I am using Snyk for DevOps and security.
Principal Software Engineer at a healthcare company with 11-50 employees
Useful scanning, simple setup, and reliable
Pros and Cons
- "The most valuable features of Snyk are vulnerability scanning and automation. The automation the solution brings around vulnerability scanning is useful."
- "The solution could improve the reports. They have been working on improving the reports but more work could be done."
What is our primary use case?
What is most valuable?
The most valuable features of Snyk are vulnerability scanning and automation. The automation the solution brings around vulnerability scanning is useful.
What needs improvement?
The solution could improve the reports. They have been working on improving the reports but more work could be done.
For how long have I used the solution?
I have been using Snyk for a few months.
Buyer's Guide
Snyk
May 2025

Learn what your peers think about Snyk. Get advice and tips from experienced pros sharing their opinions. Updated: May 2025.
857,028 professionals have used our research since 2012.
What do I think about the stability of the solution?
The stability of Snyk is good.
What do I think about the scalability of the solution?
We have not had any challenges with the scalability of Snyk.
How are customer service and support?
There are good resources to answer questions when we have issues.
Which solution did I use previously and why did I switch?
I have not used a testing solution prior to Snyk.
How was the initial setup?
The initial setup of Snyk was easy.
What's my experience with pricing, setup cost, and licensing?
The price of the solution is expensive compared to other solutions.
What other advice do I have?
I would recommend people use the free tier first before they purchase.
I rate Snyk a ten out of ten.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.

Managing Director at ProQuanta
Great features and stability with a straightforward setup
Pros and Cons
- "The solution has great features and is quite stable."
- "The log export function could be easier when shipping logs to other platforms such as Splunk."
What is our primary use case?
The solution is set up in a test lab for proof of concept on the ACIA component. Our client is proposing the solution in an RFP response that will include 3,000 users when awarded.
What is most valuable?
The solution has great features and is quite stable.
What needs improvement?
The log export function could be easier when shipping logs to other platforms such as Splunk.
For how long have I used the solution?
I have been using the solution for months.
What do I think about the stability of the solution?
The stability is quite good.
What do I think about the scalability of the solution?
The solution is scalable with no issues.
How are customer service and support?
I have not needed technical support.
How was the initial setup?
The initial setup is quite straightforward and took fifteen minutes.
What about the implementation team?
We implemented the solution in-house.
In our lab environment, the deployment strategy is to install and run with no complex operations.
What other advice do I have?
I rate the solution a nine out of ten.
Which deployment model are you using for this solution?
Public Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Other
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Buyer's Guide
Snyk
May 2025

Learn what your peers think about Snyk. Get advice and tips from experienced pros sharing their opinions. Updated: May 2025.
857,028 professionals have used our research since 2012.
Security Solutions Architect at a tech services company with 51-200 employees
Developer-friendly and easy to setup
Pros and Cons
- "Snyk is a developer-friendly product."
- "Compatibility with other products would be great."
What is our primary use case?
I am a reseller. We provide solutions for our customers.
What is most valuable?
It's a good product. I haven't seen any weakness.
Snyk is a developer-friendly product.
What needs improvement?
Compatibility with other products would be great.
How are customer service and technical support?
I have not contacted technical support.
Which solution did I use previously and why did I switch?
Previously, I was working with Micro Focus Fortify.
How was the initial setup?
The initial setup is easy.
Which other solutions did I evaluate?
We have also evaluated Prisma Cloud by Palo Alto.
What other advice do I have?
We tried to partner up with Snyk, but we were not successful in gaining a partnership. We are not authorized Snyk resellers.
I would rate Snyk an eight out of ten.
Disclosure: My company has a business relationship with this vendor other than being a customer:
Engineering Manager at a comms service provider with 51-200 employees
Extremely easy to integrate, simple to use and hassle-free
Pros and Cons
- "What is valuable about Snyk is its simplicity."
- "Could include other types of security scanning and statistical analysis"
What is our primary use case?
We use the product to scan our code for any vulnerable dependencies we might have. We depend on open source libraries and need to make sure they're secure. If not, we need to highlight the areas and replace them, update them quickly. A secondary, minor use case is to also look at licensing and make sure that we're not using open source licenses we should not be using. Those are our two use cases.
