Try our new research platform with insights from 80,000+ expert users

CloudStack vs Snyk comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Jan 11, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

CloudStack
Ranking in Cloud Management
7th
Average Rating
8.0
Reviews Sentiment
6.5
Number of Reviews
34
Ranking in other categories
No ranking in other categories
Snyk
Ranking in Cloud Management
12th
Average Rating
8.2
Reviews Sentiment
7.4
Number of Reviews
50
Ranking in other categories
Application Performance Monitoring (APM) and Observability (17th), Application Security Tools (7th), Static Application Security Testing (SAST) (9th), GRC (4th), Vulnerability Management (15th), Container Security (6th), Software Composition Analysis (SCA) (2nd), Software Development Analytics (2nd), Cloud Security Posture Management (CSPM) (13th), DevSecOps (3rd), Application Security Posture Management (ASPM) (2nd), AI Security (11th)
 

Mindshare comparison

As of February 2026, in the Cloud Management category, the mindshare of CloudStack is 2.6%, down from 6.6% compared to the previous year. The mindshare of Snyk is 2.2%, up from 0.4% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Cloud Management Market Share Distribution
ProductMarket Share (%)
CloudStack2.6%
Snyk2.2%
Other95.2%
Cloud Management
 

Featured Reviews

Tharun Kumar Reddy Thamatam - PeerSpot reviewer
Senior Infrastructure Consultant at Infosys
Achieving seamless infrastructure management with optimized network and user access controls
I believe enhancements could be made in CloudStack, particularly in the management servers. I had the opportunity to collaborate with one of the Apache CloudStack developers, leading to the installation of additional agents for better information retrieval from hypervisors. We implemented configurations, ensuring consistency across hosts and VMs. We also utilized Ansible or YAML files to automate password upgrades during patching activities and database management, showcasing our customization efforts for improvement. For future releases, it would be beneficial if Apache enhanced CloudStack by integrating alerting systems directly. We've had instances where hypervisors experienced overloads without prior alerts, so proactive alerts within the tool would better prepare us for addressing issues swiftly, preventing disruption in business operations. A portal summarizing system metrics alongside alert capabilities would greatly enhance our operational efficiency.
Abhishek-Goyal - PeerSpot reviewer
Software Engineer at a computer software company with 11-50 employees
Improves security posture by actively reducing critical vulnerabilities and guiding remediation
Snyk's main features include open-source vulnerability scanning, code security, container security, infrastructure as code security, risk-based prioritization, development-first integration, continuous monitoring and alerting, automation, and remediation. The best features I appreciate are the vulnerability checking, vulnerability scanning, and code security capabilities, as Snyk scans all open-source dependencies for known vulnerabilities and helps with license compliance for open-source components. Snyk integrates into IDEs, allowing issues to be caught as they appear in the code dynamically and prioritizes risk while providing remediation advice. Snyk provides actionable remediation advice on where vulnerabilities can exist and where code security is compromised, automatically scanning everything and providing timely alerts. Snyk has positively impacted my organization by improving the security posture across all software repositories, resulting in fewer critical vulnerabilities, more confidence in overall product security, and faster security compliance for project clients. Snyk has helped reduce vulnerabilities significantly. Initially, the repository had 17 to 31 critical and high vulnerabilities, but Snyk has helped manage them down to just five vulnerabilities, which are now lower and not high or critical.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"You can use a single API to get things done, rather than multiple APIs on multiple modules."
"CloudStack is a very feature-rich product; it gives you a lot of control over your VM networks and has extensive integration with storage plugins where you can use many open source tools to bring storage into your CloudStack environment for backups or even to run VMs."
"Over the years, we have valued CloudStack for its stability."
"You can manage infrastructure with a few people, since product is monolithic. We had three engineers (storage, virtual, Linux admins) only. Also, CS supports different flavours of hypervisors."
"Valuable features include that it is a user-friendly portal, VPN P2S and S2S possibilities, and it's easy to manage accounts and limits."
"It has become easy to deploy new devices with no or minimal hardware changes. Now, a user can be ready to use a firewall within a few minutes, as compared to the traditional physical model which involved purchase, shipping, hardware configuration, cabling, power, etc."
"CloudStack, by default, gives us a zone-based setup which makes it easier to manage datacenters located in different geographical areas."
"It was easy to deploy, both for PoC and production (with HA)."
"The most valuable features include enriched information around the vulnerabilities for better triaging, in terms of the vulnerability layer origin and vulnerability tree."
"The most valuable feature of Snyk is the SBOM."
"The most important feature of Snyk is its cost-effectiveness compared to other solutions such as Check Point."
"The solution has great features and is quite stable."
"I am impressed with the product's security vulnerability detection. My peers in security are praising the tool for its accuracy to detect security vulnerabilities. The product is very easy to onboard. It doesn't require a lot of preparation or prerequisites. It's a bit of a plug-and-play as long as you're using a package manager or for example, you are using a GitHub repository. And that is an advantage for this tool because developers don't want to add more tools to what they're currently using."
"The most valuable features are their GitLab and JIRA integrations. The GitLab integration lets us pull projects in pretty easily, so that it's pretty minimal for developers to get it set up. Using the JIRA integration, it's also pretty easy to get the information that is generated, as a result of that GitLab integration, back to our teams in a non-intrusive way and in a workflow that we are already using."
"I think all the standard features are quite useful when it comes to software component scanning, but I also like the new features they're coming out with, such as container scanning, secrets scanning, and static analysis with SAST."
"Snyk performs software composition analysis (SCA) similar to other expensive tools."
 

