# Snyk Reviews
**Vendor:** Snyk  
**Category:** [Software Composition Analysis Tools](https://www.g2.com/categories/software-composition-analysis)  
**Average Rating:** 4.5/5.0  
**Total Reviews:** 132
## About Snyk
Snyk (pronounced sneak) is a developer security platform for securing custom code, open source dependencies, containers, and cloud infrastructure all from a single platform. Snyk’s developer security solutions enable modern applications to be built securely, empowering developers to own and build security for the whole application, from code &amp; open source to containers &amp; cloud infrastructure. Secure while you code in your IDE: find issues quickly using the scanner, fix issues easily with remediation advice, verify the updated code. Integrate your source code repositories to secure applications: integrate a repository to find issues, prioritize with context, fix &amp; merge. Secure your containers as you build, throughout the SDLC: start fixing containers as soon as your write a Dockerfile, continuously monitor container images throughout their lifecycle, and prioritize with context. Secure build and deployment pipelines: Integrate natively with your CI/CD tool, configure your rules, find &amp; fix issues in your application, and monitor your applications. Secure your apps quickly with Snyk’s vulnerability scanning and automated fixes - Try for Free!



## Snyk Pros & Cons
**What users like:**

- Users appreciate Snyk&#39;s **efficient vulnerability detection** that significantly speeds up issue validation and enhances code security. (3 reviews)
- Users commend Snyk for its **effective vulnerability identification** , enabling quick mitigation and efficient DevOps workflows. (3 reviews)
- Users appreciate the **easy integration setup** of Snyk, facilitating seamless vulnerability detection in CI/CD workflows. (2 reviews)
- Users value Snyk&#39;s **intuitive GUI and customizability** , which simplify vulnerability management for development teams. (2 reviews)
- Users value the **easy integration** with Snyk, enhancing the developer experience in managing vulnerabilities effectively. (2 reviews)
- Remediation Guidance (2 reviews)
- Remediation Solutions (2 reviews)
- Scanning Efficiency (2 reviews)
- Threat Detection (2 reviews)
- User Interface (2 reviews)

**What users dislike:**

- Users often face **false positives** from Snyk, which can disrupt project workflows and slow down the pipeline. (2 reviews)
- Users find the **poor interface design** of Snyk frustrating and feel it lacks integration and polish. (2 reviews)
- Users often experience **false positives and slow scanning times** , impacting efficiency and requiring additional tools for code quality. (2 reviews)
- Users report **false positives and slow scans** that hinder efficiency, alongside integration issues with Snyk&#39;s DAST product. (2 reviews)
- Users feel the **separate interface for DAST** and limited secret detection capabilities hinder integration and code quality focus. (1 reviews)
- Dashboard Issues (1 reviews)
- Dashboard Usability (1 reviews)
- Expensive (1 reviews)
- Integration Issues (1 reviews)
- Limited Cloud Integration (1 reviews)

## Snyk Reviews
  ### 1. Seamless Dev-First Security with Fast Scans and Actionable Fixes

**Rating:** 4.5/5.0 stars

**Reviewed by:** Prateek J. | DevSecOps Architect, Mid-Market (51-1000 emp.)

**Reviewed Date:** April 23, 2026

**What do you like best about Snyk?**

What I like best about Snyk is how it integrates security into the developer workflow without disrupting it. The VS Code and JetBrains plugins give real-time vulnerability feedback as I write code, cutting remediation time significantly. Instead of just flagging a CVE, Snyk tells you exactly which version to upgrade to and often opens a fix PR automatically, saving hours of manual cross-referencing. The dependency graph makes transitive vulnerabilities easy to understand, and the reachability analysis means we focus on what's genuinely exploitable rather than drowning in false positives.
Performance-wise, scans run fast even on large monorepos, and the dashboard stays responsive without lag, it never feels like a bottleneck in the CI pipeline.
On pricing and ROI, the value becomes clear quickly. Catching vulnerabilities pre-deployment rather than post-production saves significant incident response costs, and the free tier is generous enough for smaller teams to see real value before committing. Onboarding was smooth too, connecting GitHub repos took minutes and gave us an immediate risk picture. It feels like a security tool built for developers, which makes adoption across engineering teams much easier.

**What do you dislike about Snyk?**

A few friction points stand out. The noise from low-severity vulnerabilities can be overwhelming, especially on larger projects, while prioritization helps, tuning the filters to fit your specific risk tolerance takes time and trial and error. The licensing issue detection, though useful, sometimes flags things that aren't actually a concern in your use case, adding to that noise.
Pricing can become a pain point as teams scale. The jump between tiers feels steep, and some features that feel essential, like deeper reporting or SSO, are locked behind higher plans, which can be frustrating for mid-sized teams trying to justify the upgrade.
Occasionally the fix suggestions aren't actionable because the recommended version introduces breaking changes, so you still end up doing manual research. It would be more helpful if Snyk flagged compatibility risks alongside the fix recommendation. The Snyk Code (SAST) results can also feel less mature compared to the SCA side, more false positives and less context around why something is flagged.
Overall these are manageable drawbacks, but they do add friction for teams trying to run lean.

**What problems is Snyk solving and how is that benefiting you?**

Snyk solves the core problem of security being an afterthought in the development lifecycle. Before using it, vulnerabilities were typically caught late, during dedicated security audits or worse, post-deployment, making fixes costly and disruptive. Snyk shifts that detection to where the code is actually written, which changes the economics of security entirely.
The biggest benefit has been reducing the gap between vulnerability discovery and remediation. Developers get context-rich alerts in their IDE and PRs rather than a spreadsheet from a security team weeks later, which means fixes happen faster and with less back-and-forth.
It also solves the visibility problem across open source dependencies. With complex dependency trees, it was previously difficult to know what you were actually running in production and whether it was safe. Snyk gives a clear, continuously updated picture of that risk without requiring manual audits.
From a team dynamic standpoint, it bridges the gap between developers and security teams by speaking the developer's language, showing fixes, not just findings. This has made security a shared responsibility rather than a blocker, which speeds up release cycles without compromising on risk management.
The ROI shows up in avoided incidents, faster PR cycles, and less time spent in reactive fire-fighting mode, all of which compound over time.

  ### 2. Seamless DevSecOps with Smart PR Patching and Actionable Vulnerability Insights

**Rating:** 4.0/5.0 stars

**Reviewed by:** Mainak S. | Information Security Manager, Mid-Market (51-1000 emp.)

**Reviewed Date:** April 22, 2026

**What do you like best about Snyk?**

Snyk integrates seamlessly with GitHub, AWS, ECR, and Artifactory to provide a seamless devsecops experience for developers and release engineers. One of the best things that I like about Snyk is its ability to push vulnerability patches via PR on its own (if enabled). Other features include reachability and exploitability intelligence that provides us with surgical data to act upon, reducing vulnerability overload and cutting noise. The newer analytics and reports section allows us to determine SLA and breach timelines for each vulnerability

**What do you dislike about Snyk?**

We have seen that Snyk UI and Snyk CLI have misleading results in some cases. While this is not true for most of the cases, we have seen ~2-3% of cases where such anomalies have caused confusion amongst developers.

