founded:** 2019
- **HQ Location:** Denver, CO
- **Twitter:** @StackHawk (1,137 Twitter followers)
- **LinkedIn® Page:** https://www.linkedin.com/company/40780406/ (34 employees on LinkedIn®)

**Who Uses This Product?**
- **Top Industries:** Information Technology and Services, Computer Software
- **Company Size:** 46% Small-Business, 35% Mid-Market


#### What Are StackHawk's Pros and Cons?

**Pros:**

- Easy Integrations (4 reviews)
- Customer Support (3 reviews)
- Customizability (3 reviews)
- Efficiency Improvement (3 reviews)
- Scanning Efficiency (3 reviews)

**Cons:**

- Complex Setup (3 reviews)
- High Learning Curve (3 reviews)
- Lacking Features (3 reviews)
- Limited Scope (3 reviews)
- Setup Complexity (3 reviews)


### What Do G2 Reviewers Say About StackHawk?
*AI-generated summary from verified user reviews*

**Pros:**

- Users appreciate the **easy integrations** of StackHawk, enhancing their CI/CD pipelines with seamless configuration.
- Users commend StackHawk&#39;s **exceptional customer support** , highlighting their expertise and thorough onboarding process for seamless integration.
- Users value the **customizability** of StackHawk, enabling tailored workflows and seamless integration within diverse environments.
- Users value the **efficiency improvements** from StackHawk, seamlessly integrating into workflows and enhancing productivity without delays.
- Users commend StackHawk for its **scanning efficiency** , noting impressive speed and seamless integration into development processes.

**Cons:**

- Users find the **complex setup** of StackHawk frustrating due to inadequate documentation and required collaboration for configurations.
- Users face a **high learning curve** with StackHawk due to its code-centric approach and lack of intuitive setup.
- Users note the **lack of features** in StackHawk, particularly regarding API management and vulnerability handling.
- Users find StackHawk&#39;s **limited scope** restricts usage and hinders customization, impacting overall effectiveness and user experience.
- Users find the **setup complexity** of StackHawk frustrating, requiring extensive trial and error for configuration.

#### What Are Recent G2 Reviews of StackHawk?

**"[StackHawk is a great DAST security tool](https://www.g2.com/survey_responses/stackhawk-review-10761348)"**

**Rating:** 5.0/5.0 stars
*— David M.*

[Read full review](https://www.g2.com/survey_responses/stackhawk-review-10761348)

---

**"[A Game-Changer for DevSecOps](https://www.g2.com/survey_responses/stackhawk-review-8847655)"**

**Rating:** 5.0/5.0 stars
*— Todd L.*

[Read full review](https://www.g2.com/survey_responses/stackhawk-review-8847655)

---


#### What Are G2 Users Discussing About StackHawk?

- [What is StackHawk used for?](https://www.g2.com/discussions/what-is-stackhawk-used-for)

### 21. [Traceable AI](https://www.g2.com/products/traceable-ai/reviews)
Traceable is the industry’s leading API Security company that helps organizations protect their digital systems and assets in a cloud-first world where everything is interconnected. Traceable is the only intelligent and context-aware platform that powers complete API security. Security Posture Management: Traceable helps organizations dramatically improve their security posture with a real time, risk ranked catalog of all APIs in their ecosystem, conformance analysis, identification of shadow and orphaned APIs, and visibility of sensitive data flows. RunTime Threat Protection: Traceable observes user level transactions and applies mature machine learning algorithms to discover anomalous transactions, alert the security team, and block attacks at the user level. Threat management and analytics: Traceable helps organizations analyze attacks and incidents with its API data lake, which provides rich historical data of nominal and malicious traffic. API Security Testing throughout the SDLC: Traceable connects the security lifecycle together with the DevOps lifecycle providing automated API Security tests to be run within the CI pipeline. Digital Fraud Prevention: Traceable brings together its broad and deep data collection over time and cutting edge machine learning to identify fraud across all API transactions


**Average Rating:** 4.7/5.0
**Total Reviews:** 23
**How Do G2 Users Rate Traceable AI?**

- **API Testing:** 8.9/10 (Category avg: 9.1/10)
- **API Monitoring:** 9.8/10 (Category avg: 8.8/10)

