Sign in
Categories
Your Saved List Become a Channel Partner Sell in AWS Marketplace Amazon Web Services Home Help

Reviews from AWS Marketplace

0 AWS reviews
  • 5 star
    0
  • 4 star
    0
  • 3 star
    0
  • 2 star
    0
  • 1 star
    0

External reviews

115 reviews
from G2

External reviews are not included in the AWS star rating for the product.


    Huseyin S.

Easy to use

  • November 10, 2022
  • Review verified by G2

What do you like best about the product?
I don't know much about DevOps, but sometimes I forget to update packages when doing many projects. Since Synk opens PR for all of them, I can directly merge to the main branch.
What do you dislike about the product?
maybe reports can be made available to free users at a certain rate so we can see what kind of thing can happen.
What problems is the product solving and how is that benefiting you?
I usually try to update NPM packages after pushing the application to git.


    Sean P.

Powerful analysis to reduce risk in your applications

  • November 08, 2022
  • Review verified by G2

What do you like best about the product?
I like the comprehensive and detailed reporting structure that Synk provides. When possible, Snyk will provide remediations to issues it finds and allows me to integrate with JIRA or other management tools to ensure I don't lose track of important updates. Setup of Snyk is surprisingly easy and I really appreciate the integrations it provides with Bitbucket to make sure all my code is secure. Beyond third party library scanning, the license, container, and live code tracking features are things that look powerful but haven't had a chance to fully try out yet. Given the quality I've seen in most of the tools, I'm sure they are equally great.
What do you dislike about the product?
The biggest downside to Snyk is the pricing point for medium sized businesses. The free tier does a lot and can be used by most small businesses. However, when you are scaling up to that medium tier, the pricing became cost prohibitive to us, so we are remaining on the free plan for the time being.
What problems is the product solving and how is that benefiting you?
As a consulting firm, we often build custom software solutions for clients that rely upon third party libraries to speed up development. Since these libraries are open source, there does arise the risk that a library will have security vulnerabilities that we are not aware of, particularly if the library is a dependency of another library being used. Snyk helps us identify these risks, assess the severity and impact of them, and make a plan to resolve them in an effective manner.


    Magno L.

Great tool, easy to use, developer-friendly and free for open source projects

  • November 08, 2022
  • Review verified by G2

What do you like best about the product?
It is free for public repositories, and it is easy to create an account and integrate it with your GitHub repositories. It scans your dependencies very quickly and provides accurate and actionable results to fix those vulnerabilities. Even having a way to automatically submit PRs directly to fix the issues found.
What do you dislike about the product?
Sometimes the error messages are not very clear, like with the IDE plugin, and it is challenging to understand why the project wasn't imported or scanned. But overall it works seamlessly.
What problems is the product solving and how is that benefiting you?
Snyk is helping protect the security of libraries and dependencies, which are mostly open-source projects created by independent developers that require help with the security of their applications.


    Todd T.

It's foundational to the industry

  • November 07, 2022
  • Review verified by G2

What do you like best about the product?
Snyk has always pushed further than npm audit and provides the checks I need to feel comfortable deploying my changes or catching new zero days in a timely manner.
What do you dislike about the product?
Like any tool where people work on it in a 9-5, Snyk costs money. Npm audit is getting better and is free. That said, NodeJS is the package injection ecosystem, so I don't mind going a bit premium for a sense of safety on my projects. Additionally, the static analysis is pretty nice as well.
What problems is the product solving and how is that benefiting you?
Keeping abreast of vulnerabilities in my dependency tree. Security is the lifeblood of a company, so having more static analysis and dependency tree checking will benefit any company.


    Computer & Network Security

Snyk is truly developer friendly

  • November 03, 2022
  • Review verified by G2

What do you like best about the product?
I have followed the Snyk team's work since my first year in graduate school; I researched 3rd party packages and their security on open-source GitHub projects. I have always been impressed by the approach they've taken to security. They were not afraid to offer off-beat (yet very much needed) solutions. Snyk has evolved exponentially since then with a variety of features, and offering docker security excites me. I can't wait for them to grow into web3 and the WebAssembly space soon as well.
What do you dislike about the product?
Snyk is more expensive than the competition, significantly so. However, I'd say the price difference is potentially worth it considering, you may have to hire an Engineer to hack workarounds for other solutions out there. Depends on your risk factor for future work.
What problems is the product solving and how is that benefiting you?
Snyk reduces the complexity of managing security in an enterprise; it is not a simple feat by any means. The multitude of features, integrations and advice snyk offers is unparalleled in my opinion.


    Felipe G.

The best app to be aware of vulnerabilities

  • October 25, 2022
  • Review verified by G2

What do you like best about the product?
It is very easy to know what vulnerabilities are inside your projects
What do you dislike about the product?
The platform interface is a bit cluttered
What problems is the product solving and how is that benefiting you?
Keep update and secure my apps


    Brahim A.

very good so far, need a little improvment in the user experience.

  • October 19, 2022
  • Review verified by G2

What do you like best about the product?
I like how it can analyze the package.json file in a node.js project and the fix pulls. Also, I like that it's free.
What do you dislike about the product?
I wish you had added a better way to handle multiple analysis options in a single project. For example, I have a nodeJS project with a package.json and code analysis; they have different pages on the UI, and as I tested, there is no easy way to navigate from one to another. Although they are in the same project, it seems that they are treated as two different projects
What problems is the product solving and how is that benefiting you?
Fixing vulnerabilities in my codebase and keeping up-to-date with security fixes. I previously did not care about vulnerabilities as it required time that I don't have, but when it comes to production in a sensitive field, I realize that a small error could lead to a law suite.


    Dragos D.

Good experience with Snyk SAST and SCA tools

  • October 19, 2022
  • Review provided by G2

What do you like best about the product?
Newcomer in terms of SAST/SCA tools. Trying to overcome the shortcomings within this area (e.g. reduce number of FP, use of AI , IDE)
What do you dislike about the product?
Nothing identified so far. Seems like a good solution for our security in CI/CD.
What problems is the product solving and how is that benefiting you?
Security in CI/CD pipeline


    Real Estate

Great way to catch if any libraries we are using have any vulnerabilities in the version

  • October 18, 2022
  • Review provided by G2

What do you like best about the product?
Great way to catch if any libraries we are using have any vulnerabilities in the version
What do you dislike about the product?
Nothing so far; it's excellent we use it all the time!
What problems is the product solving and how is that benefiting you?
Snyk is helping us keep our code in check and making sure we are not accidentally releasing into production hard coded API keys or vulnerabilities


    Meghna S.

With Fugue's Unified Policy Engine we can consistently govern security & compliance across our SDLC

  • October 16, 2022
  • Review verified by G2

What do you like best about the product?
Fugue is efficient when it comes to defining remediation approaches for every violations. It manages runtime security for our cloud-native applications & detects both regular and complicated vulnerabilities. It also provides one-click compliance reporting, which is fast & convenient for our AWS infrastructure requirements.
What do you dislike about the product?
We can easily enable automated remediation features for resources that are deployed in the Production environment. It dramatically reduces various risks, underutilized resource expenditures & compliance governance. We are satisfied with the services offered by Fugue for our security policies & posture management.
What problems is the product solving and how is that benefiting you?
Fugue effectively simplifies time spent on manual audits & tracking vulnerabilities for our AWS deployments. With its configuration management tool, we can evaluate misconfigurations & drifts between Dev, QA and Prod environments. It offers many pre-built rules for our compliance framework. We ensure that all policies are adequately poised across our SDLC with the aid of its Unified Policy Engine.