**What problems is Snyk solving and how is that benefiting you?**

Provides accurate visibility on security vulnerabilities by reachability and exploitability attributes, enables us manage SLAs by releases and allows us to measure security across all development touchpoints

  ### 3. Effortless Vulnerability Detection, But Licensing Needs Attention

**Rating:** 4.0/5.0 stars

**Reviewed by:** Manseerat K. | Software Engineer 1, Mid-Market (51-1000 emp.)

**Reviewed Date:** March 18, 2026

**What do you like best about Snyk?**

I like that Snyk easily runs scans and even provides the versions in which vulnerabilities are fixed. This feature is valuable because it helps me identify security risks or bad implementations in my code changes without having to test and update my code and dependencies manually. I also appreciate the easy setup process; the extension for Snyk is available in Visual Studio Code, and after downloading it, I just needed to sign up and authenticate my project.

**What do you dislike about Snyk?**

I've seen that Snyk does not do that well with the vulnerabilities that are related to licensing.

**What problems is Snyk solving and how is that benefiting you?**

I use Snyk to find open source vulnerabilities, ensuring my code is secure. It helps identify vulnerabilities in third-party projects like Spring Boot and Tomcat. I like how easily it runs scans and shows fixed versions, saving testing time and improving my product's standard.

  ### 4. Easy Setup and Trusted Vulnerability Scanning

**Rating:** 4.5/5.0 stars

**Reviewed by:** Gunther C. | Software Engineer, Mid-Market (51-1000 emp.)

**Reviewed Date:** April 07, 2026

**What do you like best about Snyk?**

Snyk is easy to set up and start using. Setting it up to run as a GitHub Action allows it to integrate seamlessly alongside other existing CI processes. Along with this, I like that its vulnerability scanning is pretty much universally trusted amongst engineers, this trust allows for peace of mind.

**What do you dislike about Snyk?**

This might have changed since the last time I worked with this product, but at the time Snyk was a bit expensive compared to similar products.

**What problems is Snyk solving and how is that benefiting you?**

Snyk makes it easy to stay informed about possible vaulneabilities in software and it's dependencies. Snyk's dependency vulnerability scanning is particularly valuable since in most cases downstream dependencies are numerous and more difficult to audit than an applications main code. Warnings and alerts produced Snyk are prompt and trustworthy.

  ### 5. Accurate, Beginner-Friendly SAST Tool with CI/CD Integration

**Rating:** 4.0/5.0 stars

**Reviewed by:** Verified User in Information Technology and Services | Mid-Market (51-1000 emp.)

**Reviewed Date:** November 25, 2025

**What do you like best about Snyk?**

What I appreciate most about Snyk is its "Reachability" feature. This means that if a vulnerable or exploitable library or package is imported in the code but not actually called or used, it is identified as a false positive and does not require remediation. However, this feature is only available in the paid subscription, not in the free version. It significantly reduces the time the VAPT team spends validating issues, and also helps the DevOps team address problems more efficiently.

Another aspect I value is how quickly Snyk adapts to new CVEs. If a zero-day exploit appears, Snyk updates its CVE database within a maximum of 24 hours, helping to keep the code secure.

**What do you dislike about Snyk?**

After some months of project being imported, scanned, and tested, snyk starts providing false-positives issues as well.

**What problems is Snyk solving and how is that benefiting you?**

Snyk scans the code for the latest bugs and issues, offers remediation steps, and keeps its CVE database up to date. The entire process is automated and does not require any human intervention. Scans are scheduled daily, and Snyk sends notifications, generates alerts via email, provides remediation guidance, and can even create Jira tickets for clients. By establishing its own ecosystem, Snyk is helping to reduce the workload of the VAPT team when it comes to SAST tasks. This has been a direct benefit for me and my team, allowing us to focus more on DAST operations.

  ### 6. Intuitive, Customizable, and Seamless Integration with Snyk

**Rating:** 4.0/5.0 stars

**Reviewed by:** Verified User in Media Production | Enterprise (> 1000 emp.)

**Reviewed Date:** December 16, 2025

**What do you like best about Snyk?**

Snyk's product features a highly intuitive GUI, making it straightforward to identify and address vulnerabilities. The platform allows you to organize developers into Orgs, which is helpful for ensuring that only specific development teams can view the vulnerabilities related to their own products. This structure also enhances the reporting capabilities. Integration with GitHub Cloud is relatively simple; you can use a GitHub app to onboard individual repositories to team orgs. Implementation is also quite manageable, provided you know which teams are responsible for which repositories and the products or services they support. Customer support is accessible online through the portal, making it easy to submit a ticket or arrange a call when needed. Snyk is fairly customisable per org too, allowing you to decide which settings you want to enable on a per team / product basis, so you can get quite granular in terms of what PR's get raised for which activities. Feedback is also provided in GitHub itself, which is useful for the developers.

**What do you dislike about Snyk?**

It's DAST product is in a seperate interface and not integrated into the Snyk product itself, I beleive this was due to it being an acquisition. Equally, their secret detection capability is not very good and they don't focus on code quality so you will need a different product for that.

**What problems is Snyk solving and how is that benefiting you?**

It's supporting us with integrating security into the development lifecycle, and moving towards shifting left, to try to enable developers to fix security issues before they release issues into their products / services.

  ### 7. Clear Visibility Into Deployed Code That Strengthens Security Confidence

**Rating:** 5.0/5.0 stars

**Reviewed by:** Verified User in Information Technology and Services | Mid-Market (51-1000 emp.)

**Reviewed Date:** April 28, 2026

**What do you like best about Snyk?**

It provides clear visibility into the code that’s deployed, which helps us understand what’s running and ensures it meets our desired security standards.

**What do you dislike about Snyk?**

The auto-imports and overall cost, including open-source scanning, don’t feel optimised. Also, the results contains false positives which can create ambiguity

**What problems is Snyk solving and how is that benefiting you?**

It can be beneficial because it alerts me when new CVEs are published, and it also suggests solutions for the vulnerabilities it identifies.

  ### 8. Extensive Vulnerability Detection and Seamless CI/CD Integration

**Rating:** 4.5/5.0 stars

**Reviewed by:** Verified User in Computer & Network Security | Enterprise (> 1000 emp.)

**Reviewed Date:** December 18, 2025

**What do you like best about Snyk?**

Snyk has an extensive and up-to-date vulnerability database which helps early detection of vulnerabilities in applications. It is very developer friendly with easy integration set-up and descriptive remediation advice for detected vulnerabilities. I use it daily running in CI/CD pipelines.