**Who Is the Company Behind Traceable AI?**

- **Seller:** [Harness](https://www.g2.com/sellers/harness-25016f40-e80f-4417-bea8-39412055d17a)
- **Company Website:** https://harness.io/
- **Year Founded:** 2018
- **HQ Location:** San Francisco
- **Twitter:** @HarnessWealth (1,389 Twitter followers)
- **LinkedIn® Page:** https://www.linkedin.com/company/harnessinc/ (1,701 employees on LinkedIn®)

**Who Uses This Product?**
- **Top Industries:** Financial Services
- **Company Size:** 70% Enterprise, 17% Mid-Market


#### What Are Traceable AI's Pros and Cons?

**Pros:**

- Customer Support (11 reviews)
- Security (8 reviews)
- Setup Ease (4 reviews)
- API Management (3 reviews)
- Customization (2 reviews)

**Cons:**

- Limited Features (3 reviews)
- False Positives (2 reviews)
- Inefficiency (2 reviews)
- Poor Documentation (2 reviews)
- Poor Reporting (2 reviews)


### What Do G2 Reviewers Say About Traceable AI?
*AI-generated summary from verified user reviews*

**Pros:**

- Users commend the **outstanding customer support** from Traceable AI, providing quick and effective assistance with complex UI issues.
- Users highlight the **exceptional security capabilities** of Traceable AI, effectively protecting APIs and detecting vulnerabilities early.
- Users find the **setup easy** , allowing for quick deployment and immediate insights into API vulnerabilities.
- Users value the **robust API management** features of Traceable AI, enabling effective monitoring and testing of their APIs.
- Users appreciate the **flexibility and customization** of Traceable AI, enhancing their operational experience and security measures.

**Cons:**

- Users note **limited features** in Traceable AI, expressing a desire for enhancements in usability and customization options.
- Users find it challenging to manage **false positives** , as it requires more effort than anticipated for effective resolution.
- Users experience **inefficiency** with the update process and data transmission, leading to increased costs and complications.
- Users find the **poor documentation** frustrating, as it lacks coverage for complex use cases and necessary integrations.
- Users express concerns about **poor reporting** , citing limitations in historical data and a need for improvement.

#### What Are Recent G2 Reviews of Traceable AI?

**"[Very functional views of what happening](https://www.g2.com/survey_responses/traceable-ai-review-8478937)"**

**Rating:** 4.0/5.0 stars
*— Tarik G.*

[Read full review](https://www.g2.com/survey_responses/traceable-ai-review-8478937)

---

**"[Traceable](https://www.g2.com/survey_responses/traceable-ai-review-8451937)"**

**Rating:** 4.0/5.0 stars
*— Scott B.*

[Read full review](https://www.g2.com/survey_responses/traceable-ai-review-8451937)

