---
title: Snyk Reviews
meta_title: 'Snyk Reviews 2026: Details, Pricing, & Features | G2'
meta_description: Filter 135 reviews by the users' company size, role or industry
  to find out how Snyk works for a business like yours.
aggregate_rating:
  rating_value: 4.5
  review_count: 135
  scale: '5'
date_modified: '2026-08-09'
parent_category:
  name: "DevSecOps\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t"
  url: https://www.g2.com/categories/devsecops
---


# Snyk Reviews
**Vendor:** Snyk  
**Category:** [Software Composition Analysis Tools](https://www.g2.com/categories/software-composition-analysis)  
**Average Rating:** 4.5/5.0  
**Total Reviews:** 135
## About Snyk
Snyk (pronounced sneak) is a developer security platform for securing custom code, open source dependencies, containers, and cloud infrastructure all from a single platform. Snyk’s developer security solutions enable modern applications to be built securely, empowering developers to own and build security for the whole application, from code &amp; open source to containers &amp; cloud infrastructure. Secure while you code in your IDE: find issues quickly using the scanner, fix issues easily with remediation advice, verify the updated code. Integrate your source code repositories to secure applications: integrate a repository to find issues, prioritize with context, fix &amp; merge. Secure your containers as you build, throughout the SDLC: start fixing containers as soon as your write a Dockerfile, continuously monitor container images throughout their lifecycle, and prioritize with context. Secure build and deployment pipelines: Integrate natively with your CI/CD tool, configure your rules, find &amp; fix issues in your application, and monitor your applications. Secure your apps quickly with Snyk’s vulnerability scanning and automated fixes - Try for Free!



## Snyk Pros & Cons
**What users like:**

- Users value Snyk&#39;s **rapid vulnerability detection** , enabling efficient identification and remediation in development environments. (3 reviews)
- Users appreciate Snyk&#39;s **rapid vulnerability identification** , enhancing security through quick updates and effective integration. (3 reviews)
- Users value the **easy integrations** of Snyk, enhancing workflow efficiency in CI/CD pipelines and GitHub. (2 reviews)
- Users appreciate the **easy setup** of Snyk, enabling seamless integration with GitHub and efficient codebase scanning. (2 reviews)
- Users commend Snyk for its **intuitive GUI and customizable organization structure** , enhancing vulnerability management and reporting efficiency. (2 reviews)
- Integration Capabilities (2 reviews)
- Users appreciate the **easy integration setup** of Snyk, facilitating seamless vulnerability management in CI/CD pipelines. (2 reviews)
- Remediation Guidance (2 reviews)
- Remediation Solutions (2 reviews)
- Scanning Efficiency (2 reviews)

**What users dislike:**

- Users experience **false positives** from Snyk, leading to confusion and slowing down the scanning process. (2 reviews)
- Users feel the **poor interface design** of Snyk hinders usability, especially with the separate DAST interface. (2 reviews)
- Users face **pricing issues** with Snyk, as the cost can be high for accessing all features. (2 reviews)
- Users often face **scanning issues** such as false positives and slow scans, affecting overall efficiency and workflow. (2 reviews)
- Users report **false positives** and slow scans in Snyk, affecting efficiency and integration with other tools. (2 reviews)
- Users note the **lack of integration** of DAST and poor secret detection, requiring additional tools for code quality. (1 reviews)
- Dashboard Issues (1 reviews)
- Dashboard Usability (1 reviews)
- Delayed Detection (1 reviews)
- Users find Snyk to be **very expensive** , raising concerns about cost despite its long-term value. (1 reviews)

## Snyk Reviews
  ### 1. Essential in understanding our vulnerability landscape

**Rating:** 4.5/5.0 stars

**Reviewed by:** Verified User in Computer Networking | Mid-Market (51-1000 emp.)

**Reviewed Date:** March 31, 2021

**What do you like best about Snyk?**

Snyk's UI and tooling present complex information in a straightforward, easy-to-digest manner. These qualities make it easy for teams to spin up and start acting on the information given. With new services supported and other quality of life upgrades happening frequently, it makes using the tool a breeze. The number of supported services Snyk offers ensures we only need one tool for the many  environments we have.

**What do you dislike about Snyk?**

With our on-prem requirements, we've spent several cycles performing upgrades and transitioning to the brand new CNA offering. There have been some hiccups here and there, and sometimes it means we're not always on the latest version to utilize all the available features advertised. The team has been working hard to improve this aspect of the tool of the non-SaaS offering and I believe will no longer be a pain point very soon!

**What problems is Snyk solving and how is that benefiting you?**

From scanning docker images to dozens of team projects, we're able to aggregate and act on lots of information in a speedy way. This allows us to ship more secure code and environments, giving us better peace of mind we're staying secure with the latest package updates.

  ### 2. So useful and so easy to integrate in the Dev pipelines. Love the automation capabilities!

**Rating:** 5.0/5.0 stars

**Reviewed by:** Andrei h. | Senior Application Security Engineer, Mid-Market (51-1000 emp.)

**Reviewed Date:** January 13, 2021

**What do you like best about Snyk?**

The CLI is great, and the different integrations provided out of the box make it even better! We migrated from a tool that had very poor UX when trying to integrate with CI pipelines, not to mention the lack of integrations.

**What do you dislike about Snyk?**

That sometimes the CLI results and the GitHub integration results are different We've had that problem in the past several times and we were told to prefer the CLI results instead of the Github ones.

