Try our new research platform with insights from 80,000+ expert users

CloudStack vs Snyk comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Jan 11, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

CloudStack
Ranking in Cloud Management
7th
Average Rating
8.0
Reviews Sentiment
6.5
Number of Reviews
34
Ranking in other categories
No ranking in other categories
Snyk
Ranking in Cloud Management
11th
Average Rating
8.2
Reviews Sentiment
7.4
Number of Reviews
50
Ranking in other categories
Application Performance Monitoring (APM) and Observability (16th), Application Security Tools (7th), Static Application Security Testing (SAST) (8th), GRC (4th), Vulnerability Management (13th), Container Security (6th), Software Composition Analysis (SCA) (1st), Software Development Analytics (2nd), Cloud Security Posture Management (CSPM) (15th), DevSecOps (2nd), Application Security Posture Management (ASPM) (2nd), AI Security (11th)
 

Mindshare comparison

As of January 2026, in the Cloud Management category, the mindshare of CloudStack is 2.8%, down from 6.7% compared to the previous year. The mindshare of Snyk is 2.1%, up from 0.4% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Cloud Management Market Share Distribution
ProductMarket Share (%)
CloudStack2.8%
Snyk2.1%
Other95.1%
Cloud Management
 

Featured Reviews

Tharun Kumar Reddy Thamatam - PeerSpot reviewer
Senior Infrastructure Consultant at Infosys
Achieving seamless infrastructure management with optimized network and user access controls
I believe enhancements could be made in CloudStack, particularly in the management servers. I had the opportunity to collaborate with one of the Apache CloudStack developers, leading to the installation of additional agents for better information retrieval from hypervisors. We implemented configurations, ensuring consistency across hosts and VMs. We also utilized Ansible or YAML files to automate password upgrades during patching activities and database management, showcasing our customization efforts for improvement. For future releases, it would be beneficial if Apache enhanced CloudStack by integrating alerting systems directly. We've had instances where hypervisors experienced overloads without prior alerts, so proactive alerts within the tool would better prepare us for addressing issues swiftly, preventing disruption in business operations. A portal summarizing system metrics alongside alert capabilities would greatly enhance our operational efficiency.
Abhishek-Goyal - PeerSpot reviewer
Software Engineer at a computer software company with 11-50 employees
Improves security posture by actively reducing critical vulnerabilities and guiding remediation
Snyk's main features include open-source vulnerability scanning, code security, container security, infrastructure as code security, risk-based prioritization, development-first integration, continuous monitoring and alerting, automation, and remediation. The best features I appreciate are the vulnerability checking, vulnerability scanning, and code security capabilities, as Snyk scans all open-source dependencies for known vulnerabilities and helps with license compliance for open-source components. Snyk integrates into IDEs, allowing issues to be caught as they appear in the code dynamically and prioritizes risk while providing remediation advice. Snyk provides actionable remediation advice on where vulnerabilities can exist and where code security is compromised, automatically scanning everything and providing timely alerts. Snyk has positively impacted my organization by improving the security posture across all software repositories, resulting in fewer critical vulnerabilities, more confidence in overall product security, and faster security compliance for project clients. Snyk has helped reduce vulnerabilities significantly. Initially, the repository had 17 to 31 critical and high vulnerabilities, but Snyk has helped manage them down to just five vulnerabilities, which are now lower and not high or critical.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"It works, and pretty much always has. Reliability and support for enterprise features, with a multi-tenant interface, makes CloudStack a very compelling solution."
"CloudStack supports every operating system that supports hypervisors, which makes the product more attractive, compared to vCloud Director or Azure."
"The API with CloudStack made integration into various external facing web applications simple enough."
"It has become easy to deploy new devices with no or minimal hardware changes. Now, a user can be ready to use a firewall within a few minutes, as compared to the traditional physical model which involved purchase, shipping, hardware configuration, cabling, power, etc."
"When compared to OpenStack, CloudStack is also an open-source platform that is continuously improving its features and capabilities with each new version release. Having worked with CloudStack 4.7, 4.14, and most recently, 4.17, I have noticed significant enhancements in the platform's features and customer experience, such as the introduction of a new user interface in the latest release. Notably, the latest versions have made major improvements to VM live migrations, making them more efficient and effective."
"The platform is very simple to scale-out.​"
"It is very easy to install and manage. It has the all modules in one node, unlike other software (OpenStack). The product allows a customized look and feel, and the ability to add custom workflows."
"The structuring of the components and isolated environments helped us when using parts of the framework at different levels of product development."
"What is valuable about Snyk is its simplicity."
"Snyk helps me pinpoint security errors in my code."
"The solution's Open Source feature gives us notifications and suggestions regarding how to address vulnerabilities."
"I find SCA to be valuable. It can read your libraries, your license and bring the best way to resolve your problem in the best scenario."
"There are many valuable features. For example, the way the scanning feature works. The integration is cool because I can integrate it and I don't need to wait until the CACD, I can plug it in to our local ID, and there I can do the scanning. That is the part I like best."
"Snyk has positively impacted my organization by improving the security posture across all software repositories, resulting in fewer critical vulnerabilities, more confidence in overall product security, and faster security compliance for project clients."
"The customization is excellent."
"From the software composition analysis perspective, it first makes sure that we understand what is happening from a third-party perspective for the particular product that we use. This is very difficult when you are building software and incorporating dependencies from other libraries, because those dependencies have dependencies and that chain of dependencies can go pretty deep. There could be a vulnerability in something that is seven layers deep, and it would be very difficult to understand that is even affecting us. Therefore, Snyk provides fantastic visibility to know, "Yes, we have a problem. Here is where it ultimately comes from." It may not be with what we're incorporating, but something much deeper than that."
 

