# ZeroThreat Reviews
**Vendor:** ZeroThreat  
**Category:** [Penetration Testing Tools](https://www.g2.com/categories/penetration-testing-tools)  
**Average Rating:** 4.8/5.0  
**Total Reviews:** 10
## About ZeroThreat
ZeroThreat is an AI-powered web application and API penetration testing platform designed to identify real, exploitable vulnerabilities, not just surface-level findings. Built for modern engineering teams, it combines Agentic AI pentesting with a high-performance scanning engine to deliver up to 10× faster, deeply validated security testing. Unlike traditional DAST tools that rely on static signatures and generate excessive noise, ZeroThreat executes adaptive, attacker-style workflows that evolve based on application behavior. Its interpreter-driven vulnerability intelligence continuously ingests emerging threats and newly disclosed CVEs, enabling near real-time detection updates and rapid CVE-to-exploit mapping. The platform supports over 100,000 vulnerability checks, including native Nuclei template execution, and extends beyond known issues with zero-day detection through behavioral pattern analysis. It validates every finding through live exploit execution, ensuring only real, impactful vulnerabilities are reported, with clear proof of risk and exposed data.



## ZeroThreat Pros & Cons
**What users like:**

- Users praise the **ease of use** of ZeroThreat, appreciating its seamless integration and intuitive interface. (9 reviews)
- Users appreciate the **real-time vulnerability detection** of ZeroThreat, enhancing security without disrupting existing workflows. (8 reviews)
- Users commend ZeroThreat for its **accuracy in detecting vulnerabilities** , significantly reducing false positives and enhancing efficiency. (7 reviews)
- Users find the **setup ease** of ZeroThreat impressive, allowing for quick and seamless integration into workflows. (7 reviews)
- Users appreciate the **easy setup** of ZeroThreat, enabling quick integration and efficient scanning without hassle. (6 reviews)
- Security (6 reviews)
- Automated Scanning (5 reviews)
- Users appreciate the **automation and speed** of ZeroThreat, allowing for efficient vulnerability management within development processes. (5 reviews)
- Efficiency (5 reviews)
- Scanning Efficiency (5 reviews)

**What users dislike:**

- Users find the **inefficient filtering** in ZeroThreat&#39;s reporting section makes locating specific scan results time-consuming. (3 reviews)
- Users face **integration issues** with ZeroThreat, particularly regarding compatibility with tools and OS transitions. (3 reviews)
- Users wish for **limited integrations** with other tools, making it challenging to fit ZeroThreat into their existing systems. (3 reviews)
- Users report **slow performance** with ZeroThreat, particularly in loading times and feature responsiveness, impacting efficiency. (3 reviews)
- Users note that **UX improvements** , like better filtering and faster loading, could enhance ZeroThreat&#39;s overall experience. (3 reviews)
- Complex Navigation (2 reviews)
- Difficult Navigation (2 reviews)
- Users report **occasional false positives** with ZeroThreat, acknowledging that some noise is typical for such software. (2 reviews)
- Inadequate Reporting (2 reviews)
- Lacking Features (2 reviews)

## ZeroThreat Reviews
  ### 1. Continuous Testing & Early Fixes

**Rating:** 5.0/5.0 stars

**Reviewed by:** Ethan H. | DevSecOps Lead, Mid-Market (51-1000 emp.)

**Reviewed Date:** November 07, 2025

**What do you like best about ZeroThreat?**

Honestly, the best part is how smooth the setup was. I just plugged it into our CI/CD pipeline once, and now every single build gets scanned automatically. It feels like an extra QA step that we don’t even have to think about. I love that devs now see issues right inside their workflow - it’s made them way more proactive about fixing things early, instead of tossing them to our security team later.

**What do you dislike about ZeroThreat?**

Not a major gripe, but I do wish there were a few more native CI/CD integrations. We had to work around that a bit to fit our setup. Hoping they add those soon.

**What problems is ZeroThreat solving and how is that benefiting you?**

It’s helped us catch security issues early in the development process instead of after deployment. It scans every build automatically within our CI/CD pipeline, which saves a lot of manual effort and late fixes. Our dev team is now more aware of security best practices, and releases go out with fewer vulnerabilities. Overall, it’s made security feel like a natural part of development rather than an afterthought. It has improved both our speed and confidence in production releases.

