
Easy to set-up and to use, without compromising on custom use-cases with the API and CLI features.
Very exceptional coverage in terms of security database, and works with the vast majority of the different programming languages we implement.
Great Features already in place and more are coming with Snyk Code (SAST) that was recently announced. Review collected by and hosted on G2.com.
The way the different projects are grouped and presented in the UI could be improved (especially if you have a lot of them, and are using multiple features, it can get confusing quickly)
Documentation: It can be troublesome to find how to use a specific feature, as the documentation is often hard to navigate. Review collected by and hosted on G2.com.
The CLI is great, and the different integrations provided out of the box make it even better! We migrated from a tool that had very poor UX when trying to integrate with CI pipelines, not to mention the lack of integrations. Review collected by and hosted on G2.com.
That sometimes the CLI results and the GitHub integration results are different We've had that problem in the past several times and we were told to prefer the CLI results instead of the Github ones. Review collected by and hosted on G2.com.
It is really easy to use. It gives good insights. It does a thorough scan. Many integrations. Responsive support team eager and available to help. Review collected by and hosted on G2.com.
It has many integrations but it can be hard to know which one to use. For example you can have it scan your repositories and you can have it scan as part of your build pipeline. I'm not sure why we decided to use the one that we did. Review collected by and hosted on G2.com.
I believe that we had very good communication with Snyk representatives. We received support whenever it was needed, discussions were always professional and the actions were followed up on Snyk part.
Another thing that helped us a lot was the scalability of the product. Very fast scans and easy to onboard new projects helped us speed the development process and let our developers focus on business aspects rather than integration concerns. With trusted partners like Snyk, we were able to automate and enforce a lot of SDLC practices and decrease the release frequency from once in 6 months to multiple per week. Review collected by and hosted on G2.com.
I cannot say I found something that I disliked. All feedback was received and addressed. Review collected by and hosted on G2.com.
Able to view an organisation wide report on all the vulnerabilities of each package in the repos. Review collected by and hosted on G2.com.
I'm not sure if this is a feature, but maybe more automation like github dependency issues where a PR can be submitted with the click of a button from snyk. Review collected by and hosted on G2.com.
Snyk was onboarded to help with security vulnerability and license spread visibility across the open source frameworks that are used across the company. It has truly been a groundbreaking service that we start utilizing from the get go both in terms of identifying risk as well as enabling pathways to remediation. I strongly feel the tool was targeted towards developers to help with cross-functional collaboration and visibility into both the dependencies and the defects they contain. Review collected by and hosted on G2.com.
Business Metrics and reports could be better Review collected by and hosted on G2.com.
Quality of results which are available in a short period of time and on top of it, the integration options. Review collected by and hosted on G2.com.
I would like to have an automatic integration with Jira when a vulnerability is discovered, not a manual process. And ability to create Jira tickets per project not in a general project. Review collected by and hosted on G2.com.
It’s completely automated eliminates lots of manual intervention for fixing the vulnerability with different versions of repository. Review collected by and hosted on G2.com.
Sometimes the vulnerability alerts might not be genuine. Review collected by and hosted on G2.com.
It was very easy for us to integrate snyk into out build pipeline Review collected by and hosted on G2.com.
Sometimes you get false positives and when you check the developers website it says that it's not an actual vulnerability Review collected by and hosted on G2.com.
The best feature of Snyk is that their bot can provide you with a PR on Github with all the security fixes. You just review and click merge. Security can sometimes be easy! I also like to be reminded through mail if I have any issues or if everything is fine. It's easy to maintain through the site. Review collected by and hosted on G2.com.
The UI would need a little bit love, especially on mobile web, but other than that the service works as I expect it. Review collected by and hosted on G2.com.
GitLab and GitHub integration, rejects pull/merge requests if vulnerable code introduced, recommends remediation steps. Review collected by and hosted on G2.com.
Wish it supported PHP like it does JavaScript. With that, entire codebase would be supported. Review collected by and hosted on G2.com.