Cons

"There are some minor things that can be improved even more such as, perhaps, a bit more polishing on the GUI side to catch up with the API possibilities (which are really extensive) but otherwise nothing critical."
"For time consuming operations like storage migrations, volume Snapshot restore and the like, we faced issues like MySQL operations timing out and status update failures. Those areas needs improvement."
"Companies need to be knowledgeable about cloud technology. It's not for novice users."
"The Windows hosts do not get their hostnames from cloud-init."
"We did encounter issues with stability, and the main issue was secondary storage. When it is not available, XenServers and hypervisors are affected. And CS doesn’t do anything to reboot, or fix. Come to think of it, maybe it shouldn’t, considering their approach – CS just orchestrates everything else on the hypervisor and storage level."
"VPN P2S is cutting all connections except the CloudStack environment for the user when he is connected. I would like to have VPN like Cisco's AnyConnect."
"The area of improvement could be the regionalization aspect. For example, managing multiple regions or HubStack deployments together was not thought out thoroughly in the versions I used. We faced issues around managing the global infrastructure and had to develop around it."
"CloudStack lacks a billing solution which would complete it as a full 360-degree product."
"The documentation sometimes is not relevant. It does not cover the latest updates, scanning, and configurations. The documentation for some things is wrong and does not cover some configuration scannings for the multiple project settings."
"I think Snyk should add more of a vulnerability protection feature in the tool since it is an area where it lacks."
"The reporting mechanism of Snyk could improve. The reporting mechanism is available only on the higher level of license. Adjusting the policy of the current setup of recording this report is something that can improve. For instance, if you have a certain license, you receive a rating, and the rating of this license remains the same for any use case. No matter if you are using it internally or using it externally, you cannot make the adjustment to your use case. It will always alert as a risky license. The areas of licenses in the reporting and adjustments can be improve"
"Although Snyk is strong, sometimes it flags vulnerabilities that are not reachable, not exploitable, and not relevant to a project."
"Basically the licensing costs are a little bit expensive."
"We tried to integrate it into our software development environment but it went really badly. It took a lot of time and prevented the developers from using the IDE. Eventually, we didn't use it in the development area... I would like to see better integrations to help the developers get along better with the tool. And the plugin for the IDE is not so good. This is something we would like to have..."
"There are a lot of false positives that need to be identified and separated."
"It lists projects. So, if you have a number of microservices in an enterprise, then you could have pages of findings. Developers will then spend zero time going through the pages of reports to figure out, "Is there something I need to fix?" While it may make sense to list all the projects and issues in these very long lists for completeness, Snyk could do a better job of bubbling up and grouping items, e.g., a higher level dashboard that draws attention to things that are new, the highest priority things, or things trending in the wrong direction. That would make it a lot easier. They don't quite have that yet in container security."
 