**Recommendations to others considering Snyk:**

If you're looking to automate the OSS scanning and integrate it into the pipelines (as part of a DevSecOps initiative), Snyk is by far the best tool I've seen.

**What problems is Snyk solving and how is that benefiting you?**

Removing the 3rd party vulnerabilities from our products, thus making a more secure supply chain. This helped us removing vulnerabilities from components that we ship on-prem to clients and no more having releases rejected by our clients.

Also, the GoLang scanning is not as comprehensive as the one for Java/C#

  ### 3. Best-in-class, developer-focused security scanner

**Rating:** 4.5/5.0 stars

**Reviewed by:** Verified User in Hospital & Health Care | Small-Business (50 or fewer emp.)

**Reviewed Date:** March 29, 2021

**What do you like best about Snyk?**

It is very simple to to integrate the CLI to both scan and continually monitor projects inside CI/CD pipelines and against PRs. On our Javascript, Python and Go projects, scanning is very fast and natively supports the Poetry and Yarn package managers.

The vulnerability database is very comprehensive and timely and contains a wealth of information beyond a severity score, often including PoC code, links to outstanding Github issues or PRs, HackerOne reports etc, as well as an indication of the maturity of any exploits out-in-the-wild. We have found that competing solutions tend to lag in this regard.

Snyk Advisor assists our developers when introducing new third party dependencies to go beyond popularity and consider other factors such as their license, security history and maintenance status.

The combination of the Open Source, Container and IaaC products is a very powerful combination of tools to assess security across the entire stack at the app, OS, and infra levels.

**What do you dislike about Snyk?**

The CLI, main dashboard and reports are great, but some of the other integrations are not quite as good. 

The native ECR scanner in the dashboard requires you to opt-in on a tag-basis, you can’t scan all images pushed by default without using the CLI. Snyk can automatically open PRs in Github to upgrade dependencies, but if you'd prefer to create Jira tickets that appears to be a manual process. Out-of-the-box notification support is currently limited to Slack as well.

**Recommendations to others considering Snyk:**

Consider how comprehensive and timely Snyk is in reporting vulnerabilities for your particular languages -- some may not be as comprehensive as others.

Consider whether the out-of-the-box integrations are suitable for your needs or if you will be heavily CLI-based.

**What problems is Snyk solving and how is that benefiting you?**

Security is a non-negotiable part of any SDLC but we work in an industry where it is particularly paramount. Surfacing security information to our developers directly on each PR and code push allows us to shorten the feedback loop and be as proactive as possible when it comes to addressing security vulnerabilities. 

Snyk also ensures we receive timely information on newly-disclosed vulnerabilities to better assess and plan mitigation work, and that we are license-compliant.

  ### 4. Snyk is a developer-focused, one-stop shop for our cloud & application security!

**Rating:** 4.5/5.0 stars

**Reviewed by:** Verified User in Information Technology and Services | Mid-Market (51-1000 emp.)

**Reviewed Date:** March 30, 2021

**What do you like best about Snyk?**

Snyk keeps on expanding its offering to cover all aspects of cloud and application security (IAC, kubernetes, containers, ...), and listens to customer input while doing that. The automation capabilities & integrations with SCMs such as Github & Gitlab greatly help to roll-out the tool for hundreds of projects.

**What do you dislike about Snyk?**

Some languages don't have all features (yet). New features are usually focused on Node.js.

**What problems is Snyk solving and how is that benefiting you?**

Snyk gives us full visibility on licensing issues, vulnerabilities & insecure cloud configurations within our repositories. The rich metadata attached to vulnerabilities allow us to focus our efforts on the most important & exploitable vulnerabilities. Since it easily integrates with our CI/CD pipelines, all developers working on a repository have instant feedback on potential vulnerabilities added in their merge requests.

  ### 5. Fugue provides meaningful insights into the compliance of our cloud systems.

**Rating:** 5.0/5.0 stars

**Reviewed by:** Sawyer W. | Enterprise Support Specialist, Small-Business (50 or fewer emp.)

**Reviewed Date:** August 12, 2021

**What do you like best about Snyk?**

Fugue makes it easy to generate compliance reports.

**What do you dislike about Snyk?**

The only downside I can think of is their focus on AWS but this past year they have made a big focus on expanding to Azure.

**What problems is Snyk solving and how is that benefiting you?**

We are using Fugue to visualize the compliance of our environments.

  ### 6. I use Snyk and maybe you should also

**Rating:** 4.0/5.0 stars

**Reviewed by:** Verified User in Consumer Goods | Mid-Market (51-1000 emp.)

**Reviewed Date:** February 23, 2021

**What do you like best about Snyk?**

It is really easy to use.  It gives good insights.  It does a thorough scan. Many integrations. Responsive support team eager and available to help.

**What do you dislike about Snyk?**

It has many integrations but it can be hard to know which one to use.  For example you can have it scan your repositories and you can have it scan as part of your build pipeline.  I'm not sure why we decided to use the one that we did.

**Recommendations to others considering Snyk:**

It is certainly worth giving it a try.  The team was very generous with the trial.

**What problems is Snyk solving and how is that benefiting you?**

It reports on the vulnerabilities in the open source projects I use and reminds me to upgrade them in a timely fashion.  I know if I don't upgrade regularly I will see a large number of vulnerabilities.