**What do you dislike about Snyk?**

Sometimes it flags false positives. Scans can take a few minutes for a medium sized repository which can slow down pipeline.

**What problems is Snyk solving and how is that benefiting you?**

Snyk scans repositories for security vulnerabilities in code and also its dependencies. Catches the vulnerabilities early before deploying to codebase.

  ### 9. Great UI and Deep Reviews, but False Positives and Too Much Detail

**Rating:** 3.0/5.0 stars

**Reviewed by:** Nitish U. | Product Security Lead, Computer & Network Security, Mid-Market (51-1000 emp.)

**Reviewed Date:** April 11, 2026

**What do you like best about Snyk?**

User interface, categorisation, depth in review

**What do you dislike about Snyk?**

too many false postives, sometimes too much details make it complex to analyze

**What problems is Snyk solving and how is that benefiting you?**

SAST, SCA, Dependabot, Secrets Management

  ### 10. Snyk Review

**Rating:** 5.0/5.0 stars

**Reviewed by:** Verified User in Program Development | Mid-Market (51-1000 emp.)

**Reviewed Date:** August 09, 2025

**What do you like best about Snyk?**

Its Scanning capabilities are very Good. For instance, it really does well in SAST scans and even SCA scans. It is also helpful in mitigating vulnerabilities by providing the best solutions

**What do you dislike about Snyk?**

It’s cost. It is very expensive. Other than that, The UI can be a bit better

**What problems is Snyk solving and how is that benefiting you?**

Snyk tackles the challenge of spotting and fixing security vulnerabilities across your software stack—everything from open‑source libraries and container images to infrastructure‑as‑code and your own codebase. It fits right into your workflow (think GitHub, IDEs, CI/CD), so you catch real issues early and get actionable fixes automatically. This means fewer surprises, faster development, and stronger confidence that security isn’t slowing you down—it’s built in.

  ### 11. Developer Centric Platform || Snyk

**Rating:** 5.0/5.0 stars

**Reviewed by:** Lokesh T. | Sr. Security Engineer, Mid-Market (51-1000 emp.)

**Reviewed Date:** January 23, 2025

**What do you like best about Snyk?**

Recently they came with feature called, Deep code AI, using this we can fix the issue for 1st party cod in IDE level

**What do you dislike about Snyk?**

It doesnt have On-prem, And also we cannot push the SAST results to the Dashboard from CLI

**What problems is Snyk solving and how is that benefiting you?**

Snyk is covering from code to cloud and back to code. Which means it is having a wide range of integration in each and every stage of SDLC

  ### 12. Bad Customer support, Lots of bugs and a non-working product

**Rating:** 2.0/5.0 stars

**Reviewed by:** Verified User in Computer & Network Security | Mid-Market (51-1000 emp.)

**Reviewed Date:** August 21, 2024

**What do you like best about Snyk?**

Integrate with most major code repo's. but the integration is not amazing.

**What do you dislike about Snyk?**

Customer support is slow to respond, usually not helpful and ended up escalating to a developer, that's when we lost all contact and did not get a solution to a clear bug that prevents us from using the product.
Another really important note around SBOM, the CLI does not provide all the information that you get from the UI, the solution provided was to use another tool to extract data. not sure why we pay for a product if we need to use outside, 3rd party tools to get the information we need.

**What problems is Snyk solving and how is that benefiting you?**

Security scanning, SBOM.

  ### 13. Very Good SAST tool to begin with

**Rating:** 3.0/5.0 stars

**Reviewed by:** Nitish U. | DevSecOps Lead, Mid-Market (51-1000 emp.)

**Reviewed Date:** August 19, 2024

**What do you like best about Snyk?**

Integration with both Bitbucket and Github, policy as a code,

**What do you dislike about Snyk?**

Too much unnecessary false positives, policy overrides, hard and complex to manage and track alerts

**What problems is Snyk solving and how is that benefiting you?**

Help in reducing efforts on Manual VAPT, helps in identifying muliple vuln in a single package thus reduces effort to mitigate vuln with minimum number of upgrades and patches

  ### 14. Very quick to find security issues with code bases

**Rating:** 4.5/5.0 stars

**Reviewed by:** Ryan C. | Enterprise (> 1000 emp.)

**Reviewed Date:** March 20, 2024

**What do you like best about Snyk?**

I think it is so easy to use. I like that it includes solutions to the issues I have, it can quickly scan a codebase and will constantly scan it. We had no issues including it into our code base.

**What do you dislike about Snyk?**

The solutions sometimes overlap and don't coincide. Another issue I could say would be pricing.

**What problems is Snyk solving and how is that benefiting you?**

We have had some security issues in the code base we never would have realized without it.

  ### 15. Very helpful and feature rich tool

**Rating:** 3.5/5.0 stars

**Reviewed by:** Verified User in Information Technology and Services | Small-Business (50 or fewer emp.)

**Reviewed Date:** July 13, 2024

**What do you like best about Snyk?**

Great integration with version control tools like Github and Bitbucket

**What do you dislike about Snyk?**

Initially when using Snyk it was a bit confusing,  but since then they have improved all the UX and features.

**What problems is Snyk solving and how is that benefiting you?**

Using Snyk as our primary security tool offers us a lot of benefits from SAST to vulnerabiltiy scanning.

  ### 16. Great vulnerability scanning tool

**Rating:** 4.0/5.0 stars

**Reviewed by:** Verified User in Import and Export | Small-Business (50 or fewer emp.)

**Reviewed Date:** February 03, 2024

**What do you like best about Snyk?**

-Easy integration available for GIthub
-Vulenrabilities false positive rate is slightly better than other tools
-Can be easily integrated within CI/Cd pipline.
-Automatic code scanning and report generation available
-Works with almost all languages
-Very straightforward to use

**What do you dislike about Snyk?**

-Sometimes vulenrability reported are false positive and also rarely misses some of the genuine vulnerabilities.

**What problems is Snyk solving and how is that benefiting you?**

Snyk is a part of the CI/CD pipleline and performs static code scanning and basic sanity check of the code as a first level of testing. Snyk also provides remedition which is very useful. It has built in support for Github so we leverage snyk to perform regular scans on our codebase.

  ### 17. Centralised vulnerability management for product security

**Rating:** 4.0/5.0 stars

**Reviewed by:** Chris G. | Mid-Market (51-1000 emp.)

**Reviewed Date:** September 24, 2023

**What do you like best about Snyk?**

Centralised vulnerability visibility and reduction for our products that we develop. The UI also provides good reporting on KPI data to provide to the relevant stakeholders for full risk reduction visibility. The integration is easy to setup with GitHub and out of the box.