Cons

"The number of contributors to this solution is relatively small compared to other solutions. However, if more frequent users of CloudStack contribute to the open-source community, it will significantly enhance the overall community experience and make it more useful for everyone involved."
"The main reason why we started looking for another solution: backups, replication, HA, and dependency on secondary storage. CS is quite sensitive for infrastructure, and any kind of network disruption between CS and secondary storage leads to VM hanging."
"The absence of the feature, deploy an instance from a snapshot, is the weak point of the platform. It is a feature that everyone needs nowadays."
"From time to time there is a bug in calculating limits of resources for customer domain/account. Maybe it’s a problem with 4.9.2."
"The area of improvement could be the regionalization aspect. For example, managing multiple regions or HubStack deployments together was not thought out thoroughly in the versions I used. We faced issues around managing the global infrastructure and had to develop around it."
"I would like to see support for native VLAN, and fault-tolerance."
"Environment is sensitive, so, unlike VMware, you can not afford middle-skilled engineers, they will ruin everything."
"The product does not have an easily implementable payment gateway."
"Offering API access in the lower or free open-source tiers would be better. That would help our customers. If you don't have an enterprise plan, it becomes challenging to integrate with the rest of the systems. Our customers would like to have some open-source integrations in the next release."
"We have seen cases where tools didn't find or recognize certain dependencies. These are known issues, to some extent, due to the complexity in the language or stack that you using. There are some certain circumstances where the tool isn't actually finding what it's supposed to be finding, then it could be misleading."
"All such tools should definitely improve the signatures in their database. Snyk is pretty new to the industry. They have a pretty good knowledge base, but Veracode is on top because Veracode has been in this business for a pretty long time. They do have a pretty large database of all the findings, and the way that the correlation engine works is superb. Snyk is also pretty good, but it is not as good as Veracode in terms of maintaining a large space of all the historical data of vulnerabilities."
"Scalability has some issues because we have a lot of code and its use is mandatory. Therefore, it can be slow at times, especially because there are a lot of projects and reporting. Some UI improvements could help with this."
"Although Snyk is strong, sometimes it flags vulnerabilities that are not reachable, not exploitable, and not relevant to a project."
"We've also had technical issues with blocking newly introduced vulnerabilities in PRs and that was creating a lot of extra work for developers in trying to close and reopen the PR to get rid of some areas. We ended up having to disable that feature altogether because it wasn't really working for us and it was actually slowing down developer velocity."
"There are some new features that we would like to see added, e.g., more visibility into library usage for the code. Something along the lines where it's doing the identification of where vulnerabilities are used, etc. This would cause them to stand out in the market as a much different platform."
"Snyk's API and UI features could work better in terms of speed."
 