---



### 22. [Edgescan](https://www.g2.com/products/edgescan/reviews)
What Is Edgescan? Edgescan is a cybersecurity company that helps organizations proactively identify, validate, and prioritize vulnerabilities across their applications, API’s and digital landscape. The company specializes in continuous vulnerability assessment, automated penetration testing, Attack Surface Management and Penetration Testing as a Service (PTaaS). Edgescan combines advanced automation with certified security experts, including professionals holding credentials such as CREST and OSCP, to deliver highly accurate and actionable security testing. This hybrid approach allows organizations to move beyond traditional point-in-time penetration tests and operate a continuous proactive cybersecurity program. The Edgescan platform is designed primarily for web application and API security, enabling organizations to continuously assess their attack surface and identify vulnerabilities throughout the development lifecycle but also delivers “full stack” coverage to detect host layer CVE’s. With a client retention rate of over 90%, Edgescan has built long-term partnerships by delivering measurable improvements in security efficiency, risk visibility, and vulnerability management. Key Features and Capabilities of Edgescan Automated Penetration Testing Edgescan uses intelligent automation to continuously assess applications, APIs, hosts, and cloud environments for vulnerabilities. This enables frequent, scalable security testing across modern and distributed architectures. Human‑Validated Testing Findings are reviewed and manually validated by certified security experts to eliminate false positives and provide deeper insight into real‑world exploitability. Each result is accurate, contextual, and actionable. Penetration Testing as a Service (PTaaS) Edgescan’s PTaaS model extends beyond automated testing by allowing expert testers to focus on vulnerabilities that require human analysis, including: • Business logic flaws • Authentication and authorization weaknesses • Context-dependent exposures • Complex attack chains and privilege escalation paths Cyber Analytics and AI‑Assisted Validation AI-driven analysis enhances detection, verifies exploitability, and increases accuracy. This reduces noise and gives security teams a clearer picture of genuine threats. Integrated Threat Intelligence Edgescan correlates vulnerabilities with real-world threat intelligence, including known exploits and ransomware activity to help organizations prioritize the most dangerous exposures first. Risk‑Based Prioritization Findings are prioritized based on exploitability, severity, threat context, and business impact, ensuring teams focus on the issues that matter most. Primary Value: What Edgescan Solves for Clients Edgescan enables organizations to shift from reactive vulnerability management to a continuous, proactive security model. Traditional scanners and periodic penetration tests frequently produce large volumes of unvalidated findings. This creates noise and forces security teams to spend hours determining which issues are real and critical. Edgescan solves this by combining: Automation for continuous testing Human expertise for validation and complex analysis Cyber analytics and AI for accuracy and prioritization Key Benefits Significant efficiency gains: reducing thousands of hours spent on manual validation. Higher accuracy, thanks to expert‑validated findings and reduced false positives. Clear prioritization, using threat intelligence and ransomware insights to highlight the highest‑risk exposures. Continuous security improvement, enabling rapid detection, faster remediation, and scalable vulnerability management. By unifying automation, human expertise, AI, and threat intelligence, Edgescan empowers organizations to maintain a continuous cybersecurity program that strengthens overall security posture while dramatically reducing operational burden.


**Average Rating:** 4.7/5.0
**Total Reviews:** 51
**How Do G2 Users Rate Edgescan?**

- **API Testing:** 8.8/10 (Category avg: 9.1/10)
- **API Monitoring:** 8.9/10 (Category avg: 8.8/10)

**Who Is the Company Behind Edgescan?**

- **Seller:** [Edgescan](https://www.g2.com/sellers/edgescan)
- **Company Website:** https://www.edgescan.com
- **Year Founded:** 2017
- **HQ Location:** Dublin, Dublin
- **Twitter:** @edgescan (2,256 Twitter followers)
- **LinkedIn® Page:** https://www.linkedin.com/company/2928425/ (88 employees on LinkedIn®)

**Who Uses This Product?**
- **Top Industries:** Information Technology and Services, Computer Software
- **Company Size:** 32% Enterprise, 32% Mid-Market


#### What Are Edgescan's Pros and Cons?

**Pros:**

- Ease of Use (25 reviews)
- Vulnerability Detection (24 reviews)
- Customer Support (19 reviews)
- Vulnerability Identification (19 reviews)
- Features (18 reviews)

**Cons:**

- Complex UI (5 reviews)
- Limited Customization (5 reviews)
- Poor Interface Design (5 reviews)
- Slow Performance (5 reviews)
- UX Improvement (5 reviews)


### What Do G2 Reviewers Say About Edgescan?
*AI-generated summary from verified user reviews*

**Pros:**

- Users appreciate Edgescan&#39;s **ease of use** , facilitating quick navigation and straightforward vulnerability management for all stakeholders.
- Users value the **automated vulnerability detection** features of Edgescan, enhancing security assessments and remediation efficiency.
- Users commend Edgescan&#39;s **excellent customer support** , highlighting its proactivity and responsiveness whenever needed.
- Users value the **automated vulnerability identification** features of Edgescan, enhancing security assessments and facilitating efficient risk management.
- Users value the **intuitive interface and comprehensive features** of Edgescan, enhancing security assessment efficiency and clarity.

**Cons:**

- Users find the **complex UI** challenging initially, with navigation and settings difficult to locate.
- Users find **limited customization options** in Edgescan, affecting how they can tailor the platform to their needs.
- Users find the **poor interface design** limits usability, making navigation and data access challenging.
- Users experience **slow performance** with Edgescan due to manual validation, causing longer scan completion times.
- Users find the **UI not user friendly** , noting its antiquated design and lack of intuitive navigation.