**What do you dislike about Snyk?**

One aspect to consider is if you would like all features available of the platform, there could be a high cost involved, however the Snyk platform is worth the investment in the long run.

**What problems is Snyk solving and how is that benefiting you?**

Snyk is helping our organisation to prevent vulnerabilities being coded into our products by using a shifting left approach in our DevSecOps pipeline.

  ### 18. Best tool for SAST

**Rating:** 5.0/5.0 stars

**Reviewed by:** Yogendra J. | Synack Red Team Member, Mid-Market (51-1000 emp.)

**Reviewed Date:** July 25, 2023

**What do you like best about Snyk?**

quickly identifies and categorises the vulnerabilities. As you create the code, it highlights the problems, improving both the security and the quality of the code. The best aspect is that you can begin using it for nothing.

**What do you dislike about Snyk?**

They can raise various resource quotas in the free plan. Additionally, more documentation detailing how Synk functions at the backend when integrated would be more beneficial.

**What problems is Snyk solving and how is that benefiting you?**

It checks for weaknesses in our product. It aids in protecting our merchandise from hacker assaults. Developers don't need to conduct security research for the new library they integrate into their projects because Snyk will handle it. When the Snyk tool is integrated into a developer's IDE, they may concentrate on their top objectives.

  ### 19. Good for finding Vulnerabilities.

**Rating:** 4.0/5.0 stars

**Reviewed by:** Prakash C. | Developer, Computer Software, Enterprise (> 1000 emp.)

**Reviewed Date:** March 10, 2023

**What do you like best about Snyk?**

Its good tool to check Vulnerabilities in project and it also shows category wise vulnerability like critical, high, medium and low by which we can decide which to be fix first and important. And it also provides suggestions of versions in which respective Vulnerabilities has fixed. Also provides plugins for almost very IDE and snyk cli also good by running snyk test in cli it will give details of vulnerabilities in project.

**What do you dislike about Snyk?**

In node Js or react it only check yarn.lock file means first we have to install all dependencies then only it will check for all vulnerabilities. Need to work on code quality suggestion part.

**What problems is Snyk solving and how is that benefiting you?**

By this tool we are able to fix Vulnerabilities in project and help to secure our product and secure the customer data. And also code quality is improved by using this tool.

  ### 20. Easy implementation, straightforward tool

**Rating:** 4.5/5.0 stars

**Reviewed by:** Samantha C. | Director, Information Security, Mid-Market (51-1000 emp.)

**Reviewed Date:** February 09, 2023

**What do you like best about Snyk?**

Implementing Snyk was extremely straightforward. We were able to complete it ahead of schedule and with minimal assistance from the Snyk Team. The app itself is clear and valuable. It doesn't require my team to review extensive documentation or go through application-specific training to understand its use; we were able to hit the ground running.

**What do you dislike about Snyk?**

The only thing I can think of is that Snyk does not offer a threat detection component to its product. With the ease of implementation and use, it would be great if we could not only use one tool for both purposes, but we were able to use Snyk for threat detection; the ease and simplicity of use, I feel, would make the program far easier to manage.

**What problems is Snyk solving and how is that benefiting you?**

Snyk provides SAST, container scanning, vuln scanning and SCA capabilities. These capabilities allow us to be more productive as a team and increase performance in these areas as the information provided by the tool is easy to act upon.

  ### 21. Synk

**Rating:** 4.0/5.0 stars

**Reviewed by:** Ashish K. | Data Analyst, Mid-Market (51-1000 emp.)

**Reviewed Date:** July 30, 2023

**What do you like best about Snyk?**

While you are do coding and faces the error in your code sometimes you will not be able to find the error easily so this software wil help to find the error and also solve that error.

**What do you dislike about Snyk?**

When you have a many errors and code is very big this software not work properly it not find the error all the time sometimes you have to find error by your self.

**What problems is Snyk solving and how is that benefiting you?**

Bugs in the code it will solve so that's why your time will be reduced by this so you can work very fast and very efficiently so for programmers this software very beneficial

  ### 22. Benefits of Integrating Synk

**Rating:** 5.0/5.0 stars

**Reviewed by:** Akash P. | Software Engineer, Mid-Market (51-1000 emp.)

**Reviewed Date:** March 15, 2023

**What do you like best about Snyk?**

Quickly Identifies the vulnerabilities and classifies them. It identifies the issues as you write the code, which increases security and code quality. The best part is you can get started using it for free.

**What do you dislike about Snyk?**

In the free plan, they can increase some resource quota. Also, it would be more helpful if they provided more information on documentation regarding how Synk works in the backend when integrated.

**What problems is Snyk solving and how is that benefiting you?**

Firstly it finds vulnerabilities in code which by default increases the security, and secondly, it identifies issues while writing the code, which imporves code quality. Apart from this, I integrated it into the CI/CD pipeline, which allowed me to merge code only if there were no critical issues. These were some of the things that were very beneficial for me.

  ### 23. The tool which helps for DevSecOps

**Rating:** 4.0/5.0 stars

**Reviewed by:** Krishnaveni P. | Technical Lead, Mid-Market (51-1000 emp.)

**Reviewed Date:** March 10, 2023

**What do you like best about Snyk?**

It ensures our application security at every stage of our application development. Helps to find and fix vulnerabilities in our code. When you install snyk in IDE like Visual studio code , the vulnerabilities get detected at earlier stage.
With Snyk CLI commands , snyk scan also be integrated in CICD pipeline with basic knowledge on snyk.

**What do you dislike about Snyk?**

Snyk reported vulnerabilities scna takes more time. It is not free, we have to pay.

**What problems is Snyk solving and how is that benefiting you?**

It scans for vulnerabilitis in our product. It helps to safeguard our product against attacks by hackers. Developers does not need to research on security of new library which they integrate on their project which will be taken care by Snyk. Developer can focus on their priorities when snyk tool is integrated on their IDE.

  ### 24. Found hidden XSS vulnerabilities in seconds!

**Rating:** 5.0/5.0 stars

**Reviewed by:** Michael C. | Lead Software Engineer, Enterprise (> 1000 emp.)

**Reviewed Date:** February 13, 2023

**What do you like best about Snyk?**

I love that its VS Code extension simply sits quietly in my project checking things until I do something silly. Then it lets me know that it found security issues that I need to review ASAP.

**What do you dislike about Snyk?**

The one thing I really didn't care for (or exepect) is that it creates a report cache in your project root. It probably speeds things up, but I didn't know about it. I kept deleting the file and adding it to .gitignore until I learned what it was. I am still not sure whether it should be committed to source control or not.