  ### 7. Brief review on Snyk

**Rating:** 3.0/5.0 stars

**Reviewed by:** Verified User in Computer Software | Mid-Market (51-1000 emp.)

**Reviewed Date:** March 31, 2021

**What do you like best about Snyk?**

The dashboard showing general information about security issues found and the experienced it brings up

**What do you dislike about Snyk?**

The way creating new Jira tickets. Somehow, it can make overabundant

**Recommendations to others considering Snyk:**

Snyk is an interesting software that supports you in SCA area. It easies to tracks, manages, and integrates.

**What problems is Snyk solving and how is that benefiting you?**

I would like to create one Jira ticket for one project or by priority. I wish Snyk would help me found more issues on the container in the Cloud-based environment (AWS, GCP...) the export report with details were found, the severity, recommendation, and auto raise notification and tickets.
I also wish to have got support when issues come up.

  ### 8. Fugue Keeps Your Infrastructure Compliant and Drift Free

**Rating:** 5.0/5.0 stars

**Reviewed by:** Justin R. | Systems Architect, Mid-Market (51-1000 emp.)

**Reviewed Date:** October 08, 2020

**What do you like best about Snyk?**

Fugue allows me to quickly identify what parts of our cloud infrastructure are not compliant with our policies, understand why that policy is important, what other components would be affected and then gives me the steps to remediate the problem.  Once everything is compliant, Fugue can monitor for drift and automatically correct things that go out of compliance.  The product already had a bunch of great pre-made policies for common compliance types, but you can also use an industry standard and open language to create custom rules for any compliance that your company may have.  Using the built-in visualizer lets you quickly see how your infrastructure components tie together and how the compliance failure in one area can affect other parts of your product.

Fugue, the company, has been laser focused on cloud compliance for years.  Their experience has led to an industry best product for ensuring that your cloud environment is secure and stays that way.  Compliance and drift monitoring are critical for anyone running production workloads in the cloud, and Fugue is the absolute best solution to provide those.

**What do you dislike about Snyk?**

Fugue has the experience and knowledgable staff to built the best-in-class compliance monitoring and enforcement solution, but sometimes there are features of the product that I would like to take advantage of, which don't yet fit with how I organized my cloud environment many years ago.  If I were building our cloud environment today, green field, I would have used current best practices which would better match up with how Fugue expects thing to be laid out.  They are always improving the product and soon this won't be a concern at all.  Overall this affects very few parts of our usage of Fugue, but it can be frustrating to have to wait for a feature to be rolled out.

**What problems is Snyk solving and how is that benefiting you?**

GlobalGiving uses Fugue to ensure that our environment is compliant with PCI, and that nothing changes within our environment which would then violate our policies.  Fugue continuously monitors for changes that might cause compliance violations or weaken our security, then alerts our staff so we can fix things before they cause any real problems.  We have reduced the number of accidental changes, and completely eliminated changes which were not made through our Infrastructure as Code solution.

  ### 9. Our experience with Fugue has been fantastic

**Rating:** 5.0/5.0 stars

**Reviewed by:** Dale C. | IT Manager, Mid-Market (51-1000 emp.)

**Reviewed Date:** October 06, 2020

**What do you like best about Snyk?**

Fugue has simplified the process of maintaining and demonstrating compliance for our cloud environment, a task that now requires fewer resources and a fraction of the time. With Fugue, we now have access to the full configuration and compliance history of our cloud and can analyze that data and create our own custom reports in ways we haven't been able to before. And the Fugue team has been great to work with and committed to our success with the product.

**What do you dislike about Snyk?**

Honestly, there's nothing we dislike. 
Like every system, there are a few bugs. But their support team has been very responsive to my engineers, working with them to either correct any bugs or answer any of our questions.

**What problems is Snyk solving and how is that benefiting you?**

Our biggest problem was to ensure that our SaaS products hosted on AWS met various security requirements (NIST, ISO, GDPR, SOC-2, etc). 
Fugue is able to do this easily. 
We are NIST-compliant, and we had a potential customer require us to be ISO-compliant. By going into Fugue and turning on the ISO compliance family, we were able to demonstrate that we were compliant at that level as well. That would have taken a month of engineering time to demonstrate, potentially losing that customer.

  ### 10. Best for secure your code

**Rating:** 4.5/5.0 stars

**Reviewed by:** Verified User in Information Technology and Services | Mid-Market (51-1000 emp.)

**Reviewed Date:** September 01, 2021

**What do you like best about Snyk?**

Easy to use. I use snyk extension on my vs code: first scan and fastly detects some security issues.
It creates pull request to fix security problem on your code.

**What do you dislike about Snyk?**

No integration with google cloud source code but only to GCR.

**What problems is Snyk solving and how is that benefiting you?**

The ability to capture vulnerabilities before deployment and when I'm coding.

  ### 11. Best automated vulnerability scanner for code!

**Rating:** 5.0/5.0 stars

**Reviewed by:** Leo C. | CISO, Mid-Market (51-1000 emp.)

**Reviewed Date:** March 30, 2021

**What do you like best about Snyk?**

Reporting structure is fantastic. Ease of implementation and how fast the scanning is of the codebase.

**What do you dislike about Snyk?**

No trending in the dashboard. xxxxxxxxxx

**Recommendations to others considering Snyk:**

If you are a Dev focused company, this is a must for security!

**What problems is Snyk solving and how is that benefiting you?**

The ability to capture vulnerabilities before deployment. Gamifying the reporting between our dev teams. Seeing ROI straight away.

