GitHub vs HCL AppScan comparison

Cancel
You must select at least 2 products to compare!
GitHub Logo
2,224 views|926 comparisons
100% willing to recommend
HCLTech Logo
5,423 views|4,188 comparisons
82% willing to recommend
Comparison Buyer's Guide
Executive Summary

We performed a comparison between GitHub and HCL AppScan based on real PeerSpot user reviews.

Find out in this report how the two Application Security Tools solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI.
To learn more, read our detailed GitHub vs. HCL AppScan Report (Updated: March 2024).
769,599 professionals have used our research since 2012.
Featured Review
Quotes From Members
We asked business professionals to review the solutions they use.
Here are some excerpts of what they said:
Pros
"This product allows us to easily collaborate on development tasks with our subcontractors, and control the workflow as the project progresses.""We can make a private repository.""The flexibility of this solution has been most valuable. It operates on a pay per use basis where you can ramp up or decrease usage.""The solution can scale.""Has great integration with third-party tools.""Even if I'm not in the office, I can access and work on my code from anywhere with my account credentials.""The most valuable aspects of GitHub are version control and parallel development. I also appreciate the forking part, which allows us to release a specific set of features to the environment.""I have found GitHub stable."

More GitHub Pros →

"The product has valuable features for static and dynamic testing.""Compared to other tools only AppScan supports special language.""The product is useful, particularly in its sensitivity and scanning capabilities.""We use it as a security testing application.""The HCL AppScan turnaround time for Burp Suite or any new feature request is pretty good, and that is why we are sticking with the HCL.""The solution offers services in a few specific development languages.""The static scans are good, and the SaaS as well.""The most valuable feature of HCL AppScan is scanning QR codes."

More HCL AppScan Pros →

Cons
"GitHub could improve by being more user-friendly.""The GUI design is poor, so I exclusively use the CLI, which is much easier to use and understand. It would be great to see the GUI updated to be more user-friendly.""I would like a more graphical, user-friendly UI, to avoid writing so much code on cmd.""There could be more integration into Azure.""From the recruiting standpoint, I would like to see email IDs and phone numbers and a brief introduction about their profile.""GitHub uses basic configuration, but messaging is not clear.""It would be useful to have tutorial videos within the GitHub dashboard.""The solution could have better support for the Markdown language."

More GitHub Cons →

"AppScan is too complicated and should be made more user-friendly.""It has crashed at times.""Improving usability could enhance the overall experience with AppScan. It would be beneficial to make the solution more user-friendly, ensuring that everyone can easily navigate and utilize its features.""The penetration testing feature should be included.""If HCL AppScan is able to alert the clients over email once the scan is complete, it would be great. Right now, HCL AppScan doesn't let me know if the scanning part is finished or not, because of which I have to come back and check mostly.""It's a little bit basic when you talk about the Web Services. If AppScan improved its maturity on Web Services testing, that would be good.""The solution often has a high number of false positives. It's an aspect they really need to improve upon.""They have to improve support."

More HCL AppScan Cons →

Pricing and Cost Advice
  • "The private repositories are free, which is very good."
  • "It is open-source. There is no license for GitHub."
  • "The price of this solution is reasonable."
  • "If there are only 10 people using a particular repository, then GitHub is free. But if we increase the number of users, we need to pay the normal charge for GitHub."
  • "We have an enterprise licensing agreement, and I am not part of the finance department so I can't say how much it costs."
  • "I haven't had to pay anything for GitHub, I use the free version."
  • "The licensing model for GitHub is user-based. Whenever the new developer joins we have to get a new license and register their ID. The overall price of the solution is reasonable."
  • "The licensing model from GitHub is very clear."
  • More GitHub Pricing and Cost Advice →