**What problems is Snyk solving and how is that benefiting you?**

It provides me a tool to do static code analysis on my entire web application code quickly and easily. It does it in a completely unobtrusive manner, staying out of my way until I need it.

  ### 25. Tool for managing your open source vulnerabilities

**Rating:** 3.5/5.0 stars

**Reviewed by:** Verified User in Computer Software | Mid-Market (51-1000 emp.)

**Reviewed Date:** September 08, 2023

**What do you like best about Snyk?**

Snyk give you a good coverage for your open source vulnerabilities, license probelm and basic static code analysis.

**What do you dislike about Snyk?**

The integration part can be misleading, for a real detection you need to integrate it into the ci/cd, and the simple detection of requirements files is not working for all use cases.

Dashboards and reporting can be improved and better organized.

**What problems is Snyk solving and how is that benefiting you?**

Detection and prioritization of vulnerabilities

  ### 26. Secure projects

**Rating:** 4.5/5.0 stars

**Reviewed by:** MRIDUL N. | Individual contributor, Higher Education, Small-Business (50 or fewer emp.)

**Reviewed Date:** July 04, 2023

**What do you like best about Snyk?**

I like the automatic weekly report generator that keeps me updated with the new vulnerabilities detected in my projects.

**What do you dislike about Snyk?**

The filename is limited to about 255 characters, consuming a lot of time to rename files temporarily.

**What problems is Snyk solving and how is that benefiting you?**

I use it to scan vulnerabilities in my code to make my apps secure and remove threats as they appear.

  ### 27. snyk review

**Rating:** 5.0/5.0 stars

**Reviewed by:** Rural A. | freelancer, Small-Business (50 or fewer emp.)

**Reviewed Date:** November 30, 2022

**What do you like best about Snyk?**

Snyk is very good at finding vulnerabilities in my code (even if it's just that I forgot to update a package to the latest secure version c: )
Snyk works a lot like dependabot, but from my experience, it's much better and much more fleshed out (so to speak). Snyk will give you a detailed analysis of your code and any vulnerabilities found, how to fix them, and even how to exploit them with proofs of concept, etc.

and to think I found out about it from a youtube ad!

**What do you dislike about Snyk?**

nothing at the moment
although I suppose I'd just contact support about the disliked features/bugs in question if I ever found any...
the website overhaul looks really nice, I honestly thought there'd be something I didn't like about it, but it's pretty good :)

**What problems is Snyk solving and how is that benefiting you?**

The only problems it's supposed to: finding vulnerabilities in mine (and others') code, which it does an incredible job of doing.

  ### 28. Decent product for compliance requirements, not so good for efficient AppSec program

**Rating:** 2.0/5.0 stars

**Reviewed by:** Aleksandr K. | Mid-Market (51-1000 emp.)

**Reviewed Date:** February 24, 2023

**What do you like best about Snyk?**

The best thing there is the ability to plug it in and play with it almost instantly. Integrations are straightforward to manage; Snyk provides you with all the stats you need for your SOC2.

**What do you dislike about Snyk?**

Snyk core engine is not very good when it comes down to being able to scan mono repositories. When you have a repo that has multiple languages combine, scan times can be over 1 hour.

**What problems is Snyk solving and how is that benefiting you?**

The biggest problem we had back when we first integrated Snyk was to have some visibility into our code, libraries, and IaC configs. Implementing it was beneficial as we saw a clear breakdown of vulnerabilities.

  ### 29. Using Snyk as a product to be used by the compamy I work for, and personal projects

**Rating:** 4.5/5.0 stars

**Reviewed by:** Yannick B. | Enterprise (> 1000 emp.)

**Reviewed Date:** February 10, 2023

**What do you like best about Snyk?**

I really like the fact that Snyk is a platform and has support for so many different types of scanning. I really like the IaC scanning. I'm not so experienced in vulnerability scanning on IaC level, but this really feels right.

**What do you dislike about Snyk?**

On of the biggest downsides to Snyk is the fact that the Github actions plugins don't support PR commenting out of the box. It supports uploading Sarif files, but this is only available to Github Enterprise users. Adding support for PR comments would come in so handy!

**What problems is Snyk solving and how is that benefiting you?**

We, as a company really have a gap in cloud security, we can really benefit from Snyk on filling in that gap.

  ### 30. Powerful analysis to reduce risk in your applications

**Rating:** 5.0/5.0 stars

**Reviewed by:** Sean P. | Software Development Director, Non-Profit Organization Management, Mid-Market (51-1000 emp.)

**Reviewed Date:** November 08, 2022

**What do you like best about Snyk?**

I like the comprehensive and detailed reporting structure that Synk provides. When possible, Snyk will provide remediations to issues it finds and allows me to integrate with JIRA or other management tools to ensure I don't lose track of important updates. Setup of Snyk is surprisingly easy and I really appreciate the integrations it provides with Bitbucket to make sure all my code is secure. Beyond third party library scanning, the license, container, and live code tracking features are things that look powerful but haven't had a chance to fully try out yet. Given the quality I've seen in most of the tools, I'm sure they are equally great.

**What do you dislike about Snyk?**

The biggest downside to Snyk is the pricing point for medium sized businesses. The free tier does a lot and can be used by most small businesses. However, when you are scaling up to that medium tier, the pricing became cost prohibitive to us, so we are remaining on the free plan for the time being.

**What problems is Snyk solving and how is that benefiting you?**

As a consulting firm, we often build custom software solutions for clients that rely upon third party libraries to speed up development. Since these libraries are open source, there does arise the risk that a library will have security vulnerabilities that we are not aware of, particularly if the library is a dependency of another library being used. Snyk helps us identify these risks, assess the severity and impact of them, and make a plan to resolve them in an effective manner.

  ### 31. Snyk is amazing

**Rating:** 5.0/5.0 stars

**Reviewed by:** Verified User in Computer & Network Security | Mid-Market (51-1000 emp.)

**Reviewed Date:** July 28, 2023

**What do you like best about Snyk?**

Snyk identifies the library vulnerabilities and give CVSS score right next to it to understand the impact as well as the filters are amazing and easy to use.

**What do you dislike about Snyk?**

Snyk doesn't have inbuilt support for marking false positives for test suite software directories like cypress.

**What problems is Snyk solving and how is that benefiting you?**

It gives me all insights and leads to check for manual pentesting

  ### 32. Does not allow you making mistakes you did not know you make

**Rating:** 4.5/5.0 stars

**Reviewed by:** Artur  K. | System Architect, Small-Business (50 or fewer emp.)

**Reviewed Date:** November 21, 2022

**What do you like best about Snyk?**

It is easy to use and developer friendly. You can easily test a project locally or let snyk monitor the project from the ci. The quality gate makes sure, you do not introduce new mistakes in your merge requests.