  ### 2. Accurate Scans Without All the False Alarms

**Rating:** 4.5/5.0 stars

**Reviewed by:** Aiden M. | Security Engineer, Enterprise (> 1000 emp.)

**Reviewed Date:** October 28, 2025

**What do you like best about ZeroThreat?**

I’ve used a bunch of scanners before, and most of them drown you in false positives. ZeroThreat.ai felt different right from the first scan. It caught a few logic issues in our signup and checkout flows that I honestly didn’t expect a pentesting tool to pick up. As a security engineer, what stood out to me was the accuracy. Well, I don’t have to spend hours validating noise anymore. It’s made my work a lot more efficient.

**What do you dislike about ZeroThreat?**

The only area that could use improvement is the navigation and filtering of historical scan results. It takes a little time to get accustomed to the interface. Once familiar, it works well, but a slightly more intuitive or streamlined UI would make the experience even smoother.

**What problems is ZeroThreat solving and how is that benefiting you?**

It helps us detect real, exploitable issues continuously instead of relying on quarterly manual pentests. Also we use ZeroThreat primarily for continuous web application penetration testing of our customer-facing dashboards. The platform helps our team to identify critical security gaps, including business logic flaws and API-level vulnerabilities, much earlier in the development cycle. This proactive approach has significantly improved our overall security posture and reduced the dependency on traditional, time-bound manual pentests.

  ### 3. Fast, Low-Noise AI Vulnerability Validation That Fits CI/CD

**Rating:** 4.0/5.0 stars

**Reviewed by:** Laxmi P. | Engineering lead, Enterprise (> 1000 emp.)

**Reviewed Date:** March 19, 2026

**What do you like best about ZeroThreat?**

I like Zero Threat for its AI-driven vulnerability Validation, fast scanning, and low false positives. It integrates well with modern apps and CI/CD pipelines, making it useful for continuous testing, though it still needs to be combined with manual VAPT for deeper security coverage.

**What do you dislike about ZeroThreat?**

I dislike that zero threat doesn't match the depth of manual VAPT, especially for complex or business logic issues. It relies heavily on automation, so some edge cases can be missed, and occasional false positives still require manual validation

**What problems is ZeroThreat solving and how is that benefiting you?**

Zero Threat solves the problem of time-consuming testing and excessive false positives. It helps by automating validation and speeding up scans, so I can focus on real vulnerabilities instead of wasting time on repetitive or low value findings.

  ### 4. Helped us save time and fix issues faster

**Rating:** 5.0/5.0 stars

**Reviewed by:** Naresh D. | Vice President of Product Development, Mid-Market (51-1000 emp.)

**Reviewed Date:** October 01, 2025

**What do you like best about ZeroThreat?**

ZeroThreat has been a big help for our team. Setup was effortless and scans run in minutes. The reports are easy to understand, so we spend less time analyzing and more time resolving issues. From my perspective as a Product Owner, the best part is how seamlessly it fits into our development pipeline — giving us the confidence to fix vulnerabilities at the same speed we release. That’s been a real game changer for us.

**What do you dislike about ZeroThreat?**

So far, nothing major—just wish there were even more integrations with our existing tools.

**What problems is ZeroThreat solving and how is that benefiting you?**

It removes the hassle of setup and gives straightforward insights. ZeroThreat services address critical vulnerabilities, including those outlined in the OWASP Top 10, as well as threats like XSS and MySQL injection. This proactive approach helps us meet website security standards, ultimately safeguarding our data, protecting our users, and ensuring the trustworthiness and reliability of our online presence.

  ### 5. Effortless Security, Seamlessly Integrated

**Rating:** 4.5/5.0 stars

**Reviewed by:** Denae V. | Accountant, Accounting, Small-Business (50 or fewer emp.)

**Reviewed Date:** November 11, 2025

**What do you like best about ZeroThreat?**

I love how ZeroThreat seamlessly integrates into our existing workflow, ensuring that our applications and APIs remain secure without adding extra workload on our team. The real-time vulnerability alerts are incredibly valuable as they appear directly in our workflow, allowing us to address security issues promptly before reaching production. I also appreciate the clean and intuitive interface, which makes it user-friendly and effective. The automation feature is a standout; it operates efficiently in the background, scanning each build without requiring manual input. This drastically reduces the need for manual security checks and third-party audits, speeding up our release process while preventing delays. ZeroThreat provides clear, actionable reports free from confusing jargon, which streamlines our security management. It integrates smoothly with our CI/CD tools like Jenkins and GitHub Actions, enabling automated scanning with each new build. Additionally, linking ZeroThreat with Slack and Jira enhances our team's communication and issue management, keeping everyone informed with minimal disruption. Its setup was swift and uncomplicated, which made the initial integration a breeze. I’m impressed by its accuracy in detecting vulnerabilities, which significantly cuts down on false positives compared to our previous tool. Overall, ZeroThreat brings reliability and efficiency to our security operations, earning it a strong recommendation.