  ### 12. Company that fits exactly what we were looking for

**Rating:** 4.5/5.0 stars

**Reviewed by:** Drew L. | SVP, Technology Infrastructure, Mid-Market (51-1000 emp.)

**Reviewed Date:** June 29, 2021

**What do you like best about Snyk?**

I like that they fill a gap in the compliance world that no one else really can compete with.

**What do you dislike about Snyk?**

I wish they had more of a relationship with HITRUST

**What problems is Snyk solving and how is that benefiting you?**

It helps assure us that we're staying HIPAA compliant.

  ### 13. A Great Fit for Our Compliance Needs

**Rating:** 5.0/5.0 stars

**Reviewed by:** David B. | Director of Infrastructure Services, Mid-Market (51-1000 emp.)

**Reviewed Date:** August 25, 2020

**What do you like best about Snyk?**

We are migrating a large production workload from a Managed AWS Provider account to our own AWS accounts. We were in need of a product to ensure our new accounts were configured properly and HIPAA compliant. We evaluated a number of vendors over a few months that provided automated AWS configuration compliance scans. We choose Fugue based on ease of use, feature support, and HIPPA compliance support. We have been using Fugue for a few months now and it has been a great tool that helps us ensure our new AWS accounts are configured securely and stay compliant.  In our testing we also found Fugue supported the most HIPAA controls across the various AWS services we use.

The interface is easy to use and understand. Rules seem to be well documented when more understanding or research is required. 

The Visualizer tool is a nice bonus. It provides a graphical representation of our AWS accounts. You can zoom in and see your compliance at the object level. 

The company seems very responsive to new ideas and feature requests.

**What do you dislike about Snyk?**

While HIPAA compliance is our most important control point we would like to see additional compliance offerings like HITRUST.

**What problems is Snyk solving and how is that benefiting you?**

We are ensuring our AWS accounts are configured with best practices and that they stay HIPAA compliant.

  ### 14. Scalable tool, it was easy to integrate multiple projects in no time.

**Rating:** 4.5/5.0 stars

**Reviewed by:** Verified User in Banking | Mid-Market (51-1000 emp.)

**Reviewed Date:** January 13, 2021

**What do you like best about Snyk?**

I believe that we had very good communication with Snyk representatives. We received support whenever it was needed, discussions were always professional and the actions were followed up on Snyk part. 
Another thing that helped us a lot was the scalability of the product. Very fast scans and easy to onboard new projects helped us speed the development process and let our developers focus on business aspects rather than integration concerns. With trusted partners like Snyk, we were able to automate and enforce a lot of SDLC practices and decrease the release frequency from once in 6 months to multiple per week.

**What do you dislike about Snyk?**

I cannot say I found something that I disliked. All feedback was received and addressed.

**What problems is Snyk solving and how is that benefiting you?**

We are developing banking software and security for us is not optional. We are using snyk for automatic OSA checks as part of our secure development life cycle. Every new merge is checked and this helps us to have a continuous delivery approach on a monolith of 1.5 millions of line of code where more than 50 developers are working on it.

  ### 15. Great Reports

**Rating:** 5.0/5.0 stars

**Reviewed by:** Shawn M. | Mid-Market (51-1000 emp.)

**Reviewed Date:** January 12, 2021

**What do you like best about Snyk?**

Able to view an organisation wide report on all the vulnerabilities of each package in the repos.

**What do you dislike about Snyk?**

I'm not sure if this is a feature, but maybe more automation like github dependency issues where a PR can be submitted with the click of a button from snyk.

**What problems is Snyk solving and how is that benefiting you?**

We are a security company and our customers security are highest priority, having snyk be proactive for us to jump on vulnerabilities in packages are critical.

  ### 16. Snyk enables you to stay safe and let you focus on business value creation

**Rating:** 4.0/5.0 stars

**Reviewed by:** Verified User in Airlines/Aviation | Enterprise (> 1000 emp.)

**Reviewed Date:** April 07, 2021

**What do you like best about Snyk?**

The vulnerability scanning tool can detect dependencies even if it is nested inside the project which is quite powerful.

**What do you dislike about Snyk?**

There are too many login options that my company is not preferred. Would be better if it can tightly integrate with the corporate standard

**What problems is Snyk solving and how is that benefiting you?**

Open sources vulnerabilities discovery and auto fix. It allows developers to fix most of the issue with just 1 click commit.

  ### 17. The best cybersecurity solutions for modern applications

**Rating:** 5.0/5.0 stars

**Reviewed by:** Rafael S. | Application Security, Mid-Market (51-1000 emp.)

**Reviewed Date:** March 29, 2021

**What do you like best about Snyk?**

It's really amazing when you find a company that truly understated your needs and provide the best tools for dealing with cybersecurity with modern applications. Snyk is the best tool for cybersecurity professional to deal with the DevSecOps and the shift-left.

**What do you dislike about Snyk?**

I don't see any downsides using Snyk right now

**What problems is Snyk solving and how is that benefiting you?**

We're using snyk for dealing with open source vulnerabilities and also Snyk code for our code base vulnerabilities

  ### 18. works great for us with mainly being a javascript and python shop.

**Rating:** 4.5/5.0 stars

**Reviewed by:** Verified User in Biotechnology | Mid-Market (51-1000 emp.)

**Reviewed Date:** January 12, 2021

**What do you like best about Snyk?**

developer-first and integrations work well with popular services like GitHub. CLI is also great as well.

**What do you dislike about Snyk?**

UI can sometime clunky and difficult to navigate. The API is good, but the Reporting API could use some improvements regarding getting stats on a group-level.

