No more typing reviews! Try our Samantha, our new voice AI agent.

GitHub Dependabot vs Xygeni comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

GitHub Dependabot
Ranking in Software Supply Chain Security
8th
Average Rating
8.0
Reviews Sentiment
4.6
Number of Reviews
1
Ranking in other categories
No ranking in other categories
Xygeni
Ranking in Software Supply Chain Security
12th
Average Rating
9.0
Reviews Sentiment
7.0
Number of Reviews
4
Ranking in other categories
Application Security Tools (21st), Software Composition Analysis (SCA) (13th), Application Security Posture Management (ASPM) (10th)
 

Mindshare comparison

As of April 2026, in the Software Supply Chain Security category, the mindshare of GitHub Dependabot is 4.8%, down from 10.4% compared to the previous year. The mindshare of Xygeni is 1.0%, up from 0.3% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Software Supply Chain Security Mindshare Distribution
ProductMindshare (%)
GitHub Dependabot4.8%
Xygeni1.0%
Other94.2%
Software Supply Chain Security
 

Featured Reviews

BB
Full Stack Developer at Accenture India Pvt. Ltd.
Automated security checks have streamlined dependency updates and reduce manual review work
The best features in GitHub Dependabot include its use for vulnerabilities, and most of the things we use it for involve creating pull requests for those dependencies, which is why it is so appealing for customers. The configuration options in GitHub Dependabot have greatly helped me tailor operations to meet my project's needs. We used the YAML file to configure everything, and we use what is called the actions environment, a GitHub environment. We use GitHub environment to configure the confidential data.
AI
Business development manager at RSsecurity
Unified monitoring has reduced alert noise and provides accurate, proactive application security
Xygeni was highly effective for us, but there are areas where improvements could be made. More customization options for dashboards and reports would help teams tailor the platform to their specific metrics and workflows. I also occasionally encounter DevOps tools that are not yet supported natively. Expanded coverage for niche or emerging tools would make onboarding even smoother. These points, however, are minor compared to the overall value the platform delivers, especially given the strength of its AI-driven detection, remediation, and supply chain protection capabilities. It would also be an improvement for licensing with regard to on-premise variants. Perhaps we could have an on-premise option for standard subscription.
report
Use our free recommendation engine to learn which Software Supply Chain Security solutions are best for your needs.
885,789 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
17%
Manufacturing Company
11%
Insurance Company
7%
Computer Software Company
7%
Comms Service Provider
24%
Security Firm
13%
Construction Company
11%
Retailer
11%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
No data available
 

Questions from the Community

What needs improvement with GitHub Dependabot?
I do not think there is anything that could be improved about the solution.
What is your primary use case for GitHub Dependabot?
My overall experience with GitHub Dependabot has been positive. When GitHub Dependabot was introduced in 2017, we did not consider it much at that time. However, in 2021, we started working with it...
What advice do you have for others considering GitHub Dependabot?
I do not use GitHub Dependabot compatibility testing; I do not use this feature. My overall review rating for this product is eight.
What is your experience regarding pricing and costs for Xygeni?
The pricing is reasonable. Xygeni provided me with the pricing list that is already public on the web, so it is very clear.
What needs improvement with Xygeni?
Xygeni can be more automated. The team is currently working on auto-remediation pipelines, which could be really helpful. There is probably room for improvement, but for me, it is one of the best t...
What is your primary use case for Xygeni?
I use Xygeni to perform SAST and SCA analysis, and to gain better understanding of how my deployment pipelines are configured. Xygeni helps me understand what I am deploying and the level of integr...
 

Comparisons

 

Interactive Demo

Demo not available
 

Overview

 

Sample Customers

Information Not Available
BKool, Onum, Napptive, Fintonic, Adaion, Metricool, Arexdata, ...
Find out what your peers are saying about Docker, JFrog, Qualys and others in Software Supply Chain Security. Updated: March 2026.
885,789 professionals have used our research since 2012.