Snyk Runtime Sensor
SnykExternal reviews
137 reviews
from
and
External reviews are not included in the AWS star rating for the product.
Good for finding Vulnerabilities.
What do you like best about the product?
Its good tool to check Vulnerabilities in project and it also shows category wise vulnerability like critical, high, medium and low by which we can decide which to be fix first and important. And it also provides suggestions of versions in which respective Vulnerabilities has fixed. Also provides plugins for almost very IDE and snyk cli also good by running snyk test in cli it will give details of vulnerabilities in project.
What do you dislike about the product?
In node Js or react it only check yarn.lock file means first we have to install all dependencies then only it will check for all vulnerabilities. Need to work on code quality suggestion part.
What problems is the product solving and how is that benefiting you?
By this tool we are able to fix Vulnerabilities in project and help to secure our product and secure the customer data. And also code quality is improved by using this tool.
Using Snyk as a product to be used by the compamy I work for, and personal projects
What do you like best about the product?
I really like the fact that Snyk is a platform and has support for so many different types of scanning. I really like the IaC scanning. I'm not so experienced in vulnerability scanning on IaC level, but this really feels right.
What do you dislike about the product?
On of the biggest downsides to Snyk is the fact that the Github actions plugins don't support PR commenting out of the box. It supports uploading Sarif files, but this is only available to Github Enterprise users. Adding support for PR comments would come in so handy!
What problems is the product solving and how is that benefiting you?
We, as a company really have a gap in cloud security, we can really benefit from Snyk on filling in that gap.
Easy implementation, straightforward tool
What do you like best about the product?
Implementing Snyk was extremely straightforward. We were able to complete it ahead of schedule and with minimal assistance from the Snyk Team. The app itself is clear and valuable. It doesn't require my team to review extensive documentation or go through application-specific training to understand its use; we were able to hit the ground running.
What do you dislike about the product?
The only thing I can think of is that Snyk does not offer a threat detection component to its product. With the ease of implementation and use, it would be great if we could not only use one tool for both purposes, but we were able to use Snyk for threat detection; the ease and simplicity of use, I feel, would make the program far easier to manage.
What problems is the product solving and how is that benefiting you?
Snyk provides SAST, container scanning, vuln scanning and SCA capabilities. These capabilities allow us to be more productive as a team and increase performance in these areas as the information provided by the tool is easy to act upon.
Excellent Product - made our work easy in identifying vulnerabilities
What do you like best about the product?
Identifying vulnerabilities in pipeline with details
What do you dislike about the product?
Reporting need to improve and more options need to be provide
What problems is the product solving and how is that benefiting you?
Container security - identifying vulnerabilities in images
IDENTIFYING vulnerabilities in libraries
IDENTIFYING vulnerabilities in libraries
Delivering safer artifacts
What do you like best about the product?
Snyk allows me to focus on the parts of the software that I can update and make it safer
What do you dislike about the product?
The limit of scan without authentication
What problems is the product solving and how is that benefiting you?
Gives more reliability of delivery more secure software
Tried on docker images well suited.
What do you like best about the product?
Dependency and vulnerability scanning with report excellent.
What do you dislike about the product?
Only support less than 2GB images needed
What problems is the product solving and how is that benefiting you?
overview about security issues for prod
Well architected
What do you like best about the product?
Seamless integrations with repo and IDE. The initialization in Visual Studio code was ridiculously smooth and did not take manual config.
What do you dislike about the product?
It leaves behind clutter branches, etc. There is probably an easy way to clean them up other than manual deletion (if they are out of date) but I just don't know it.
What problems is the product solving and how is that benefiting you?
Actionable intelligence on package security
Must needed tool for software supply chain security
What do you like best about the product?
Easy to use cli and native integration with "docker scan" command.
What do you dislike about the product?
Sometimes synk cannot identify/scan binaries that were copied into the container image
What problems is the product solving and how is that benefiting you?
Synk helps us scan the codebase with SAST to find any security issues and does an excellent job of scanning container images for vulnerabilities.
Does not allow you making mistakes you did not know you make
What do you like best about the product?
It is easy to use and developer friendly. You can easily test a project locally or let snyk monitor the project from the ci. The quality gate makes sure, you do not introduce new mistakes in your merge requests.
What do you dislike about the product?
The need for a Snyk Broker when working with a self hosted Gitlab instance. We recently moved from the Gitlab SaaS service to a self hosted environment. It was partly our mistake for not reading the Snyk documentation well enough, but now we need a broker for it to monitor our projects
What problems is the product solving and how is that benefiting you?
Snyk monitors our projects for security mistakes in the dependencies. Some projects are on a security only maintenance mode, which is a lot easier with Snyk. But it also monitors the main projects and makes it easy to fix security issues
very good so far, need a little improvment in the user experience.
What do you like best about the product?
I like how it can analyze the package.json file in a node.js project and the fix pulls. Also, I like that it's free.
What do you dislike about the product?
I wish you had added a better way to handle multiple analysis options in a single project. For example, I have a nodeJS project with a package.json and code analysis; they have different pages on the UI, and as I tested, there is no easy way to navigate from one to another. Although they are in the same project, it seems that they are treated as two different projects
What problems is the product solving and how is that benefiting you?
Fixing vulnerabilities in my codebase and keeping up-to-date with security fixes. I previously did not care about vulnerabilities as it required time that I don't have, but when it comes to production in a sensitive field, I realize that a small error could lead to a law suite.
showing 21 - 30