**What do you dislike about Snyk?**

The need for a Snyk Broker when working with a self hosted Gitlab instance. We recently moved from the Gitlab SaaS service to a self hosted environment. It was partly our mistake for not reading the Snyk documentation well enough, but now we need a broker for it to monitor our projects

**What problems is Snyk solving and how is that benefiting you?**

Snyk monitors our projects for security mistakes in the dependencies. Some projects are on a security only maintenance mode, which is a lot easier with Snyk. But it also monitors the main projects and makes it easy to fix security issues

  ### 33. Added Value

**Rating:** 5.0/5.0 stars

**Reviewed by:** Jade J. | Product Security Architect, Mid-Market (51-1000 emp.)

**Reviewed Date:** January 10, 2023

**What do you like best about Snyk?**

Snyk helped us shift left and streamline some of our security processes.  Within the first few months of implementing Snyk, we could determine the impact and scope of zero-day vulnerabilities within an hour versus a day.  The time savings and automation are clear winners for us.

**What do you dislike about Snyk?**

We are frustrated by some reporting capabilities that need to be enhanced.  The updated reporting is a vast improvement, but we have specific use cases that we prefer not to engineer through the APIs.

**What problems is Snyk solving and how is that benefiting you?**

As an organization that's re-energized its commitment to being security-minded, Snyk is helping us enrich our security posture and processes across the organization.

  ### 34. Snyk - Great idea, poor implementation

**Rating:** 0.5/5.0 stars

**Reviewed by:** Verified User in Oil & Energy | Mid-Market (51-1000 emp.)

**Reviewed Date:** May 24, 2023

**What do you like best about Snyk?**

The holistic nature of a developer security suite from IDE to app monitoring is a great idea.

**What do you dislike about Snyk?**

Our Developers loathe it. Many false positives on the code scanning, the tool UI is clunky and slow and the post-sales support is truly awful. There are very few support folks at Snyk that actually seem to have any software development experience or the empathy to understand how development teams would use their tool.

**What problems is Snyk solving and how is that benefiting you?**

The OSS/SBOM is pretty good.

  ### 35. With Fugue's Unified Policy Engine we can consistently govern security & compliance across our SDLC

**Rating:** 4.0/5.0 stars

**Reviewed by:** Meghna S. | Cloud Engineer, Information Technology and Services, Enterprise (> 1000 emp.)

**Reviewed Date:** October 16, 2022

**What do you like best about Snyk?**

Fugue is efficient when it comes to defining remediation approaches for every violations. It manages runtime security for our cloud-native applications & detects both regular and complicated vulnerabilities. It also provides one-click compliance reporting, which is fast & convenient for our AWS infrastructure requirements.

**What do you dislike about Snyk?**

We can easily enable automated remediation features for resources that are deployed in the Production environment. It dramatically reduces various risks, underutilized resource expenditures & compliance governance. We are satisfied with the services offered by Fugue for our security policies & posture management.

**What problems is Snyk solving and how is that benefiting you?**

Fugue effectively simplifies time spent on manual audits & tracking vulnerabilities for our AWS deployments. With its configuration management tool, we can evaluate misconfigurations & drifts between Dev, QA and Prod environments. It offers many pre-built rules for our compliance framework. We ensure that all policies are adequately poised across our SDLC with the aid of its Unified Policy Engine.

  ### 36. very good so far, need a little improvment in the user experience.

**Rating:** 4.0/5.0 stars

**Reviewed by:** Brahim A. | Software Engineer, Small-Business (50 or fewer emp.)

**Reviewed Date:** October 19, 2022

**What do you like best about Snyk?**

I like how it can analyze the package.json file in a node.js project and the fix pulls. Also, I like that it's free.

**What do you dislike about Snyk?**

I wish you had added a better way to handle multiple analysis options in a single project. For example, I have a nodeJS project with a package.json and code analysis; they have different pages on the UI, and as I tested, there is no easy way to navigate from one to another. Although they are in the same project, it seems that they are treated as two different projects

**What problems is Snyk solving and how is that benefiting you?**

Fixing vulnerabilities in my codebase and keeping up-to-date with security fixes. I previously did not care about vulnerabilities as it required time that I don't have, but when it comes to production in a sensitive field, I realize that a small error could lead to a law suite.

  ### 37. Easy to use and configure.

**Rating:** 5.0/5.0 stars

**Reviewed by:** Carlos C. | Software Engineer, Small-Business (50 or fewer emp.)

**Reviewed Date:** December 07, 2022

**What do you like best about Snyk?**

One of the most helpful things, in my opinion, is that Snyk is very easy to use. Moreover, it has very permissive commercial plans. And no one should forgive all the supported integrations.

**What do you dislike about Snyk?**

Some popular languages are not supported, like Kotlin, and it would be interesting to support popular frameworks. For example Snyk allow the static analysis of Ruby but not an specific subset of rules for Ruby on Rails.

**What problems is Snyk solving and how is that benefiting you?**

In my organisation, we mostly use Snyk for dependency checking. Looking to obtain an S-SDLC lifecycle Snyk is a must. Now we are also using the Snyk Code functionalities, but again we started to used Snyk for dependency checking.

  ### 38. Helpful tool for recognizing vulnerabilities in supply chain / dependencies

**Rating:** 5.0/5.0 stars

**Reviewed by:** Terry M. | Senior Software Engineer, Enterprise (> 1000 emp.)

**Reviewed Date:** December 01, 2022

**What do you like best about Snyk?**

Fast response time to at least notify of a vulnerability and, when available, version details of a package to resolve it.   Also useful in that it creates PRs to fix those vulnerabilities.

**What do you dislike about Snyk?**

The static analysis still has some ways to go, for now it can be useful but depending on the language can often show false positives - not something unique to Snyk, it's a common problem for any static analysis tool.

**What problems is Snyk solving and how is that benefiting you?**

Mediate vulnerabilities quickly and before they may cause any issues for customers, both external and internal.  Saves time in having to review CVE's manually and often times in formulating a fix.

  ### 39. It's foundational to the industry

**Rating:** 5.0/5.0 stars

**Reviewed by:** Todd T. | Software Developer, Small-Business (50 or fewer emp.)

**Reviewed Date:** November 07, 2022

**What do you like best about Snyk?**

Snyk has always pushed further than npm audit and provides the checks I need to feel comfortable deploying my changes or catching new zero days in a timely manner.

**What do you dislike about Snyk?**

Like any tool where people work on it in a 9-5, Snyk costs money. Npm audit is getting better and is free. That said, NodeJS is the package injection ecosystem, so I don't mind going a bit premium for a sense of safety on my projects. Additionally, the static analysis is pretty nice as well.