**What do you dislike about ZeroThreat?**

There are a few small things that could be improved with ZeroThreat. The reporting section lacks sufficient filter and sorting options, which can make finding specific scan results or older data a bit time-consuming. Additionally, while the UI is generally clean, some areas could benefit from faster loading times, especially when handling large projects. I would also appreciate the addition of a dark mode and deeper integrations with other DevOps tools like GitLab and Bitbucket. These are more like nice-to-have features rather than major issues, but they would enhance the overall experience.

**What problems is ZeroThreat solving and how is that benefiting you?**

I find ZeroThreat keeps our apps secure by automating vulnerability scans, saving us time on manual checks, and ensuring faster, safer releases. Its real-time alerts and seamless CI/CD integration enhance our workflow efficiency significantly.

  ### 6. ZeroThreat - Great for external and  Internal Infrastructure

**Rating:** 5.0/5.0 stars

**Reviewed by:** Danilo  M. | IT Risk Specialist, Enterprise (> 1000 emp.)

**Reviewed Date:** November 08, 2025

**What do you like best about ZeroThreat?**

Our client loves the visibility across all System, Network, AWS, Azure as well to Active Directory, which comes very handy during  DDOS attacks. NOC team and senior stakeholder need ZeroThreat livability across all intrusion. This is something can only be achieved via  ZeroThreat

**What do you dislike about ZeroThreat?**

We had given Demo's as well arranged  POC's for  large client  base in Australia. So far, we are yet to hear  of anything that ZeroThreat cannot do.

**What problems is ZeroThreat solving and how is that benefiting you?**

During these uncertain times, wherein organization are looking at a cost cuts, without compromising security. That's where ZeroThreat comes handy... Also, easy set up, intuitive UI and Integration with other 3rd party.

  ### 7. Excellent  security management tool for log-in info

**Rating:** 5.0/5.0 stars

**Reviewed by:** Luigi  S. | Data Analyst, Banking, Enterprise (> 1000 emp.)

**Reviewed Date:** November 08, 2025

**What do you like best about ZeroThreat?**

Provides essential log-in info for multiple platforms in our case, Windows servers and  IBMi system browser-based  access to a simple dashboard.

**What do you dislike about ZeroThreat?**

Sometimes features don't lag , or don't provide the level of detail we expect. Today when I click on the ''LOG''. I received an error message that the event logger refused to connect. This was the 2nd error message I received so far but actually a  great use to our company.

**What problems is ZeroThreat solving and how is that benefiting you?**

Provides basic log-in data in a centralized platform, good for auditing purposes and for compliance reasons. Work across multiple system platforms.

  ### 8. Outstanding tool that provides comprehensive feedback

**Rating:** 5.0/5.0 stars

**Reviewed by:** Gavin A. | Managing Director, Small-Business (50 or fewer emp.)

**Reviewed Date:** January 19, 2026

**What do you like best about ZeroThreat?**

The scans are deep and comprehensive and the reports are detailed providing excellent feedback to our team.

**What do you dislike about ZeroThreat?**

As it is so comprehensive, the initial setup can be quite complex.

**What problems is ZeroThreat solving and how is that benefiting you?**

It allows us run security scans for each software release to ensure we are maintaining our security and reducing risk.

  ### 9. Great tool that provide useful insights

**Rating:** 5.0/5.0 stars

**Reviewed by:** Darragh H. | Head of Sales, Small-Business (50 or fewer emp.)

**Reviewed Date:** October 06, 2025

**What do you like best about ZeroThreat?**

ZeroThreat lives up to its promise, offering automation, speed, and clear vulnerability reports. The scans were easy to setup and reports were clear on issues that were found.

**What do you dislike about ZeroThreat?**

There are occasional false positives and some noise, but that's to be expected with software of this kind.