#### What Are Recent G2 Reviews of Edgescan?

**"[Edgescan: Easy Setup, Clear Insights, and Expert Security Support](https://www.g2.com/survey_responses/edgescan-review-12224347)"**

**Rating:** 5.0/5.0 stars
*— Matt W.*

[Read full review](https://www.g2.com/survey_responses/edgescan-review-12224347)

---

**"[Edgescan Is Amazing!](https://www.g2.com/survey_responses/edgescan-review-11014532)"**

**Rating:** 5.0/5.0 stars
*— Greg S.*

[Read full review](https://www.g2.com/survey_responses/edgescan-review-11014532)

---


#### What Are G2 Users Discussing About Edgescan?

- [What is edgescan used for?](https://www.g2.com/discussions/what-is-edgescan-used-for) - 1 comment

### 23. [Akto API Security Platform](https://www.g2.com/products/akto-api-security-platform/reviews)
Akto is a trusted platform for application security and product security teams to build an enterprise-grade API security program throughout their DevSecOps pipeline. Our industry-leading suite of — API discovery, API security posture management, sensitive data exposure, and API security testing solutions enables organizations to gain visibility in their API security posture. 1,000+ Application Security teams globally trust Akto for their API security needs. Akto use cases: 1. API Discovery 2. API Security Testing in CI/CD 3. API Security Posture Management 4. Authentication and Authorization Testing 5. Sensitive data Exposure 6. Shift left in DevSecOps


**Average Rating:** 4.5/5.0
**Total Reviews:** 54
**How Do G2 Users Rate Akto API Security Platform?**

- **API Testing:** 8.8/10 (Category avg: 9.1/10)
- **API Monitoring:** 9.0/10 (Category avg: 8.8/10)

**Who Is the Company Behind Akto API Security Platform?**

- **Seller:** [Akto.io](https://www.g2.com/sellers/akto-io)
- **Company Website:** https://www.akto.io
- **Year Founded:** 2022
- **HQ Location:** San Francisco, California
- **Twitter:** @Aktodotio (1,357 Twitter followers)
- **LinkedIn® Page:** https://www.linkedin.com/company/akto-io/ (29 employees on LinkedIn®)

**Who Uses This Product?**
- **Top Industries:** Financial Services, Information Technology and Services
- **Company Size:** 44% Mid-Market, 40% Small-Business


#### What Are Akto API Security Platform's Pros and Cons?

**Pros:**

- Ease of Use (22 reviews)
- API Testing (20 reviews)
- Automation Testing (19 reviews)
- API Management (17 reviews)
- Security (17 reviews)

**Cons:**

- Complex Setup (9 reviews)
- Poor Documentation (8 reviews)
- API Issues (7 reviews)
- Complexity (7 reviews)
- Setup Complexity (7 reviews)


### What Do G2 Reviewers Say About Akto API Security Platform?
*AI-generated summary from verified user reviews*

**Pros:**

- Users appreciate the **ease of use** of Akto API Security Platform, enabling quick setup and effective security assessments.
- Users praise Akto for its **easy API security testing integration** , seamlessly fitting into CI/CD pipelines and enhancing efficiency.
- Users appreciate the **automation testing** capabilities of Akto, which streamline API security and save valuable time.
- Users appreciate the **seamless API integration** of Akto, enabling effortless security testing and quick detection of vulnerabilities.
- Users appreciate the **robust security features** of Akto, which efficiently identify and resolve API vulnerabilities.

**Cons:**

- Users find the **complex setup** challenging, requiring detailed documentation and YAML expertise, which can hinder usability.
- Users find the **documentation poor** , making it challenging to configure advanced features effectively.
- Users find that **API issues** hinder their experience, particularly due to a steep learning curve and complex configurations.
- Users note the **complexity of understanding API security concepts** , which can make the initial experience challenging for newcomers.
- Users find the **setup complexity** challenging, particularly with advanced configurations and limited documentation, despite helpful support.

