Try our new research platform with insights from 80,000+ expert users

Checkmarx One vs GitGuardian Platform comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Oct 8, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
7.5
Organizations saw ROI with Checkmarx One via improved development speed, cost savings, and enhanced security, despite quantification challenges.
Sentiment score
7.1
GitGuardian Platform offers financial benefits by enhancing security, automating detection, and saving resources, with annual savings around $20,000.
The majority of our incidents for critical detectors and important secret types are remediated automatically or proactively by developers through GitGuardian's notification system, without security team involvement.
 

Customer Service

Sentiment score
7.1
Checkmarx One offers fast, expert support, though some users note resolution delays and additional support charges.
Sentiment score
8.2
GitGuardian Platform's support is highly rated for responsiveness, effectiveness, and approachable communication, with scores from eight to ten.
I would rate their technical support a nine out of ten.
 

Scalability Issues

Sentiment score
7.1
Checkmarx One excels in scalability, integration, and automation, efficiently managing various organizational sizes though licensing can be restrictive.
Sentiment score
7.8
GitGuardian Platform efficiently manages large deployments, ensuring security integration, though some users desire improvements in scalability and provisioning.
I would rate it a ten out of ten for scalability.
In terms of scalability, I would rate it around a ten out of ten, as it handles all the repositories and commit activity we have.
It is quick and meets our needs.
 

Stability Issues

Sentiment score
7.2
Checkmarx One is reliable with some performance issues during large scans; user ratings vary from six to ten.
Sentiment score
8.3
GitGuardian Platform is stable and reliable, with consistent performance, effective support, and minor downtime issues efficiently managed.
I would rate the stability of this solution a nine on a scale of 1 to 10 where one is low stability and 10 is high.
We set up a lot of the repository, so GitGuardian is a required check.
We also run a self-hosted cluster which has not experienced these issues, though we've faced some challenges upgrading Kubernetes that required support assistance to prevent internal downtime.
 

Room For Improvement

Checkmarx One needs enhanced false positive reduction, language support, CD integration, pricing, UI, reporting, and automation improvements.
GitGuardian Platform needs better customization, integration, automation, reporting, access controls, mobile app, and analytics for user satisfaction.
It could suggest how the code base is written and automatically populate the source code with three different solution options to choose from.
The analytics in GitGuardian Platform have a significant opportunity to better reflect the value provided to security teams and demonstrate actual activity occurring.
We are looking for better metrics and audit data, wanting more features such as knowing which users are creating the most secrets or committing the most secrets, what repository, what directory, and who is not checking in secrets.
It would be helpful to see which GitHub users have or do not have the pre-push hook capability turned on.
 

Setup Cost

Checkmarx One offers high quality and performance, though its pricing varies and is often seen as expensive yet competitive.
Enterprise users find GitGuardian Platform offers good value with comprehensive security features, though some view it as slightly expensive.
Overall, the secret detection sector is expensive, but we are happy with the value we get.
It's fairly priced, as it performs a lot of analysis and is a valuable tool.
 

Valuable Features

Checkmarx One provides comprehensive vulnerability analysis with intuitive features, efficient reporting, CI/CD integration, and extensive language support.
GitGuardian Platform provides automatic secrets detection and integration tools for efficient incident management and agile collaboration across development environments.
My experience with the initial setup of Checkmarx One is straightforward; it is not complex compared to other tools that I have tried.
A high number of our exposures are remediated by developers before security needs to step in, as the self-healing playbook process engages them automatically.
GitGuardian Platform performs the capability to detect secrets in real time exceptionally, as it activates from the commit and can detect it immediately.
One of the best features of the solution is the ability to use pre-push hooks.
 

Categories and Ranking

Checkmarx One
Ranking in Application Security Tools
3rd
Ranking in Static Application Security Testing (SAST)
3rd
Ranking in DevSecOps
4th
Average Rating
7.6
Reviews Sentiment
6.9
Number of Reviews
71
Ranking in other categories
Vulnerability Management (24th), Static Code Analysis (3rd), API Security (5th), Risk-Based Vulnerability Management (9th)
GitGuardian Platform
Ranking in Application Security Tools
13th
Ranking in Static Application Security Testing (SAST)
9th
Ranking in DevSecOps
5th
Average Rating
8.8
Reviews Sentiment
7.4
Number of Reviews
27
Ranking in other categories
Data Loss Prevention (DLP) (9th), Software Supply Chain Security (6th)
 

Mindshare comparison

As of June 2025, in the Application Security Tools category, the mindshare of Checkmarx One is 10.0%, down from 14.5% compared to the previous year. The mindshare of GitGuardian Platform is 0.6%, up from 0.3% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Application Security Tools
 

Featured Reviews

Syed Hasan - PeerSpot reviewer
Partner experiences excellent technical support and seamless initial setup
In my opinion, if we are able to extract or show the report, and because everything is going towards agent tech and GenAI, it would be beneficial if it could get integrated with our code base and do the fix automatically. It could suggest how the code base is written and automatically populate the source code with three different solution options to choose from. This would be really helpful.
Joan Ging - PeerSpot reviewer
It dramatically improved our ability to detect secrets, saved us time, and reduced our mean time to remediation
While they do offer some basic reporting, more comprehensive reporting would be beneficial in the long run. This would allow me to demonstrate the value of the product over time to continue to effectively budget for this subscription, especially as they add features that may come at an additional cost. I appreciate the improvements made to reporting over the past year, but continued development in this area will be appreciated. We have encountered occasional difficulties with the Single Sign-On process. There is room for improvement in its current implementation. It works, but was not quite as smooth as the rest of the GitGuardian experience.
report
Use our free recommendation engine to learn which Application Security Tools solutions are best for your needs.
856,873 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
21%
Computer Software Company
14%
Manufacturing Company
10%
Government
6%
Computer Software Company
23%
Government
15%
Media Company
7%
Financial Services Firm
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What alternatives are there for Fortify WebInspect and Fortify SCA?
I would like to recommend Checkmarx. With Checkmarx, you are able to have an all in one solution for SAST and SCA as well. Veracode is only a cloud solution. Hope this helps.
What do you like most about Checkmarx?
Compared to the solutions we used previously, Checkmarx has reduced our workload by almost 75%.
What is your experience regarding pricing and costs for Checkmarx?
The pricing is relatively expensive due to the product's quality and performance, but it is worth it.
What do you like most about GitGuardian Internal Monitoring ?
It's also worth mentioning that GitGuardian is unique because they have a free tier that we've been using for the first twelve months. It provides full functionality for smaller teams. We're a smal...
What is your experience regarding pricing and costs for GitGuardian Internal Monitoring ?
It's fairly priced, as it performs a lot of analysis and is a valuable tool.
What needs improvement with GitGuardian Internal Monitoring ?
We'd love to see notification updates in Slack, as the system does not provide feedback on updates to incidents, which can be problematic when developers resolve issues. ie. if a developer commits ...
 

Also Known As

No data available
GitGuardian Internal Monitoring
 

Overview

 

Sample Customers

YIT, Salesforce, Coca-Cola, SAP, U.S. Army, Liveperson, Playtech Case Study: Liveperson Implements Innovative Secure SDLC
Automox, 66degrees (ex Cloudbakers), Iress, Now:Pensions, Payfit, Orange, BouyguesTelecom, Seequent, Stedi, Talend, Snowflake... 
Find out what your peers are saying about Checkmarx One vs. GitGuardian Platform and other solutions. Updated: May 2025.
856,873 professionals have used our research since 2012.