**What problems is ZeroThreat solving and how is that benefiting you?**

For our ISO certs, we are required to scan evidence of completing security compliance tests. We it being easy to use, ZeroThreat ensures that these take place and any issues found are fixed quickly.

  ### 10. Automated Pentesting That Devs Actually Use

**Rating:** 5.0/5.0 stars

**Reviewed by:** Verified User in Wholesale | Small-Business (50 or fewer emp.)

**Reviewed Date:** October 03, 2025

**What do you like best about ZeroThreat?**

We’ve been impressed with ZeroThreat’s developer-first DAST approach. Setup was nearly instant, scans ran quickly, and the findings mapped cleanly to OWASP Top 10 issues with practical remediation tips. The CI/CD integrations and GitHub Action make it easy to keep security checks in our pipeline, and the Chrome “Recorder” add-on is handy for capturing complex user flows before scanning. It’s a smart way to reduce manual pentest effort while keeping velocity.

**What do you dislike about ZeroThreat?**

The UI is clean, but a few places could use extra tooltips/context so new users know exactly how a setting affects a scan.

**What problems is ZeroThreat solving and how is that benefiting you?**

ZeroThreat replaces our ad-hoc, manual pentests with continuous dynamic testing for our web app and APIs. It finds OWASP-class issues early in CI/CD, gives clear fix guidance, and cuts noise so engineers can remediate in hours—not weeks. Net result: fewer regressions, faster releases, and a stronger security posture for our customers.



- [View ZeroThreat pricing details and edition comparison](https://www.g2.com/products/zerothreat/reviews?section=pricing&secure%5Bexpires_at%5D=2026-05-15+23%3A59%3A43+-0500&secure%5Bsession_id%5D=74b501ac-fdea-47de-a6bd-3a04558e8cd6&secure%5Btoken%5D=ff9e0b11a319e184f320cae0c14ed6320958db5562882bb87b50a5f6a0d901cd&format=llm_user)
## ZeroThreat Integrations
  - [GitHub](https://www.g2.com/products/github/reviews)
  - [Slack](https://www.g2.com/products/slack/reviews)

## ZeroThreat Features
**Administration**
- Content Delivery
- Dashboard & Reporting
- Alerting

**Administration**
- API / Integrations
- Extensibility
- Reporting and Analytics

**Administration**
- API / Integrations
- Extensibility

**Performance**
- Issue Tracking
- Detection Rate
- False Positives
- Automated Scans

**API Management **
- API Discovery
- API Monitoring
- Reporting
- Change Management

**Cloud Visibility**
- Data Discovery
- Cloud Registry
- Cloud Gap Analytics

**Risk Analysis**
- Blacklist and Whitelist
- Vulnerability Assessment
- Security Auditing

**Analysis**
- Issue Tracking
- Reconnaissance
- Vulnerability Scan

**Analysis**
- Reporting and Analytics
- Issue Tracking
- Vulnerability Scan

**Network**
- Compliance Testing
- Perimeter Scanning
- Configuration Monitoring

**Security Testing**
- Compliance Monitoring
- API Verification
- API Testing

**Generative AI - Security Compliance**
- Predictive Risk
- Automated Documentation

**Security**
- Data Security
- Data loss Prevention
- Security Auditing

**Threat Protection**
- Firewall
- DDoS Protection
- Malware Detection
- Malware Removal

**Testing**
- Command-Line Tools
- Manual Testing
- Test Automation
- Performance and Reliability

**Testing**
- Manual Testing
- Test Automation
- Compliance Testing
- Black-Box Scanning
- Detection Rate
- False Positives

**Application**
- Manual Application Testing
- Static Code Analysis
- Black Box Testing

**Security Management**
- Security and Policy Enforcement
- Anomoly Detection
- Bot Detection

**Identity**
- SSO
- Governance
- User Analytics

**Generative AI**
- AI Text Summarization

**Agentic AI - Vulnerability Scanner**
- Autonomous Task Execution
- Proactive Assistance

## Top ZeroThreat Alternatives
  - [Cloudflare Application Security and Performance](https://www.g2.com/products/cloudflare-application-security-and-performance/reviews) - 4.5/5.0 (578 reviews)
  - [JumpCloud](https://www.g2.com/products/jumpcloud/reviews) - 4.5/5.0 (3,830 reviews)
  - [Vanta](https://www.g2.com/products/vanta/reviews) - 4.6/5.0 (2,406 reviews)