#### What Are Recent G2 Reviews of Akto API Security Platform?

**"[Easy to Use API Security Tool That Helps Save Time](https://www.g2.com/survey_responses/akto-api-security-platform-review-11240428)"**

**Rating:** 4.5/5.0 stars
*— ashish d.*

[Read full review](https://www.g2.com/survey_responses/akto-api-security-platform-review-11240428)

---

**"[Easy to Implement, Clear API Security Visibility, and Responsive Support](https://www.g2.com/survey_responses/akto-api-security-platform-review-12272742)"**

**Rating:** 4.5/5.0 stars
*— Verified User in Information Technology and Services*

[Read full review](https://www.g2.com/survey_responses/akto-api-security-platform-review-12272742)

---



### 24. [APPCHECK](https://www.g2.com/products/appcheck/reviews)
AppCheck is a Dynamic Application Security Testing (DAST) and network vulnerability testing solution, developed and supported by experienced penetration testers. We approach security testing as a hacker would, leveraging multiple proprietary crawling engines to analyse target behaviour across both modern and traditional technologies, including Single Page Applications (SPAs), APIs, and complex authentication flows such as SSO, 2FA, and TOTP. Organisations can conduct unlimited security assessments across Web Applications, SPAs, APIs, cloud services, networks, across internal or external assets. Supporting production and UAT testing, AppCheck also helps organisations ‘shift left’ by integrating with CI/CD pipelines and build servers, including ADO, GitHub, Jenkins, TeamCity, CircleCI, TravisCI, Bamboo, and GitLab CI/CD. Allowing automated security testing throughout development, identifying risks as soon as changes are introduced. AppCheck are proud to be part of the CVE Numbering Authority (CNA), contributing to global security research


**Average Rating:** 4.6/5.0
**Total Reviews:** 67
**How Do G2 Users Rate APPCHECK?**

- **API Testing:** 9.4/10 (Category avg: 9.1/10)
- **API Monitoring:** 9.2/10 (Category avg: 8.8/10)

**Who Is the Company Behind APPCHECK?**

- **Seller:** [APPCHECK](https://www.g2.com/sellers/appcheck)
- **Company Website:** https://www.appcheck-ng.com
- **Year Founded:** 2014
- **HQ Location:** Leeds, GB
- **Twitter:** @AppcheckNG (649 Twitter followers)
- **LinkedIn® Page:** https://www.linkedin.com/company/appcheck-ng-ltd/ (106 employees on LinkedIn®)

**Who Uses This Product?**
- **Top Industries:** Computer Software, Information Technology and Services
- **Company Size:** 49% Mid-Market, 30% Small-Business


#### What Are APPCHECK's Pros and Cons?

**Pros:**

- Ease of Use (5 reviews)
- Vulnerability Detection (5 reviews)
- Features (4 reviews)
- Pentesting Efficiency (4 reviews)
- Scanning Efficiency (4 reviews)

**Cons:**

- UX Improvement (2 reviews)
- API Issues (1 reviews)
- Difficult Customization (1 reviews)
- Difficult Learning Curve (1 reviews)
- False Positives (1 reviews)


### What Do G2 Reviewers Say About APPCHECK?
*AI-generated summary from verified user reviews*

**Pros:**

- Users value the **ease of use** of APPCHECK, making complex processes simple to complete efficiently.
- Users commend **effective vulnerability detection** with AppCheck, providing actionable insights for improved security and integration.
- Users highly value the **excellent pricing and functionality** of AppCheck, enhancing security management for web applications.
- Users value the **high pentesting efficiency** of AppCheck, enhancing security while reducing the need for manual testing.
- Users value the **scanning efficiency** of AppCheck, appreciating actionable reports and seamless integration with CI/CD pipelines.

**Cons:**

- Users feel there is **room for improvement in UX** , particularly regarding scoring, customization, and scan templates.
- Users find the **API endpoint changes cumbersome** , requiring a service request, but appreciate the responsiveness to feedback.
- Users find **difficult customization** options in AppCheck, limiting their ability to tailor reports and improve context.
- Users acknowledge a **difficult learning curve** with Appcheck, but ultimately find the product to be very good.
- Users find the **need for manual validation due to false positives** to be a significant drawback in APPCHECK.