  • "AppScan is a little bit expensive. IBM needs to work a little bit on the pricing model, decreasing the license cost."
  • "With the features, that they offer, and the support, they offer, AppScan pricing is on a higher level."
  • "Pricing was the main reason that we went ahead with this solution as they were the lowest in the market."
  • "HCL AppScan is expensive."
  • "I would rate the product's pricing a nine out of ten. The product's pricing is expensive compared to the features that they offer."
  • "The price is very expensive."
  • "The solution is moderately priced."
  • "The price of HCL AppScan is okay, in my opinion. You just buy HCL AppScan and don't pay anything anymore, meaning it is just a one-time purchase."
  • More HCL AppScan Pricing and Cost Advice →

    report
    Use our free recommendation engine to learn which Application Security Tools solutions are best for your needs.
    769,599 professionals have used our research since 2012.
    Questions from the Community
    Top Answer: The control is the most valuable feature as developers can work on a single code.
    Top Answer:You don't have to pay for a license if you are using the free version. It gives you all the possible features it has.
    Top Answer:The initial setup requires heavy documentation which can be challenging for new developers.
    Top Answer:The product has valuable features for static and dynamic testing.
    Top Answer:HCL AppScan generates false results. Sometimes, it incorrectly identifies requests as vulnerable when they are not vulnerable. In the ADSL feature managed, the primary objective is to identify… more »
    Top Answer:HCL AppScan efficiently scans through the website and identifies vulnerabilities for AWS. It is reducing tools day by day, making it more efficient.
    Ranking
    Views
    2,224
    Comparisons
    926
    Reviews
    48
    Average Words per Review
    332
    Rating
    8.6
    Views
    5,423
    Comparisons
    4,188
    Reviews
    16
    Average Words per Review
    351
    Rating
    7.2
    Comparisons
    Snyk logo
    Compared 27% of the time.
    AWS CodeCommit logo
    Compared 12% of the time.
    Bitbucket logo
    Compared 12% of the time.
    Atlassian SourceTree logo
    Compared 11% of the time.
    Fortify on Demand logo
    Compared 10% of the time.
    Also Known As
    IBM Security AppScan, Rational AppScan, AppScan
    Learn More
    Overview
    GitHub is a web-based Git repository hosting service. It offers all of the distributed revision control and source code management (SCM) functionality of Git as well as adding its own features. Unlike Git, which is strictly a command-line tool, GitHub provides a Web-based graphical interface and desktop as well as mobile integration. It also provides access control and several collaboration features such as bug tracking, feature requests, task management, and wikis for every project.

    IBM Security AppScan enhances web application security and mobile application security, improves application security program management and strengthens regulatory compliance. By scanning your web and mobile applications prior to deployment, AppScan enables you to identify security vulnerabilities and generate reports and fix recommendations.

    Sample Customers
    Dominion Enterprises, NASA, Braintree, SAP, CyberAgent
    Essex Technology Group Inc., Cisco, West Virginia University, APIS IT
    Top Industries
    REVIEWERS
    Computer Software Company22%
    Financial Services Firm14%
    Government11%
    Manufacturing Company8%
    VISITORS READING REVIEWS
    Computer Software Company13%
    Manufacturing Company11%
    Financial Services Firm11%
    Government8%
    REVIEWERS
    Government15%
    Transportation Company15%
    Manufacturing Company10%
    Insurance Company10%
    VISITORS READING REVIEWS
    Computer Software Company19%
    Financial Services Firm14%
    Government10%
    Manufacturing Company9%
    Company Size
    REVIEWERS
    Small Business38%
    Midsize Enterprise9%
    Large Enterprise53%
    VISITORS READING REVIEWS
    Small Business21%
    Midsize Enterprise13%
    Large Enterprise67%
    REVIEWERS
    Small Business24%
    Midsize Enterprise13%
    Large Enterprise63%
    VISITORS READING REVIEWS
    Small Business16%
    Midsize Enterprise13%
    Large Enterprise71%
    Buyer's Guide
    GitHub vs. HCL AppScan
    March 2024
    Find out what your peers are saying about GitHub vs. HCL AppScan and other solutions. Updated: March 2024.
    769,599 professionals have used our research since 2012.

    GitHub is ranked 13th in Application Security Tools with 64 reviews while HCL AppScan is ranked 15th in Application Security Tools with 40 reviews. GitHub is rated 8.6, while HCL AppScan is rated 7.6. The top reviewer of GitHub writes "Beneficial version control and continuous integration, but guides would be helpful". On the other hand, the top reviewer of HCL AppScan writes " A stable and scalable product useful for application security scanning". GitHub is most compared with Snyk, AWS CodeCommit, Bitbucket, Atlassian SourceTree and Fortify on Demand, whereas HCL AppScan is most compared with SonarQube, Veracode, Acunetix, PortSwigger Burp Suite Professional and Checkmarx One. See our GitHub vs. HCL AppScan report.

    See our list of best Application Security Tools vendors.

    We monitor all Application Security Tools reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.