**What problems is Snyk solving and how is that benefiting you?**

Figuring out what our software is made of and the vulnerabilities within. Some benefits include seeing the amount of not-supported or abandoned projects we use and being able to report on it.

  ### 19. Fugue is a great tool to use to manage your compliance

**Rating:** 4.5/5.0 stars

**Reviewed by:** Verified User in Hospital & Health Care | Mid-Market (51-1000 emp.)

**Reviewed Date:** June 29, 2021

**What do you like best about Snyk?**

It is very intuitive and makes managing compliance easier. They have controls for everything from HIPAA to CIS. The customer support and documentation are also great and provide excellent help.

**What do you dislike about Snyk?**

The only current drawback is non support of AWS Organizations but that is a roadmap item.

**What problems is Snyk solving and how is that benefiting you?**

We use Fugue to manage HIPAA compliance in AWS.

**Official Response from Sivia Van Gundy:**

> Thank you for this review!  Fugue really appreciates it and we am to make you a success!

  ### 20. A robust platform to oversight from dev to prod

**Rating:** 4.0/5.0 stars

**Reviewed by:** Doan T. | Technology Security and Governance Manager, Mid-Market (51-1000 emp.)

**Reviewed Date:** March 31, 2021

**What do you like best about Snyk?**

A robust platform to give you an immediate view of your security posture in from development to production. Strong API support. Very good customer support.

**What do you dislike about Snyk?**

Lack of flexibility in data extraction for further reporing customization

**Recommendations to others considering Snyk:**

Try it immediately

**What problems is Snyk solving and how is that benefiting you?**

To ensure the development is clean before moving production not limited only to code but also container image, infra deployment..

  ### 21. Address your open source coverage concerns with Snyk OSS Scanner

**Rating:** 3.5/5.0 stars

**Reviewed by:** Rohit P. | Chief Information Security Officer (CISO), Small-Business (50 or fewer emp.)

**Reviewed Date:** January 12, 2021

**What do you like best about Snyk?**

Snyk was onboarded to help with security vulnerability and license spread visibility across the open source frameworks that are used across the company. It has truly been a groundbreaking service that we start utilizing from the get go both in terms of identifying risk as well as enabling pathways to remediation. I strongly feel the tool was targeted towards developers to help with cross-functional collaboration and visibility into both the dependencies and the defects they contain.

**What do you dislike about Snyk?**

Business Metrics and reports could be better

**What problems is Snyk solving and how is that benefiting you?**

Coverage across OSS projects and frameworks, while embedding security into CI/CD pipelines

  ### 22. You can't do cloud security better for cheaper

**Rating:** 5.0/5.0 stars

**Reviewed by:** Dave W. | Small-Business (50 or fewer emp.)

**Reviewed Date:** June 28, 2020

**What do you like best about Snyk?**

Upfront - we (New Light Technologies) are a Fugue partner but this does not color my comments below.  We became a partner due to my appreciation for the value Fugue provides.

- Immediate value: as soon as you turn it on Fugue will help you secure your environments and save money.  You will learn about resources that you likely are unaware of.
- Visibility: There is no easier way to track what has changed in your cloud environments, across multiple vendors.  I've tried other tools and writing my own scripts.  
-Trusted insight: When Fugue says your services are or are not compliant with a sec family (e.g. HIPAA, SOC, PCI, etc. ) you can trust their analysis.
-Customer focused - Fugue will work with you if you have needs or ideas that that they have not implemented.  Also, their development roadmap is inline with what we, cloud security folks, need.  And they are aggressive about releasing new features.

**What do you dislike about Snyk?**

-Not all services in AWS and Azure are covered: I realize this is a reality of developing software like Fugue and it's not that big of a deal but sometimes we run into a service that is not tracked.  When we come across these rare situations, we submit a feature request and Fugue is quick to add the new service coverage.

-Not all of my customers use Fugue:  We encounter situations where customers are not Fugue users.  This makes getting them compliant tough, and when we are forced to use other products in the market or attempt to validate things on our own, the true value of Fugue becomes apparent.

**Recommendations to others considering Snyk:**

Give it a try via their free trial.  The software sells itself.

**What problems is Snyk solving and how is that benefiting you?**

-Getting cloud environments safe and compliance with security families like: SOC, PIC, HIPAA, NIST 800-53, etc.
-Ensuring that compliant cloud environments do not deviate from the approved configuration.  This is done with drift detection and remediation.
-Discovering the breadth of our cloud accounts via tools like Fugue's Visualizer.

  ### 23. Fugue Compliance tool provides great value and visibility

**Rating:** 4.5/5.0 stars

**Reviewed by:** Verified User in Information Technology and Services | Mid-Market (51-1000 emp.)

**Reviewed Date:** August 26, 2020

**What do you like best about Snyk?**

I’ve been working with the team at Fugue for almost a year now.  Their customer service is excellent for working on issues from more of a collaborative approach than just a “Helpdesk” aspect.  Ankush and Amelia have been a pleasure to work with and get to know professionally.  It is apparent that this company believes in the services they provide.  They have accommodated demos, deep dives and they welcome feedback on the product.  We have more of a partnership with Fugue than just a vendor relationship.  I would highly recommend this product to anyone looking for a great way to scan for Compliance and share these details with teams whether it is SRE, IT or Risk and Compliance focused.

**What do you dislike about Snyk?**

Nothing specific at this time - new dashboard reporting coming soon!