Pricing and Cost Advice

"The solution is open-source and free."
"CloudStack is an open-source product."
"It is a 100% open-source solution needing just an Apache license. Also, there are no hidden fees to be paid."
"There is no license, so the product is free unless you are buying professional technical support services."
"As far as I know, CS is still free of charge. If you want to pay some money, Citrix Cloud Platform is based on CS, I think. As for hypervisors – everything as usual, you need to pay for VMware and vCenter. As for XenServer, recently they changed the free feature list, so you may need to pay some money to get useful features like XenMotion."
"CloudStack is an open source solution, so you don't need to pay anything for it. When our company develops something specially for CloudStack, it is donated to the Apache Software Foundation and provided to anyone that wants to use it."
"The Apache CloudStack is open source, so you do not have licenses to purchase."
"​Give an effort to planning. If possible, contract a specialized consultant company for the initial setup and knowledge transfer.​​"
"I didn't think the price was that great, but it wasn't that bad, either. I'd rate their pricing as average in the market."
"The pricing is acceptable, especially for enterprises. I don't think it's too much of a concern for our customers. Something like $99 per user is reasonable when the stakes are high."
"Snyk is a premium-priced product, so it's kind of expensive. The big con that I find frustrating is when a company charges extra for single sign-on (SSO) into their SaaS app. Snyk is one of the few that I'm willing to pay that add-on charge, but generally I disqualify products that charge an extra fee to do integrated authentication to our identity provider, like Okta or some other SSO. That is a big negative. We had to pay extra for that. That little annoyance aside, it is expensive. You get a lot out of it, but you're paying for that premium."
"On a scale of one to ten, where one is cheap and ten is expensive, I rate the pricing a three. It is a cheap solution."
"We are using the open-source version for the scans."
"The pricing is reasonable."
"The price is good. Snyk had a good price compared to the competition, who had higher pricing than them. Also, their licensing and billing are clear."
"The product's price is okay."
report
Use our free recommendation engine to learn which Cloud Management solutions are best for your needs.
881,707 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
15%
Educational Organization
10%
Manufacturing Company
8%
Comms Service Provider
8%
Financial Services Firm
14%
Computer Software Company
11%
Manufacturing Company
10%
Comms Service Provider
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business13
Midsize Enterprise6
Large Enterprise12
By reviewers
Company SizeCount
Small Business21
Midsize Enterprise9
Large Enterprise21
 

Questions from the Community

What is your experience regarding pricing and costs for CloudStack?
CloudStack is open-source, so there is no cost apart from learning. Billing solutions, if outsourced, come at a moderate cost.
What needs improvement with CloudStack?
Enhancements for CloudStack can focus on integrating more hypervisors, as mentioned regarding current features. We're working on a new feature that will allow for certain limited functions, but ove...
What is your primary use case for CloudStack?
My usual use cases for CloudStack involve an AWS style private cloud or public cloud. I can deploy an AWS style cloud using the open source tool that is CloudStack. The use case depends on the cust...
How does Snyk compare with SonarQube?
Snyk does a great job identifying and reducing vulnerabilities. This solution is fully automated and monitors 24/7 to find any issues reported on the internet. It will store dependencies that you a...
What do you like most about Snyk?
The most effective feature in securing project dependencies stems from its ability to highlight security vulnerabilities.
What needs improvement with Snyk?
There are a lot of false positives that need to be identified and separated. The inclusion of AI to remove false positives would be beneficial. So far, I've not seen any AI features to enhance vuln...
 

Comparisons

 

Also Known As

Vmops, Cloud.com
Fugue, Snyk AppRisk
 

Overview

 

Sample Customers

GreenQloud, Exoscale, TomTom, ASG, PC Extreme, ISWest, Grid'5000
StartApp, Segment, Skyscanner, DigitalOcean, Comic Relief
Find out what your peers are saying about CloudStack vs. Snyk and other solutions. Updated: February 2026.
881,707 professionals have used our research since 2012.