What is most valuable?
What is valuable about Snyk is its simplicity, and that's the main selling point. It's understandably also very cheap because you don't need as much account management resources to manage the relationship with the customer and that's a benefit. I also like that it's self-service, with extremely easy integration. You don't need to speak to anybody to get you off and running and they have loads of integrations with source control and cloud CI systems. They are a relatively new product so they might not have a bigger library than competitors, but it's a good product overall.
They do however have the option to install Snyk on-prem, but it is much more expensive.
What needs improvement?
The product could be improved by including other types of security scanning (e.g. SAST or DAST), which is important. It would also help to include the static analysis specifically to the open-source scanning so we could get an idea of whether a particular library is vulnerable and recognise if we're actually using the vulnerable part of it or not, they do have runtime analysis, but it is a hassle to set up.
It would be the same issue in terms of the inclusion of additional features. I think static analysis is really important. A second additional feature would be to add tags to projects, identifying an important project or assigning a project to a particular team. Custom tags would be helpful.
For how long have I used the solution?
I've been using the product for less than a year. It's an SaaS solution, online, so we're always using the latest version.
What do I think about the stability of the solution?
It's a very stable product, they are clear when a specific feature is in beta.
What do I think about the scalability of the solution?
We have hundreds of source code repositories, and Snyk scans them in minutes (it just looks at package management files to identify the dependency tree), Snyk uses the same infrastructure to scan for all customers on the cloud which gives it lots of scalability opportunities compared to some other vendors where the software is installed on-prem or on a dedicated instance which makes the software pricy and limited (this dedicated instance will be idle most of the time, and the customer needs to pay for it).
How are customer service and technical support?
The technical support is very good.
What other advice do I have?
Some of our products are deployed on the private cloud behind firewalls, Snyk has tools to carry out security scanning from our private repositories.
For anyone thinking of using the product, I would suggest using cloud and SaaS providers. Generally, they are easy to work with and there's no hassle of having to talk to salespeople and arrange demos, etc. Self-service SaaS products are a good way to go when it's appropriate.
I would rate this product a nine out of 10.
Which deployment model are you using for this solution?
Private Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Application Security at Finos
Provides good scalability, but its reporting feature needs improvement
Pros and Cons
- "The product's most valuable features are an open-source platform, remote functionality, and good pricing."
- "Snyk's API and UI features could work better in terms of speed."
What is most valuable?
The product's most valuable features are an open-source platform, remote functionality, and good pricing.
What needs improvement?
Snyk's API and UI features could work better in terms of speed. Additionally, they could optimize and provide better reports, including reports for security, technical, and developer level.
For how long have I used the solution?
We have been using Snyk for two and a half years.
What do I think about the stability of the solution?
I rate the platform's stability an eight or nine out of ten. Sometimes, we encounter downtime issues, but it has quick recovery. It impacts our system and needs improvement for better outcomes during the development phase.
What do I think about the scalability of the solution?
We have 20 to 50 Snyk users in the development team of our organization. It is a scalable product.
How are customer service and support?
The technical support services are available quickly for developers. However, they should improve their speed of response for customers.
How would you rate customer service and support?
Neutral
Which solution did I use previously and why did I switch?
I have used Checkmarx and some other open-source software.
How was the initial setup?
The initial setup is neither difficult nor easy. However, it works slowly. It takes some weeks or months to complete the process.
What's my experience with pricing, setup cost, and licensing?
The product has good pricing.
What other advice do I have?
I recommend Snyk to others and rate it a seven out of ten.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Senior Devops at Appgate
Provides clear information with good feedback regarding code practices and fixing security issues
Pros and Cons
- "Provides clear information and is easy to follow with good feedback regarding code practices."
- "The feature for automatic fixing of security breaches could be improved."
What is our primary use case?
We use this product for security analysis. It enables us to analyze the development code and find the security vulnerabilities and best practices. We have around 20 developers testing this solution. I'm the senior DevOps and we are users of Snyk.
What is most valuable?
The solution is very easy to install. It provides clear information and is easy to follow. We get good feedback regarding code practices and how to fix security issues. Another benefit is that it has worked with containers for a long time and has a partnership with Docker. They have a lot of experience and good expertise in security.
