CloudBees and GitGuardian are two prominent contenders in the CI/CD and security sectors, respectively. Based on user feedback, CloudBees leads with its comprehensive automation and support services, while GitGuardian stands out with superior real-time secrets detection and management.
Features: CloudBees delivers a scalable and secure CI/CD platform well-suited for large teams and complex workflows. Its key features include extensive integration options and automation capabilities that enhance visibility and management across diverse environments. GitGuardian's strength lies in its real-time secrets detection and wide-ranging integration with development environments, which helps efficiently prevent security breaches.
Room for Improvement: CloudBees users have reported system slowdowns, difficulties managing plugins, and complex configurations as areas in need of improvement. The platform's proprietary nature also makes users reliant on vendor support. GitGuardian users express a need for enhanced custom detection and integration features, while also noting that the service's high price could be reduced and its false positives minimized.
Ease of Deployment and Customer Service: CloudBees supports a variety of deployment options across public, private, and on-premises clouds, complemented by efficient customer service. Despite this, issues with plugin and upgrade support vary among users. GitGuardian offers deployment flexibility but has received mixed reviews regarding support, particularly following plugin updates. Both platforms promise responsive customer service, but CloudBees receives more consistently positive feedback in technical support interactions.
Pricing and ROI: CloudBees is recognized for its strong ROI, justifying its higher price through robust automation and support features. GitGuardian is valued for fair pricing and significant returns due to its potent security detection capabilities. Although costly for larger teams, GitGuardian remains a worthy investment due to its specialty in security functions, though newer market entrants may pose competitive challenges.
I can certainly say that we have saved significant time and resources in terms of people and automation.
The majority of our incidents for critical detectors and important secret types are remediated automatically or proactively by developers through GitGuardian's notification system, without security team involvement.
It effectively helps us with credentials security and has been performing satisfactorily.
I would rate their technical support a nine out of ten.
I would rate the technical support as excellent.
In terms of scalability, I would rate it around a ten out of ten, as it handles all the repositories and commit activity we have.
I would rate it a ten out of ten for scalability.
Currently, what GitGuardian Platform is doing works effectively.
We set up a lot of the repository, so GitGuardian is a required check.
The SaaS platform has experienced two significant moments of downtime or instability in the last six months, requiring notices and retrospectives.
I would rate the stability of the GitGuardian Platform as excellent with no downtimes.
Another thing that would be good to see is some more metrics on the usage of the GitGuardian pre-push hooks.
The self-healing activity by developers isn't reflected in the analytics, requiring us to collect this data ourselves.
We are looking for better metrics and audit data, wanting more features such as knowing which users are creating the most secrets or committing the most secrets, what repository, what directory, and who is not checking in secrets.
Overall, the secret detection sector is expensive, but we are happy with the value we get.
It's fairly priced, as it performs a lot of analysis and is a valuable tool.
One of the best features of the solution is the ability to use pre-push hooks.
A high number of our exposures are remediated by developers before security needs to step in, as the self-healing playbook process engages them automatically.
GitGuardian Platform performs the capability to detect secrets in real time exceptionally, as it activates from the commit and can detect it immediately.
CloudBees DevOptics is a robust software utilized primarily to enhance CI/CD processes by offering real-time visibility into Jenkins pipelines. It facilitates effective monitoring, incident management, and decision-making through comprehensive data analysis. Users value its features like DevOps performance metrics and seamless tool integration, leading to improved operational efficiency and productivity in organizations.
GitGuardian is an advanced secrets security platform that strengthens Non-Human Identity security and ensures compliance with industry standards by detecting and managing secrets in development environments.
GitGuardian integrates Secrets Security and Secrets Observability, facilitating the detection of compromised secrets and managing legitimate secrets' lifecycle. Supporting over 450 types of secrets, the platform offers public monitoring for leaked data and employs honeytokens as an added defense. Trusted by over 600,000 developers, organizations such as Snowflake and ING rely on GitGuardian for robust secrets protection.
What features define GitGuardian?In sectors like healthcare and telecommunications, GitGuardian is implemented for detecting and managing the exposure of sensitive information in code repositories. Teams benefit from its ability to integrate with platforms such as GitHub, allowing for immediate alerts and efficient remediation of security risks, enhancing application security by safeguarding operational environments.
We monitor all DevSecOps reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.