Scans are thorough, easily distributed. Branding. Perceived integration. Review collected by and hosted on G2.com.
Returns many false positives - for example identifies any variable with the name 'key' as a stored encryption key violation. Doesn't understand the context of code, or entry points for an exploit. Cumbersome in execution (will monopolize a machine's resources while running). Review collected by and hosted on G2.com.