**What problems is Snyk solving and how is that benefiting you?**

Keeping abreast of vulnerabilities in my dependency tree. Security is the lifeblood of a company, so having more static analysis and dependency tree checking will benefit any company.

  ### 40. Snyk is truly developer friendly

**Rating:** 5.0/5.0 stars

**Reviewed by:** Verified User in Computer & Network Security | Mid-Market (51-1000 emp.)

**Reviewed Date:** November 03, 2022

**What do you like best about Snyk?**

I have followed the Snyk team's work since my first year in graduate school; I researched 3rd party packages and their security on open-source GitHub projects. I have always been impressed by the approach they've taken to security. They were not afraid to offer off-beat (yet very much needed) solutions. Snyk has evolved exponentially since then with a variety of features, and offering docker security excites me. I can't wait for them to grow into web3 and the WebAssembly space soon as well.

**What do you dislike about Snyk?**

Snyk is more expensive than the competition, significantly so. However, I'd say the price difference is potentially worth it considering, you may have to hire an Engineer to hack workarounds for other solutions out there. Depends on your risk factor for future work.

**What problems is Snyk solving and how is that benefiting you?**

Snyk reduces the complexity of managing security in an enterprise; it is not a simple feat by any means. The multitude of features, integrations and advice snyk offers is unparalleled in my opinion.

  ### 41. Great tool, easy to use, developer-friendly and free for open source projects

**Rating:** 5.0/5.0 stars

**Reviewed by:** Magno L. | Information Security Specialist, Enterprise (> 1000 emp.)

**Reviewed Date:** November 07, 2022

**What do you like best about Snyk?**

It is free for public repositories, and it is easy to create an account and integrate it with your GitHub repositories. It scans your dependencies very quickly and provides accurate and actionable results to fix those vulnerabilities. Even having a way to automatically submit PRs directly to fix the issues found.

**What do you dislike about Snyk?**

Sometimes the error messages are not very clear, like with the IDE plugin, and it is challenging to understand why the project wasn't imported or scanned. But overall it works seamlessly.

**What problems is Snyk solving and how is that benefiting you?**

Snyk is helping protect the security of libraries and dependencies, which are mostly open-source projects created by independent developers that require help with the security of their applications.

  ### 42. It helps you in maintain your projects with latest security patchs.

**Rating:** 5.0/5.0 stars

**Reviewed by:** Alonso I. | Arquitecto de software, Small-Business (50 or fewer emp.)

**Reviewed Date:** September 30, 2022

**What do you like best about Snyk?**

I would like it to do the security scanner at the library level, code, to do the pull request, the merge, the automated CI/CD flow control, with everything that entails, container creation, container scanner, notifications to the necessary people, push to the container manager, more notifications. Automate as much as possible regarding passive safety.

**What do you dislike about Snyk?**

There is nothing to dislike, little details like I would like to have a more intuitive way in the interface for more granular control over the projects being watched. For example, if I decide to stop monitoring said project, I don't see a way to do it at a glance. I would like to select it and delete it from the dashboard, or for example, although it is great that you notify me of the possibility of fixing such security problems, I would like you to be more proactive and suggest that you have said fixed branch ready and simply tell me that you fixed this and that. Of course, you should be able to configure it and say, I want to be more on top of this project, just let me know, or tell the system, ok, I trust you, apply all possible security measures as soon as you find a fix.

**What problems is Snyk solving and how is that benefiting you?**

It's great that Snyk is starting to change the way we build software towards a mentality of preventing as quickly as possible when a zero day or a security problem appears. This type of tool, if it evolves into something more autonomous, will make the world a little safer and less prone to computer attacks. Preventing and not acting later when the disaster has already occurred should be the company's leitmotiv.
A good idea would be to integrate services like VirusTotal to scan components so that there are no malicious payloads that can sneak into any component.

  ### 43. Extremely versatile vulnerability scan

**Rating:** 5.0/5.0 stars

**Reviewed by:** Andy G. | Consulting Software Engineer, Small-Business (50 or fewer emp.)

**Reviewed Date:** November 15, 2022

**What do you like best about Snyk?**

Snyk provides a highly versatile scan of code to expose common vulnerabilities in code, not only by recognising vulnerable blocks of code but also by following the path of user-submitted variables through the code to ensure proper validation has been performed. Its integration with Github and pricing model are also exceptional.

**What do you dislike about Snyk?**

The downside of Snyk is that not enough people are using it and making the internet a better place.

**What problems is Snyk solving and how is that benefiting you?**

Code standards and vulnerability scanning.

  ### 44. Snyk is a very convenient security tool for developers

**Rating:** 5.0/5.0 stars

**Reviewed by:** Ivan R. | Software Engineer, Small-Business (50 or fewer emp.)

**Reviewed Date:** December 14, 2022

**What do you like best about Snyk?**

It is easy to use on existing projects and offers a generous free tier.

**What do you dislike about Snyk?**

Honestly, I haven't found any issues with this tool, it fits my needs perfectly and if I ever encounter an issue, I make sure to bring it up to the Synk team.

**What problems is Snyk solving and how is that benefiting you?**

It solves vulnerabilities in my code and software, allowing me to ship more secure software.

  ### 45. Great product, easy to use

**Rating:** 5.0/5.0 stars

**Reviewed by:** Bill S. | Senior Application Security Engineer, Mid-Market (51-1000 emp.)

**Reviewed Date:** May 29, 2023

**What do you like best about Snyk?**

Effective at mitigating cybersecurity risk

**What do you dislike about Snyk?**

Could provide more robust SAST capabilities

**What problems is Snyk solving and how is that benefiting you?**

Identifying and visualizing cybersecurity vulnerabilities

  ### 46. AI ML

**Rating:** 5.0/5.0 stars

**Reviewed by:** Gavin C. | Small-Business (50 or fewer emp.)

**Reviewed Date:** March 08, 2023

**What do you like best about Snyk?**

check security very quickly, really really fast

**What do you dislike about Snyk?**

provider me  too error massage, I need quick answer

**What problems is Snyk solving and how is that benefiting you?**

container security

  ### 47. Delivering safer artifacts

**Rating:** 4.0/5.0 stars

**Reviewed by:** Oleksis F. | Software Engineer, Small-Business (50 or fewer emp.)

**Reviewed Date:** January 23, 2023

**What do you like best about Snyk?**

Snyk allows me to focus on the parts of the software that I can update and make it safer

**What do you dislike about Snyk?**

The limit of scan without authentication

**What problems is Snyk solving and how is that benefiting you?**

Gives more reliability of delivery more secure software

  ### 48. Easy to use

**Rating:** 5.0/5.0 stars

**Reviewed by:** Huseyin S. | Jr. Software Engineer, Small-Business (50 or fewer emp.)

**Reviewed Date:** November 10, 2022

**What do you like best about Snyk?**

I don't know much about DevOps, but sometimes I forget to update packages when doing many projects. Since Synk opens PR for all of them, I can directly merge to the main branch.