**What problems is Snyk solving and how is that benefiting you?**

Fugue provides different types of scans related to security industry practices for ease of knowing how to prioritize work for teams.

  ### 24. Engineer friendly and trust worthy.

**Rating:** 4.5/5.0 stars

**Reviewed by:** Alin B. | Investments Champion & Technical Product Manager, Mid-Market (51-1000 emp.)

**Reviewed Date:** January 18, 2021

**What do you like best about Snyk?**

Quality of results which are available in a short period of time and on top of it,  the integration options.

**What do you dislike about Snyk?**

I would like to have an automatic integration with Jira when a vulnerability is discovered, not a manual process. And ability to create Jira tickets per project not in a general project.

**Recommendations to others considering Snyk:**

A top vendor to rely on!

**What problems is Snyk solving and how is that benefiting you?**

OSA and licensing. Safer usage of libs and shorter due diligence cycles.

  ### 25. First-class cloud compliance platform, wonderful to use

**Rating:** 5.0/5.0 stars

**Reviewed by:** Verified User in Information Technology and Services | Enterprise (> 1000 emp.)

**Reviewed Date:** October 13, 2020

**What do you like best about Snyk?**

Ability to visualize and easily navigate our cloud infrastructure, getting a birds-eye view of our configuration items and policies, with custom rules, alerts, and exceptions as needed. The policy enforcement is a powerful tool for correcting baseline drift. The front-end of the app is very well made so there are no UX problems in my view. I use a lot of tools, and am not shy about delivering the news when it is painful to use- Fugue is great to use.

**What do you dislike about Snyk?**

If I had to pick something annoying, I guess the visualizer could render faster.

**What problems is Snyk solving and how is that benefiting you?**

Change/ configuration management and visibility into our cloud security posture, with the ability to enforce policy. Provides a key component for DevSecOps.

  ### 26. Security

**Rating:** 5.0/5.0 stars

**Reviewed by:** Verified User in Government Administration | Small-Business (50 or fewer emp.)

**Reviewed Date:** February 23, 2021

**What do you like best about Snyk?**

Easy to use & maintain
Effective
Free for open repos

**What do you dislike about Snyk?**

Pricing model
Customer support (some are really good)

**Recommendations to others considering Snyk:**

Snyk is:
Simple to use 
Cost effective 
Easy to integrate 
Easy to monitor

**What problems is Snyk solving and how is that benefiting you?**

Early security defect discovery
Easy to monitor 
Easy to plan mitigation effort

  ### 27. Most accessible tool to set up. Good first step.

**Rating:** 5.0/5.0 stars

**Reviewed by:** Eugene O. | CTO

**Reviewed Date:** April 07, 2021

**What do you like best about Snyk?**

It's easy to set up and has good coverage

**What do you dislike about Snyk?**

Snyk lacks scanning vulnerabilities in C++ dependencies.

**What problems is Snyk solving and how is that benefiting you?**

We find vulnerabilities in dependencies.

  ### 28. Great tool for tracking vulnerabilities

**Rating:** 4.5/5.0 stars

**Reviewed by:** Verified User in Information Technology and Services | Mid-Market (51-1000 emp.)

**Reviewed Date:** January 12, 2021

**What do you like best about Snyk?**

It’s completely automated eliminates lots of manual intervention for fixing the vulnerability with different versions of repository.

**What do you dislike about Snyk?**

Sometimes the vulnerability alerts might not be genuine.

**Recommendations to others considering Snyk:**

It's a great automated software for detecting vulnerabilities.

**What problems is Snyk solving and how is that benefiting you?**

Identify secure vulnerability versions.

  ### 29. Recommend to use it 👍

**Rating:** 5.0/5.0 stars

**Reviewed by:** Евгений . | Technical Lead, Small-Business (50 or fewer emp.)

**Reviewed Date:** February 22, 2021

**What do you like best about Snyk?**

It's really easy to use and provides a perfect quality.

**What do you dislike about Snyk?**

Limit of tests run for free plan 😅But that's understandable.

**What problems is Snyk solving and how is that benefiting you?**

I find vulnerabilities in my source code on early stage.

  ### 30. Fugue makes it easy to holistically view your security posture and maintain awareness of it.

**Rating:** 5.0/5.0 stars

**Reviewed by:** Bill M. | Chief Technology Officer, Mid-Market (51-1000 emp.)

**Reviewed Date:** June 22, 2020

**What do you like best about Snyk?**

I love that Fugue makes it simple to audit my environment against security standards.  With just a few clicks, I can register my AWS environment and get a comprehensive inventory of all the resources we have, then evaluate all of those resources.  Then, as an added bonus, the ongoing evaluation of our environment helps me understand if we've had configuration drift.

In addition, the OPA (Open Policy Agent) framework still seems to be gaining in market share - with Kubernetes throwing their weight behind it. With this, my usage of Fugue will increase in that area as well.

**What do you dislike about Snyk?**

I haven't used the API *yet* for Fugue, more because everything that I need to do has been accomplished through their GUI.  In addition, picking up OPA (Open Policy Agent) will take some time, as it's something new which we have not done before.

**Recommendations to others considering Snyk:**

If you are thinking to try Fugue, take advantage of their free trial first - it will help you understand the product capabilities.  (You will probably get your feelings hurt, though, as almost every configuration out there will have a few flaws that Fugue will find!)

