JFrog is on a mission to enable continuous updates through Liquid Software, empowering developers to code high-quality applications that securely flow to end-users with zero downtime. The world’s top brands such as Amazon, Facebook, Google, Netflix, Uber, VMware, and Spotify are among the 4500 companies that already depend on JFrog to manage binaries for their mission-critical applications. JFrog is a privately-held, global company, and is a proud sponsor of the Cloud Native Computing Foundation [CNCF].
Product | Market Share (%) |
---|---|
JFrog Xray | 1.5% |
Wiz | 10.8% |
Tenable Nessus | 8.0% |
Other | 79.7% |
Title | Rating | Mindshare | Recommending | |
---|---|---|---|---|
Wiz | 4.5 | 10.8% | 95% | 22 interviewsAdd to research |
Microsoft Defender for Cloud | 4.0 | 5.3% | 94% | 78 interviewsAdd to research |
Users say the price of JFrog Security Essentials is fair and comparable to similar products. JFrog is one of the lower-cost options.
If you are a team player and you care and you play to WIN, we have just the job you're looking for.
As we say at JFrog: "Once You Leap Forward You Won't Go Back!"
JFrog Xray was previously known as JFrog Security Essentials.
Author info | Rating | Review Summary |
---|---|---|
DevOps Engineer at Syvora | 3.5 | I use JFrog Xray to manage and secure packages and images across repositories. It's scalable, supports various technologies, and integrates well with CI/CD. While the UI needs improvement, overall, it reliably meets my deployment and security needs. |
Development Senior at a financial services firm with 5,001-10,000 employees | 3.5 | We use JFrog Xray for security and vulnerability scanning, valuing its integration with Artifactory and curation capabilities. Improvement is needed in database support and troubleshooting. We're evaluating its potential to replace Black Duck for operational efficiency. |
Deployment Coordinator at a government with 10,001+ employees | 4.0 | We use JFrog Xray to identify vulnerabilities in dependency files through its integration with Artifactory. It provides essential security by scanning artifacts for vulnerabilities. However, the tool needs improved reporting capabilities for more specific data points in reports. |
DevOps Engineer at Rambøll Danmark A/S | 4.0 | We primarily use JFrog Xray for container scanning, appreciating its integration with Artifactory for easy project onboarding. While Xray efficiently prioritizes vulnerabilities, it lacks a dashboard and a shift-left approach, and we face a project limitation despite being premium customers. |
DevOps Engineer Intern at University of Nebraska at Omaha | 4.0 | I use JFrog Xray to run daily and monthly vulnerability reports for Artifactory. Its scanning capabilities are comprehensive, even detecting vulnerabilities in docker files, although its documentation and error logging need improvement. We switched from SonarQube and Checkmarx to JFrog's add-on. |
Senior Manager at a comms service provider with 5,001-10,000 employees | 4.0 | We primarily use JFrog Xray for vulnerability scanning of open-source components, finding it reliable and easy to set up with clear reporting. Despite some API limitations, we switched from Sonatype for better synergy with existing JFrog solutions. |
SR IT administrator at Cardinal Integrated Technologies Inc | 4.5 | I use JFrog Xray to identify vulnerabilities, finding its internal dependencies hierarchy display very valuable. However, I feel its speed lags behind competitors like Nexus, and improvements in vulnerability management and user interface are needed. |
Lead Vulnerability Analyst/ DevSec Ops Specialist at a government with 201-500 employees | 4.0 | I primarily use JFrog Xray for artifact storage, repository, and image management, along with vulnerability scans. The watch policies and blocking vulnerabilities are valuable, but the user interface and site performance need improvement for a better user experience. |