#### What Are Recent G2 Reviews of APPCHECK?

**"[Effortless Vulnerability Management with APPCHECK](https://www.g2.com/survey_responses/appcheck-review-12463853)"**

**Rating:** 5.0/5.0 stars
*— Aaron H.*

[Read full review](https://www.g2.com/survey_responses/appcheck-review-12463853)

---

**"[Great onboarding experience and trial](https://www.g2.com/survey_responses/appcheck-review-11771398)"**

**Rating:** 4.0/5.0 stars
*— Tyler S.*

[Read full review](https://www.g2.com/survey_responses/appcheck-review-11771398)

---



### 25. [Beagle Security](https://www.g2.com/products/beagle-security/reviews)
Beagle Security helps you identify vulnerabilities in your web applications, APIs, GraphQL and remediate them with actionable insights before hackers harm you in any manner. With Beagle Security, you can integrate automated penetration testing into your CI/CD pipeline to identify security issues earlier in your development lifecycle and ship safer web applications. Major features: - Checks your web apps &amp; APIs for 3000+ test cases to find security loopholes - OWASP &amp; SANS standards - Recommendations to address security issues - Security test complex web apps with login - Compliance reports (GDPR, HIPAA &amp; PCI DSS) - Test scheduling - DevSecOps integrations - API integration - Team access - Integrations with popular tools like Slack, Jira, Asana, Trello &amp; 100+ other tools


**Average Rating:** 4.7/5.0
**Total Reviews:** 85
**How Do G2 Users Rate Beagle Security?**

- **API Testing:** 10.0/10 (Category avg: 9.1/10)
- **API Monitoring:** 3.3/10 (Category avg: 8.8/10)

**Who Is the Company Behind Beagle Security?**

- **Seller:** [Beagle Security](https://www.g2.com/sellers/beagle-security)
- **Year Founded:** 2020
- **HQ Location:** San Francisco, US
- **Twitter:** @beaglesecure (206 Twitter followers)
- **LinkedIn® Page:** https://www.linkedin.com/company/beaglesecurity/ (50 employees on LinkedIn®)

**Who Uses This Product?**
- **Who Uses This:** Director, CEO
- **Top Industries:** Marketing and Advertising, Information Technology and Services
- **Company Size:** 91% Small-Business, 7% Mid-Market


#### What Are Beagle Security's Pros and Cons?

**Pros:**

- Reporting Quality (1 reviews)
- Setup Ease (1 reviews)



### What Do G2 Reviewers Say About Beagle Security?
*AI-generated summary from verified user reviews*

**Pros:**

- Users appreciate the **attractive and comprehensive reporting** of Beagle Security, making configuration easy and effective.
- Users love the **setup ease** of Beagle Security, finding it simple and efficient to configure.


#### What Are Recent G2 Reviews of Beagle Security?

**"[Comprehensive Security Testing with Actionable Insights](https://www.g2.com/survey_responses/beagle-security-review-12619693)"**

**Rating:** 5.0/5.0 stars
*— Nkosinathi T.*

[Read full review](https://www.g2.com/survey_responses/beagle-security-review-12619693)

---

**"[Very thorough service that gives us good Ci/CD assurance between Pen Tests](https://www.g2.com/survey_responses/beagle-security-review-11354043)"**

**Rating:** 5.0/5.0 stars
*— Matt B.*

[Read full review](https://www.g2.com/survey_responses/beagle-security-review-11354043)

---


#### What Are G2 Users Discussing About Beagle Security?

- [How has Beagle Security enhanced your web security, and what features would you like to see added?](https://www.g2.com/discussions/how-has-beagle-security-enhanced-your-web-security-and-what-features-would-you-like-to-see-added)
- [What is Beagle Security used for?](https://www.g2.com/discussions/what-is-beagle-security-used-for) - 1 comment


## What Is API Security Tools?

[Cloud Security Software](https://www.g2.com/categories/cloud-security)

## What Software Categories Are Similar to API Security Tools?

- [Vulnerability Scanner Software](https://www.g2.com/categories/vulnerability-scanner)
- [Penetration Testing Tools](https://www.g2.com/categories/penetration-testing-tools)
- [Dynamic Application Security Testing (DAST) Software](https://www.g2.com/categories/dynamic-application-security-testing-dast)