**What problems is Snyk solving and how is that benefiting you?**

We monitor our infrastructure that is running on Amazon Web Services with Fugue.  We have seen a benefit of much faster ability to perform comprehensive audits of our deployed resources.  In addition, having Fugue identify which resources are not tagged helps us ensure a consistency which we did not have before.

  ### 31. Easy to integrate into your build process

**Rating:** 4.0/5.0 stars

**Reviewed by:** Verified User in Financial Services | Enterprise (> 1000 emp.)

**Reviewed Date:** January 19, 2021

**What do you like best about Snyk?**

It was very easy for us to integrate snyk into out build pipeline

**What do you dislike about Snyk?**

Sometimes you get false positives and when you check the developers website it says that it's not an actual vulnerability

**What problems is Snyk solving and how is that benefiting you?**

finding vulnerabilities in our dependencies

  ### 32. Security with Ease

**Rating:** 4.5/5.0 stars

**Reviewed by:** Oskar L. | React Native Developer, Information Technology and Services, Small-Business (50 or fewer emp.)

**Reviewed Date:** March 16, 2019

**What do you like best about Snyk?**

The best feature of Snyk is that their bot can provide you with a PR on Github with all the security fixes. You just review and click merge. Security can sometimes be easy! I also like to be reminded through mail if I have any issues or if everything is fine. It's easy to maintain through the site.

**What do you dislike about Snyk?**

The UI would need a little bit love, especially on mobile web, but other than that the service works as I expect it. 

**Recommendations to others considering Snyk:**

As long as your code is publicly available you should definitely use Snyk to have a friend checking up on you. It's like taking your code to the doctor.

**What problems is Snyk solving and how is that benefiting you?**

Maintaining Javascript projects on Github and making sure the security is up to date.

  ### 33. Effective, targeted product - does its job well

**Rating:** 5.0/5.0 stars

**Reviewed by:** Verified User in Management Consulting | Enterprise (> 1000 emp.)

**Reviewed Date:** February 27, 2019

**What do you like best about Snyk?**

Ease of automation - can do through command line or integration with version control system

**What do you dislike about Snyk?**

Nothing really, other than knowing how many vulnerabilities are out there!

**What problems is Snyk solving and how is that benefiting you?**

Allows us to leverage open-source while minimizing security concerns - especially important when dealing with enterprise clients and data. 

  ### 34. Great for stopping vulnerabilities before they get merged.

**Rating:** 4.5/5.0 stars

**Reviewed by:** Window B. | Small-Business (50 or fewer emp.)

**Reviewed Date:** February 21, 2019

**What do you like best about Snyk?**

Multiple language support, rejection of pull requests with recommendations to fix.

**What do you dislike about Snyk?**

Not much. Now that PHP is supported, it covers all languages we use.

**What problems is Snyk solving and how is that benefiting you?**

Simplified management and reduction of vulnerabilities introduced in custom and third party code.

  ### 35. Fantastic, just wish it supported PHP

**Rating:** 4.5/5.0 stars

**Reviewed by:** Verified User in Internet | Small-Business (50 or fewer emp.)

**Reviewed Date:** June 28, 2018

**What do you like best about Snyk?**

GitLab and GitHub integration, rejects pull/merge requests if vulnerable code introduced, recommends remediation steps.

**What do you dislike about Snyk?**

Wish it supported PHP like it does JavaScript. With that, entire codebase would be supported.

**Recommendations to others considering Snyk:**

If you use GitHub or GitLab repos, look into it.

**What problems is Snyk solving and how is that benefiting you?**

See "what do you like best." Prevents insecure code from being merged.


## Snyk Discussions
  - [What is Snyk scanning?](https://www.g2.com/discussions/what-is-snyk-scanning) - 2 comments, 2 upvotes
  - [Is Snyk a SaaS?](https://www.g2.com/discussions/is-snyk-a-saas) - 2 comments
  - [How good is Snyk?](https://www.g2.com/discussions/how-good-is-snyk) - 2 comments

- [View Snyk pricing details and edition comparison](https://www.g2.com/products/snyk/reviews?page=3&qs=pros-and-cons&section=pricing&secure%5Bexpires_at%5D=2026-08-13+12%3A38%3A37+-0500&secure%5Bsession_id%5D=b3360f06-baf9-440a-99ca-f884a53bd792&secure%5Btoken%5D=f7868498253aff2e7f1191d8aa44aad36aa9f091e61f7842147982f195cf52a3&format=llm_user)
## Snyk Integrations
  - [Amazon Elastic Container Registry (ECR)](https://www.g2.com/products/amazon-elastic-container-registry-ecr/reviews)
  - [Azure Pipelines](https://www.g2.com/products/azure-pipelines/reviews)
  - [Cursor](https://www.g2.com/products/cursor/reviews)
  - [GitHub](https://www.g2.com/products/github/reviews)
  - [Slack Connector for Jira](https://www.g2.com/products/slack-connector-for-jira/reviews)

## Snyk Features
**Additional Functionality**
- Tagging
- Natural Language Processing
- Data Extraction
- Multi-Language
- Predictive Analytics
- Drag & Drop
- Speech Recognition
- Reporting/Analytics
- Data Storage Management
- Virtual Personal Assistant (VPA)
- AI Copilot
- Customer Segmentation
- Collaboration Tools
- Data Import/Export
- Generative AI
- For eCommerce
- Role-Based Permissions
- Customizable Branding
- Search/Filter
- Monitoring
- Document Management
- API
- Data Visualization
- Trend Analysis
- Machine Learning
- Access Controls/Permissions
- Alerts/Escalation
- Performance Metrics
- Real-Time Data
- Third-Party Integrations
- Mobile App
- Multiple Data Sources
- For Sales Teams/Organizations
- Sentiment Analysis
- Activity Dashboard
- Chatbot
- Workflow Automation