What needs improvement?
I think they could improve the feature for automatic fixing of security breaches. If they had a Kubernetes coverage of vulnerabilities that would be helpful.
For how long have I used the solution?
I've been using this solution for two months.
What do I think about the stability of the solution?
The solution is stable.
What do I think about the scalability of the solution?
The solution is scalable.
How are customer service and support?
The technical support is good. They are very helpful and also offered us a demo.
How was the initial setup?
The initial setup is not complicated, it's just configuring the connection, and connecting to the server.
What's my experience with pricing, setup cost, and licensing?
We're using the open source version for now.
What other advice do I have?
I think it's worthwhile to try this product and I rate it nine out of 10.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Head of Sales at a tech services company with 11-50 employees
A stable and affordable solution that offers exceptional technical support to its users
Pros and Cons
- "It is a stable solution. Stability-wise, I rate the solution a ten out of ten."
- "DAST has shortcomings, and Snyk needs to improve and overcome such shortcomings."
What is our primary use case?
In my company, Snyk is useful because it provides container security and DAST.
How has it helped my organization?
Snyk is a strong security solution that helps customers analyze static code and improve their security and code in their main application.
What is most valuable?
What needs improvement?
DAST has shortcomings, and Snyk needs to improve and overcome such shortcomings.
For how long have I used the solution?
I have experience with Snyk, and it is a new solution chosen by my company. I am a reseller of the solution.
What do I think about the stability of the solution?
It is a stable solution. Stability-wise, I rate the solution a ten out of ten.
What do I think about the scalability of the solution?
Scalability-wise, I rate the solution an eight out of ten.
One security engineer uses Snyk in our company, but we don't use the tool for our own use cases, and we only deploy it for our customers.
How are customer service and support?
I rate the technical support a ten out of ten.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
Our company previously used Micro Focus for three or four months. We have worked with Checkmark for more than two or three years.
We provide Snyk to our customers. It is a very strong solution.
How was the initial setup?
I rate the initial setup a ten on a scale of one to ten, where one is difficult, and ten is easy.
The solution is deployed on the cloud since it is a SaaS solution and doesn't have an on-premises version.
The deployment process for Snyk takes like a week.
For the steps in Snyk's deployment, one has to buy a license and click on the deploy icon on Snyk's website, after which it syncs up with the system.
One person is required for deployment. Even if we talk about something like container security or DAST, only one person would be required for the deployment process.
What's my experience with pricing, setup cost, and licensing?
On a scale of one to ten, where one is cheap and ten is expensive, I rate the pricing a three. It is a cheap solution.
What other advice do I have?
I would definitely recommend the solution to those planning to use it since it is easy to deploy and has strong features like machine learning and the ability to analyze static codes.
Overall, I rate the solution an eight out of ten.
Disclosure: My company has a business relationship with this vendor other than being a customer:

Buyer's Guide
Download our free Snyk Report and get advice and tips from experienced pros
sharing their opinions.
Updated: May 2025
Product Categories
Application Security Tools Static Application Security Testing (SAST) Cloud Management Container Security Software Composition Analysis (SCA) Software Development Analytics Cloud Security Posture Management (CSPM) DevSecOps Application Security Posture Management (ASPM)Popular Comparisons
SonarQube Server (formerly SonarQube)
Wiz
Prisma Cloud by Palo Alto Networks
Microsoft Defender for Cloud
GitLab
SentinelOne Singularity Cloud Security
Checkmarx One
Veracode
Qualys VMDR
Coverity
Black Duck
Mend.io
CrowdStrike Falcon Cloud Security
OWASP Zap
Fortify on Demand
Buyer's Guide
Download our free Snyk Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- Which software is ideal for code quality and security?
- How does Snyk compare with SonarQube?
- How do you use Snyk for running SAST?
- What do I scan when changing code in Snyk?
- If you had to both encrypt and compress data during transmission, which would you do first and why?
- When evaluating Application Security, what aspect do you think is the most important to look for?
- What are the Top 5 cybersecurity trends in 2022?
- What are the threats associated with using ‘bogus’ cybersecurity tools?
- We're evaluating Tripwire, what else should we consider?
- Which application security solutions include both vulnerability scans and quality checks?