**What do you dislike about Snyk?**

maybe reports can be made available to free users at a certain rate so we can see what kind of thing can happen.

**What problems is Snyk solving and how is that benefiting you?**

I usually try to update NPM packages after pushing the application to git.

  ### 49. Constant security and shifting left with Snyk

**Rating:** 5.0/5.0 stars

**Reviewed by:** Avinash U. | DevOps Engineer-I, Enterprise (> 1000 emp.)

**Reviewed Date:** May 14, 2022

**What do you like best about Snyk?**

Snyk can integrate with GitHub and constantly scan certain repositories for vulnerabilities and not just when new code is pushed to the repository, allowing the application to be secure even when it is not being worked upon. Excellent UI with great reporting and filtering capabilities, that is easy and intuitive to use. Snyk can automatically create pull requests for fixing fixable vulnerabilities and allowing the code owner to fix issues fast and easily.

**What do you dislike about Snyk?**

Snyk lacks the ability to export the data regarding the vulnerabilities to an external vendor such as Datadog, allowing the customer to graph, alert and process the data. Another great addition to a great tool would be the ability to know when the vulnerability was introduced or the release affecting the vulnerability.

**What problems is Snyk solving and how is that benefiting you?**

We use the GitHub integration and scan our Docker images during CI to find vulnerabilities before pushing to production. We also receive weekly emails regarding the security posture of our applications. Using Snyk, we are able to catch vulnerabilities and fix them easily with the help of Snyk's integrations.

  ### 50. Snyk has helped us catch bugs and vulnerabilities, while being extremely easy to use

**Rating:** 4.5/5.0 stars

**Reviewed by:** Verified User in Computer Software | Small-Business (50 or fewer emp.)

**Reviewed Date:** July 27, 2022

**What do you like best about Snyk?**

I really like the CLI and the web dashboard. The dashboard helps give an overview of all issues with the option of diving deeper into each one. The CLI is a quick way to test for vulnerabilities in real time while writing code. My favorite feature is the code analysis tool, which helps point out vulnerabilities in my own business logic. I haven't seen any other tool that analyses my logic as well as Snyk.

**What do you dislike about Snyk?**

I have had problems with controlling which projects I want Snyk to analyze. For example, I would like to ignore all Dockerfile vulnerabilities, but I haven't found to way to do that easily. The "Usage" tab in settings is almost what I want, but it only gives file/project-level control, whereas I would want to ignore specific filetypes or repositories. Also, the .dccache file which is generated by VS Code extension is a bit annoying, and it sometimes gets in the way when I just want to quickly analyze some project.

**What problems is Snyk solving and how is that benefiting you?**

The main problem Snyk helps us with is writing safer code. The code analysis tool is absolutely incredible, it helps us notice problems in our business logic that we wouldn't have caught ourselves. Snyk also keeps our dependencies up-to-date, so updating major versions is a smaller burden. Keeping packages up-to-date also protects against future vulnerabilities in our dependency tree.


## Snyk Discussions
  - [What is Snyk scanning?](https://www.g2.com/discussions/what-is-snyk-scanning) - 2 comments, 2 upvotes
  - [Is Snyk a SaaS?](https://www.g2.com/discussions/is-snyk-a-saas) - 2 comments
  - [How good is Snyk?](https://www.g2.com/discussions/how-good-is-snyk) - 2 comments

- [View Snyk pricing details and edition comparison](https://www.g2.com/products/snyk/reviews?section=pricing&secure%5Bexpires_at%5D=2026-05-13+11%3A55%3A58+-0500&secure%5Bsession_id%5D=383c9f0e-7e75-4b45-b528-30a9f4f77109&secure%5Btoken%5D=f473b143520c24a8b4ea7989c61c36357fe32be46abeb7f25b971f9f2687f22d&format=llm_user)
## Snyk Integrations
  - [Amazon Elastic Container Registry (ECR)](https://www.g2.com/products/amazon-elastic-container-registry-ecr/reviews)
  - [Cursor](https://www.g2.com/products/cursor/reviews)
  - [GitHub](https://www.g2.com/products/github/reviews)
  - [Slack Connector for Jira](https://www.g2.com/products/slack-connector-for-jira/reviews)

## Snyk Features
**Administration**
- API / Integrations
- Extensibility

**Administration**
- Risk Scoring
- Security Auditing
- Configuration Management

**Performance**
- Issue Tracking
- Detection Rate
- False Positives
- Automated Scans

**Functionality - Software Composition Analysis **
- Language Support
- Integration
- Transparency

**Security**
- Tampering
- Malicious Code
- Verification
- Security Risks

**Functionality - Software Bill of Materials (SBOM)**
- Format Support
- Annotations
- Attestation

**Performance - AI AppSec Assistants**
- Remediation
- Real-time Vulnerability Detection
- Accuracy

**Analysis**
- Reporting and Analytics
- Issue Tracking
- Static Code Analysis
- Code Analysis

**Monitoring**
- Continuous Image Assurance
- Behavior Monitoring
- Observability

**Network**
- Compliance Testing
- Perimeter Scanning
- Configuration Monitoring

**Effectiveness - Software Composition Analysis**
- Remediation Suggestions
- Continuous Monitoring
- Thorough Detection

**Tracking**
- Bill of Materials
- Audit Trails
- Monitoring

**Management - Software Bill of Materials (SBOM)**
- Monitoring
- Dashboards
- User Provisioning

**Integration - AI AppSec Assistants**
- Stack Integration
- Workflow Integration
- Codebase Contextual Awareness

**Testing**
- Command-Line Tools
- Manual Testing
- Test Automation
- Compliance Testing
- Black-Box Scanning
- Detection Rate
- False Positives

**Protection**
- Dynamic Image Scanning
- Runtime Protection
- Workload Protection
- Network Segmentation

**Application**
- Manual Application Testing
- Static Code Analysis
- Black Box Testing

**Agentic AI - Vulnerability Scanner**
- Autonomous Task Execution
- Proactive Assistance

**Agentic AI - Static Application Security Testing (SAST)**
- Autonomous Task Execution

## Top Snyk Alternatives
  - [Aikido Security](https://www.g2.com/products/aikido-security/reviews) - 4.6/5.0 (141 reviews)
  - [Mend.io](https://www.g2.com/products/mend-io/reviews) - 4.3/5.0 (105 reviews)
  - [Wiz](https://www.g2.com/products/wiz-wiz/reviews) - 4.7/5.0 (773 reviews)