**Additional Functionality**
- Code Generation
- Text to Image
- Generative AI
- API
- Natural Language Processing
- Virtual Characters and Avatars
- Content Generation
- Personalization and Recommendation
- Conditional Generation
- Transformer Model
- Automated Image & Video Editing
- Interactive and Co-Creative Systems
- Text Summarization
- Data Augmentation
- Variation Autoencoder Models
- Adversarial Training
- Transfer Learning and Fine-tuning
- Simulation and Scenario Generation
- Creative Design
- AI Copilot
- Prompt Engineering
- Foundation Model

**Administration**
- API / Integrations
- Extensibility

**Administration**
- Risk Scoring
- Security Auditing
- Configuration Management
- Metadata Management
- Policy Management
- Incident Management
- Vulnerability Management
- Compliance Management
- User Management
- Deployment Management
- Audit Management
- Patch Management
- Application Security
- Runtime Container Security

**Performance**
- Issue Tracking
- Detection Rate
- False Positives
- Automated Scans
- Anomaly/Malware Detection

**Functionality - Software Composition Analysis **
- Language Support
- Integration
- Transparency

**Security**
- Tampering
- Malicious Code
- Verification
- Security Risks

**Functionality - Software Bill of Materials (SBOM)**
- Format Support
- Annotations
- Attestation

**Performance - AI AppSec Assistants**
- Remediation
- Real-time Vulnerability Detection
- Accuracy

**Analysis**
- Real-Time Analytics
- Issue Tracking
- Static Code Analysis
- Code Analysis
- Integrated Development Environment

**Monitoring**
- Continuous Image Assurance
- Behavior Monitoring
- Observability
- Continuous Monitoring
- Real-Time Monitoring

**Network**
- Compliance Testing
- Perimeter Scanning
- Configuration Monitoring
- Vulnerability Scanning
- Source-Code Scanning
- Web Scanning

**Effectiveness - Software Composition Analysis**
- Remediation Suggestions
- Continuous Monitoring
- Thorough Detection

**Tracking**
- Bill of Materials
- Audit Trails
- Monitoring

**Management - Software Bill of Materials (SBOM)**
- Monitoring
- Dashboards
- User Provisioning

**Integration - AI AppSec Assistants**
- Stack Integration
- Workflow Integration
- Codebase Contextual Awareness

**Testing**
- Command-Line Tools
- Manual Testing
- Test Automation
- Compliance Testing
- Source-Code Scanning
- Detection Rate
- False Positives
- Multi-Language Scanning

**Protection**
- Dynamic Image Scanning
- Runtime Protection
- Workload Protection
- Network Segmentation
- Container Scanning
- Vulnerability Scanning

**Application**
- Manual Application Testing
- Static Code Analysis
- Black Box Testing
- Risk Analysis

**Additional Functionality**
- Two-Factor Authentication
- Third-Party Integrations
- Intrusion Detection System
- Continuous Integration
- Customizable Reports
- Continuous Delivery
- Activity Dashboard
- Security Testing
- Audit Trail
- Risk Alerts
- Access Controls/Permissions
- API
- AI Copilot
- Continuous Deployment
- Threat Response
- Reporting & Statistics
- Authentication
- Encryption
- Threat Intelligence
- Risk Analysis
- For DevSecOps
- Generative AI
- Reporting/Analytics
- Container Isolation
- Risk Assessment
- Search/Filter
- Vulnerability/Threat Prioritization

**Agentic AI - Vulnerability Scanner**
- Autonomous Task Execution
- Proactive Assistance

**Agentic AI - Static Application Security Testing (SAST)**
- Autonomous Task Execution

**Additional Functionality**
- SSL Security
- HIPAA Compliant
- API
- Threat Response
- Endpoint Protection
- Maintenance Scheduling
- Third-Party Integrations
- Security Auditing
- Application Security
- Encryption
- Network Security
- Real-Time Reporting
- AI Copilot
- Reporting/Analytics
- Authentication
- Financial Data Protection
- Anti Virus
- Secure Data Storage
- Virus Definition Update
- Activity Dashboard
- VPN
- Audit Trail
- Anti Spam
- Access Controls/Permissions
- Data Visualization
- Alerts/Escalation
- Data Security
- Runtime Container Security
- Asset Discovery
- Threat Intelligence
- Vulnerability Protection
- Alerts/Notifications
- Vulnerability/Threat Prioritization
- Generative AI
- SQL Injections
- Real-Time Analytics
- Threat Protection
- Web-Application Security
- Password Protection
- Website Crawling
- Vulnerability Assessment

**Additional Functionality**
- Debugging
- Generative AI
- AI Copilot
- For Developers
- Deployment Management
- Application Security
- Dashboard

## Top Snyk Alternatives
  - [Aikido Security](https://www.g2.com/products/aikido-security/reviews) - 4.6/5.0 (255 reviews)
  - [Mend.io](https://www.g2.com/products/mend-io/reviews) - 4.3/5.0 (117 reviews)
  - [Veracode Application Security Platform](https://www.g2.com/products/veracode-application-security-platform/reviews) - 3.8/5.0 (25 reviews)