Pricing and Cost Advice

"CloudStack is an open-source product."
"​Give an effort to planning. If possible, contract a specialized consultant company for the initial setup and knowledge transfer.​​"
"There is no license, so the product is free unless you are buying professional technical support services."
"The solution is open-source and free."
"It is a 100% open-source solution needing just an Apache license. Also, there are no hidden fees to be paid."
"The Apache CloudStack is open source, so you do not have licenses to purchase."
"CloudStack is an open source solution, so you don't need to pay anything for it. When our company develops something specially for CloudStack, it is donated to the Apache Software Foundation and provided to anyone that wants to use it."
"As far as I know, CS is still free of charge. If you want to pay some money, Citrix Cloud Platform is based on CS, I think. As for hypervisors – everything as usual, you need to pay for VMware and vCenter. As for XenServer, recently they changed the free feature list, so you may need to pay some money to get useful features like XenMotion."
"With Snyk, you get what you pay for. It is not a cheap solution, but you get a comprehensiveness and level of coverage that is very good. The dollars in the security budget only go so far. If I can maximize my value and be able to have some funds left over for other initiatives, I want to do that. That is what drives me to continue to say, "What's out there in the market? Snyk's expensive, but it's good. Is there something as good, but more affordable?" Ultimately, I find we could go cheaper, but we would lose the completeness of vision or scope. I am not willing to do that because Snyk does provide a pretty important benefit for us."
"I would rate the pricing of Snyk at two. I'm currently using the free version, which the company offers before buying the full version. So, the price is affordable, especially for an enterprise."
"Their licensing model is fairly robust and scalable for our needs. I believe we have reached a reasonable agreement on the licensing to enable hundreds of developers to participate in this product offering. The solution is very tailored towards developers and its licensing model works well for us."
"It's inexpensive and easy to license. It comes in standard package sizing, which is straightforward. This information is publicly found on their website."
"Presently, my company uses an open-source version of the solution. The solution's pricing can be considered quite reasonable owing to the features they offer."
"Snyk is an expensive solution."
"You can get a good deal with Snyk for pricing. It's a little expensive, but it is worth it."
"I didn't think the price was that great, but it wasn't that bad, either. I'd rate their pricing as average in the market."
report
Use our free recommendation engine to learn which Cloud Management solutions are best for your needs.
881,114 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
14%
Educational Organization
10%
Manufacturing Company
9%
Comms Service Provider
8%
Financial Services Firm
15%
Computer Software Company
11%
Manufacturing Company
10%
Comms Service Provider
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business13
Midsize Enterprise6
Large Enterprise12
By reviewers
Company SizeCount
Small Business21
Midsize Enterprise9
Large Enterprise21
 

Questions from the Community

What is your experience regarding pricing and costs for CloudStack?
CloudStack is open-source, so there is no cost apart from learning. Billing solutions, if outsourced, come at a moderate cost.
What needs improvement with CloudStack?
Enhancements for CloudStack can focus on integrating more hypervisors, as mentioned regarding current features. We're working on a new feature that will allow for certain limited functions, but ove...
What is your primary use case for CloudStack?
My usual use cases for CloudStack involve an AWS style private cloud or public cloud. I can deploy an AWS style cloud using the open source tool that is CloudStack. The use case depends on the cust...
How does Snyk compare with SonarQube?
Snyk does a great job identifying and reducing vulnerabilities. This solution is fully automated and monitors 24/7 to find any issues reported on the internet. It will store dependencies that you a...
What do you like most about Snyk?
The most effective feature in securing project dependencies stems from its ability to highlight security vulnerabilities.
What needs improvement with Snyk?
There are a lot of false positives that need to be identified and separated. The inclusion of AI to remove false positives would be beneficial. So far, I've not seen any AI features to enhance vuln...
 

Comparisons

 

Also Known As

Vmops, Cloud.com
Fugue, Snyk AppRisk
 

Overview

 

Sample Customers

GreenQloud, Exoscale, TomTom, ASG, PC Extreme, ISWest, Grid'5000
StartApp, Segment, Skyscanner, DigitalOcean, Comic Relief
Find out what your peers are saying about CloudStack vs. Snyk and other solutions. Updated: December 2025.
881,114 professionals have used our research since 2012.