No more typing reviews! Try our Samantha, our new voice AI agent.

CucumberStudio vs OpenText Dynamic Application Security Testing comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Mar 29, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

CucumberStudio
Ranking in Dynamic Application Security Testing (DAST)
12th
Average Rating
8.0
Reviews Sentiment
7.1
Number of Reviews
12
Ranking in other categories
Rapid Application Development Software (25th)
OpenText Dynamic Applicatio...
Ranking in Dynamic Application Security Testing (DAST)
3rd
Average Rating
7.2
Reviews Sentiment
6.1
Number of Reviews
22
Ranking in other categories
DevSecOps (11th)
 

Mindshare comparison

As of August 2026, in the Dynamic Application Security Testing (DAST) category, the mindshare of CucumberStudio is 1.6%, up from 0.3% compared to the previous year. The mindshare of OpenText Dynamic Application Security Testing is 11.7%, up from 10.5% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Dynamic Application Security Testing (DAST) Mindshare Distribution
ProductMindshare (%)
OpenText Dynamic Application Security Testing11.7%
CucumberStudio1.6%
Other86.7%
Dynamic Application Security Testing (DAST)
 

Featured Reviews

Walter Wirch - PeerSpot reviewer
Technical Expert at Bertelsmann SE & Co.
Facilitates integration of test scenarios while needing modernization of components
CucumberStudio is primarily used for designing test scenarios and automating testing. We have implemented it in conjunction with our own routines for integration into our infrastructure CucumberStudio aligns with our strategy for data-driven testing. It supports our product owners in designing…
AP
Cyber Security Consultant at a tech vendor with 10,001+ employees
Enhancements in manual testing align with reporting and integration features
WebInspect works efficiently with Java-based or .NET based applications. However, it struggles with Salesforce applications, where it requires approximately 20-24 hours to crawl and audit but produces minimal findings, necessitating manual verification. The solution offers customization features for crawling and vulnerability detection. It includes various security frameworks and allows selection of specific vulnerability types to audit, such as OWASP Top 10 or JavaScript-based vulnerabilities. When working with APIs, we can select OWASP API Top 10. The tool also supports custom audit features by combining different security frameworks. For on-premises deployment, the setup is complex, particularly regarding SQL server configuration. Unlike Burp Suite or OpenText Dynamic Application Security Testing, which have simpler setup processes, WebInspect requires SQL server setup to function.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Hiptest is a great test management tool for agile teams."
"The solution is stable."
"The data table that helps in converting a single script to multiple test cases is very helpful."
"The most valuable feature is the re-usability of action words."
"CucumberStudio has a very user-friendly interface."
"Scenarios, since is a really easy way to create and control your test cases."
"The most valuable feature of CucumberStudio is its use of action words, which allows me to avoid writing test cases from scratch for the most common scenarios."
"Integration with automation frameworks, keywords, and tags allows for saving time writing test cases and implementing automation."
"It is scalable and very easy to use."
"Good at scanning and finding vulnerabilities."
"The product is a good option for enterprise-level organizations."
"The solution's technical support was very helpful."
"Fortify WebInspect is a scalable solution, it is good for a lot of applications."
"It is a good product, comparable to AppScan, quite scalable, and offers good cost/value with the support and backing from Micro Focus."
"It's a well-known platform for doing dynamic application scanning."
"The FPA and Audit Workbench are very helpful for me, and when we are integrating it with SSC, we're able to scan and trace and see all of the vulnerabilities, with very detailed examples for each vulnerability, so it is very good for users and beginners and doesn't take a lot of time to understand the tool."
 

Cons

"Another kind of deployment might be useful, perhaps an option to install the tool in a local deployment."
"Yes, it is not stable when you create a data table that includes more than 30 elements, so it can lose your data."
"A key area for improvement is to revamp outdated components such as HipTest publisher."
"Copy-pasting something directly from JIRA requires too much modification and formatting."
"The reporting needs to be improved."
"Support with In-App chat is great. However, it would be awesome to have real time support also for PT timezone."
"More tutorials and examples."
"I would like to see better customer support."
"I want to enhance automation. Currently, Fortify WebInspect can scan and find vulnerabilities, but users with specific skills need to interpret the results and understand how to address them."
"One thing I would like to see them introduce is a cloud-based platform."
"The solution needs better integration with Microsoft's Azure Cloud or an extension of Azure DevOps. In fact, it should better integrate with any cloud provider. Right now, it's quite difficult to integrate with that solution, from the cloud perspective."
"Fortify WebInspect could improve user-friendliness. Additionally, it is very bulky to use."
"The installation could be a bit easier. Usually it's simple to use, but the installation is painful and a bit laborious and complex."
"There are some file extensions, like .SER, that Fortify WebInspect doesn't scan."
"Creating reports is very slow and it is something that should be improved."
"A localized version, for example, in Korean would be a big improvement to this solution."
 

Pricing and Cost Advice

Information not available
"Its price is almost similar to the price of AppScan. Both of them are very costly. Its price could be reduced because it can be very costly for unlimited IT scans, etc. I'm not sure, but it can go up to $40,000 to $50,000 or more than that."
"Fortify WebInspect is a very expensive product."
"The price is okay."
"The pricing is not clear and while it is not high, it is difficult to understand."
"It’s a fair price for the solution."
"This solution is very expensive."
"Our licensing is such that you can only run one scan at a time, which is inconvenient."
report
Use our free recommendation engine to learn which Dynamic Application Security Testing (DAST) solutions are best for your needs.
909,725 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Manufacturing Company
16%
Construction Company
16%
Comms Service Provider
12%
Financial Services Firm
11%
Financial Services Firm
12%
Government
12%
Manufacturing Company
7%
Construction Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business3
Midsize Enterprise3
Large Enterprise4
By reviewers
Company SizeCount
Small Business7
Midsize Enterprise1
Large Enterprise15
 

Questions from the Community

What needs improvement with Hiptest?
CucumberStudio's API integration could be improved both in terms of reliability and design. The API requires data to be sent in a specific format, which takes time to build. Additionally, the repor...
What is your primary use case for Hiptest?
I use CucumberStudio as a test case repository. All of our test cases are stored there. It is also part of our test planning process. For every sprint, we plan the test cases in CucumberStudio and ...
What advice do you have for others considering Hiptest?
For teams following a BDD style software development approach, CucumberStudio is a great collaborative tool that covers all the basic requirements of a test management tool. I would rate CucumberSt...
What is your experience regarding pricing and costs for Fortify WebInspect?
While I am not directly involved with licensing, I can share that our project's license for 1-9 applications costs between $15,000 to $19,000. In comparison, Burp Suite costs approximately $500 to ...
What needs improvement with Fortify WebInspect?
WebInspect works efficiently with Java-based or .NET based applications. However, it struggles with Salesforce applications, where it requires approximately 20-24 hours to crawl and audit but produ...
What is your primary use case for Fortify WebInspect?
I am currently working with several tools. For Fortify, I use SCA and WebInspect. Apart from that, I use Burp Suite from PortSwigger. For API testing, I use Postman with Burp Suite or WebInspect fo...
 

Also Known As

Hiptest
Micro Focus WebInspect, WebInspect
 

Overview

 

Sample Customers

Cisco, Cardinal Health, Intuit, Smartbox, Accenture, Deliveroo
Aaron's
Find out what your peers are saying about CucumberStudio vs. OpenText Dynamic Application Security Testing and other solutions. Updated: June 2026.
909,725 professionals have used our research since 2012.